CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,878 vulnerabilities with CWE-125
CVE-2022-24352 HIGH
TP-Link AC1750 Firmware < 211210 - Unauthenticated Out-of-bounds Read in NetUSB.ko Kernel Module
CVSS 8.8
CVE-2022-23124 CRITICAL
netatalk < 3.1.13 - Unauthenticated Out-of-bounds Read in get_finderinfo
CVSS 9.8
CVE-2022-23123 CRITICAL
netatalk < 3.1.13 - Unauthenticated Out-of-bounds Read in getdirparams
CVSS 9.8
CVE-2022-47458 MEDIUM
Android - Denial of Service in WLAN Driver via Missing Params Check
CVSS 5.5
CVE-2022-47456 MEDIUM
Android - Denial of Service via Missing Params Check in WLAN Driver
CVSS 5.5
CVE-2022-47455 MEDIUM
Android - Denial of Service via Missing Params Check in WLAN Driver
CVSS 5.5
CVE-2022-40535 HIGH
Qualcomm CSR8811 and IPQ Firmware - Denial of Service via WLAN Packet Buffer Over-Read
CVSS 7.5
CVE-2022-33309 HIGH
Qualcomm WLAN Firmware - Buffer Over-read Denial of Service
CVSS 7.5
CVE-2022-4645 MEDIUM
LibTIFF 4.4.0 - DoS
CVSS 6.8
CVE-2022-42833 HIGH
macOS < 13.0 - Out-of-bounds Read
CVSS 7.8
CVE-2022-32830 HIGH
iPadOS < 15.6 - Out-of-bounds Read via Maliciously Crafted Image
CVSS 7.5
CVE-2022-4203 MEDIUM
OpenSSL 3.0.0-3.0.7 - Out-of-bounds Read in X.509 Name Constraint Checking
CVSS 4.9
CVE-2022-46440 MEDIUM
swftools 0.9.2 - Out-of-bounds Read via readU16 Function
CVSS 5.5
CVE-2022-35729 HIGH
OpenBMC < 0.72 - Unauthenticated Out-of-bounds Read via Network Access
CVSS 7.5
CVE-2022-34864 MEDIUM
Intel Trace Analyzer and Collector < 2021.5 - Authenticated Out-of-bounds Read
CVSS 4.2
CVE-2022-34346 MEDIUM
Intel Media SDK < 22.2.2 - Authenticated Out-of-bounds Read
CVSS 4.8
CVE-2022-30531 MEDIUM
Intel Iris Xe MAX Drivers < 100.0.5.1474 - Out-of-bounds Read
CVSS 4.4
CVE-2022-30339 MEDIUM
Intel Integrated Sensor Solution < 5.0.0.4143 - Out-of-bounds Read
CVSS 6.0
CVE-2022-47363 MEDIUM
Android - Out-of-bounds Read in WLAN Driver
CVSS 5.5
CVE-2022-47323 MEDIUM
Android - Denial of Service via Missing Params Check in WLAN Driver
CVSS 5.5
CVE-2022-40512 HIGH
Qualcomm WLAN Firmware - Denial of Service via Probe Response or Beacon Buffer Over-Read
CVSS 7.5
CVE-2022-34145 HIGH
Qualcomm WLAN Host - Buffer Over-read Denial of Service
CVSS 7.5
CVE-2022-33306 HIGH
Qualcomm WLAN Firmware - Denial of Service via Buffer Over-read
CVSS 7.5
CVE-2022-33271 HIGH
Qualcomm WLAN Firmware - Out-of-bounds Read in NMF Frame Parser
CVSS 8.2
CVE-2022-33229 HIGH
Qualcomm Modem Firmware - Information Disclosure via Buffer Over-read
CVSS 8.2
Details
Vulnerabilities 8,878