CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,851 vulnerabilities with CWE-125
CVE-2024-53834 HIGH
Android - Out-of-bounds Read in sms_DisplayHexDumpOfPrivacyBuffer
CVSS 7.5
CVE-2024-12751 HIGH
Foxit PDF Reader < 2024.3.0.26795 & Editor 11.0.0-11.2.11.54113 RCE via AcroForm OOB Read
CVSS 7.8
CVE-2024-56721 HIGH
Linux Kernel 6.10-6.11.11, 6.12.0-6.12.2 - Out-of-bounds Read in x86 CPU AMD Errata Microcode Array
CVSS 7.1
CVE-2024-56706 MEDIUM
Linux Kernel 6.12-6.12.1 - Out-of-bounds Read in SDB Memory Allocation
CVSS 6.3
CVE-2024-56662 MEDIUM
Linux Kernel - Out-of-bounds Read in acpi_nfit_ctl via Unchecked Buffer Access
CVSS 6.0
CVE-2024-56650 HIGH
Linux Kernel - Out-of-bounds Read in Netfilter LED Target Check
CVSS 7.1
CVE-2024-56627 HIGH
Linux Kernel - Out-of-Bounds Read in ksmbd_vfs_stream_read
CVSS 7.1
CVE-2024-56597 HIGH
Linux Kernel - Out-of-bounds Read in JFS dbSplit
CVSS 7.1
CVE-2024-56555 HIGH
Linux Kernel 6.12-6.12.3 - Out-of-Bounds Read in binder_add_freeze_work
CVSS 7.1
CVE-2024-53162 HIGH
Linux Kernel 6.5-6.6.63, 6.7-6.11.10, 6.12.0-6.12.1 - Out-of-bounds Read in uof_get_name()
CVSS 7.1
CVE-2024-53150 HIGH KEV
Linux Kernel - Out-of-bounds Read in USB Audio Clock Descriptor Validation
CVSS 7.1
CVE-2024-53147 HIGH
Linux Kernel 5.7-6.11.11, 6.12.0-6.12.2, 6.13 - Out-of-bounds Read in exFAT Directory Entry Handling
CVSS 7.1
CVE-2024-56378 MEDIUM
Poppler <24.12.0 - Memory Corruption
CVSS 4.3
CVE-2024-51471 MEDIUM
IBM MQ Appliance 9.3.0.0-9.3.0.25 and 9.3.0.0-9.3.99.99 - Authenticated Denial of Service via Trace Buffer Overflow
CVSS 5.3
CVE-2024-11616 MEDIUM
Netskope Endpoint DLP - Heap Overflow
CVE-2024-12693 HIGH
Google Chrome < 131.0.6778.204 - Out-of-bounds Read in V8
CVSS 8.8
CVE-2024-47039 MEDIUM
Android - Out-of-bounds Read in BootControl.cpp
CVSS 5.5
CVE-2024-11614 HIGH
DPDK Vhost < unknown - Memory Corruption
CVSS 7.4
CVE-2024-56083 HIGH
Cognition Devin <2024-12-12 - Info Disclosure
CVSS 8.1
CVE-2024-9508 HIGH
Horner Automation Cscape - Memory Corruption
CVSS 7.8
CVE-2024-12212 HIGH
Cscape < 10.0.363.1 - Out-of-bounds Read in CSP File Parser
CVSS 7.8
CVE-2024-54116 MEDIUM
HarmonyOS - Out-of-Bounds Read in M3U8 Module
CVSS 4.3
CVE-2024-54115 MEDIUM
HarmonyOS - Out-of-Bounds Read in DASH Module
CVSS 4.3
CVE-2024-54114 MEDIUM
HarmonyOS - Denial of Service via DASH Module Playback Out-of-Bounds Access
CVSS 4.4
CVE-2024-54109 MEDIUM
HarmonyOS - Out-of-bounds Read in Image Decoding Module
CVSS 6.5
Details
Vulnerabilities 8,851