CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,859 vulnerabilities with CWE-125
CVE-2024-49077 MEDIUM
Windows Mobile Broadband Driver - Elevation of Privilege via Out-of-bounds Read
CVSS 6.8
CVE-2024-49065 MEDIUM
Microsoft 365 Apps and Office - Remote Code Execution
CVSS 5.5
CVE-2024-47778 HIGH
GStreamer < 1.24.10 - Out-of-bounds Read in gst_wavparse_adtl_chunk
CVSS 7.5
CVE-2024-47777 CRITICAL
GStreamer < 1.24.10 - Out-of-bounds Read in gst_wavparse_smpl_chunk
CVSS 9.1
CVE-2024-47776 CRITICAL
GStreamer < 1.24.10 - Out-of-bounds Read in WAV Cue Chunk Parser
CVSS 9.1
CVE-2024-47775 CRITICAL
GStreamer < 1.24.10 - Out-of-bounds Read in parse_ds64 Function
CVSS 9.1
CVE-2024-47774 CRITICAL
GStreamer < 1.24.10 - Out-of-bounds Read in AVI Subtitle GAB2 Chunk Parser
CVSS 9.1
CVE-2024-47602 HIGH
GStreamer < 1.24.10 - Null Pointer Dereference in Matroska Demuxer
CVSS 7.5
CVE-2024-47600 CRITICAL
GStreamer < 1.24.10 - Out-of-bounds Read in format_channel_mask Function
CVSS 9.1
CVE-2024-47598 CRITICAL
GStreamer <1.24.10 - Memory Corruption
CVSS 9.1
CVE-2024-47597 CRITICAL
GStreamer < 1.24.10 - Out-of-bounds Read in qtdemux_parse_samples
CVSS 9.1
CVE-2024-47596 HIGH
GStreamer < 1.24.10 - Out-of-bounds Read in qtdemux FOURCC_SMI_ Handler
CVSS 7.5
CVE-2024-47543 HIGH
GStreamer < 1.24.10 - Out-of-bounds Read in qtdemux_parse_container
CVSS 7.5
CVE-2024-47542 HIGH
GStreamer < 1.24.10 - Denial of Service via Null Pointer Dereference in id3v2_read_synch_uint
CVSS 7.5
CVE-2024-37401 HIGH
Ivanti Connect Secure < 22.7R2.1 - Unauthenticated Denial of Service via IPsec Out-of-bounds Read
CVSS 7.5
CVE-2024-53005 MEDIUM
Substance 3D Modeler < 1.14.1 - Out-of-bounds Read via Malicious File
CVSS 5.5
CVE-2024-53004 MEDIUM
Substance 3D Modeler < 1.14.1 - Out-of-bounds Read via Malicious File
CVSS 5.5
CVE-2024-53951 MEDIUM
InDesign Desktop <ID19.5,ID18.5.4 - Memory Corruption
CVSS 5.5
CVE-2024-49549 MEDIUM
InDesign Desktop <ID19.5,ID18.5.4 - Memory Corruption
CVSS 5.5
CVE-2024-49548 MEDIUM
InDesign Desktop <ID19.5,ID18.5.4 - Memory Corruption
CVSS 5.5
CVE-2024-49547 MEDIUM
InDesign Desktop <ID19.5,ID18.5.4 - Memory Corruption
CVSS 5.5
CVE-2024-49546 MEDIUM
InDesign Desktop <ID19.5,ID18.5.4 - Memory Corruption
CVSS 5.5
CVE-2024-49541 MEDIUM
Illustrator <29.0.0,28.7.2 - Info Disclosure
CVSS 5.5
CVE-2024-49534 MEDIUM
Acrobat Reader <24.005.20307 - Info Disclosure
CVSS 5.5
CVE-2024-49533 MEDIUM
Acrobat Reader <24.005.20307 - Info Disclosure
CVSS 5.5
Details
Vulnerabilities 8,859