CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,863 vulnerabilities with CWE-125
CVE-2024-23532 HIGH
Ivanti Avalanche < 6.4.3 - Authenticated Out-of-bounds Read in WLAvalancheService
CVSS 7.5
CVE-2024-23530 HIGH
Ivanti Avalanche < 6.4.3.528 - Unauthenticated Out-of-bounds Read in WLAvalancheService
CVSS 7.5
CVE-2024-23529 HIGH
Ivanti Avalanche < 6.4.3.528 - Unauthenticated Out-of-bounds Read in WLAvalancheService
CVSS 7.5
CVE-2024-23528 HIGH
Ivanti Avalanche < 6.4.3.528 - Unauthenticated Out-of-bounds Read in WLAvalancheService
CVSS 7.5
CVE-2024-23526 HIGH
Ivanti Avalanche < 6.4.3.528 - Unauthenticated Out-of-bounds Read in WLAvalancheService
CVSS 7.5
CVE-2024-32286 CRITICAL
Tenda W30E v1.0 V1.0.1.25(633) - Stack Overflow via fromVirtualSer Page Parameter
CVSS 9.8
CVE-2024-32301 CRITICAL
Tenda AC7V1.0 v15.03.06.44 - Buffer Overflow
CVSS 9.8
CVE-2024-26896 MEDIUM
Linux Kernel 5.10-6.8.1 - Memory Leak in wfx_start_ap via ieee80211_beacon_get
CVSS 5.5
CVE-2024-26890 MEDIUM
Linux Kernel 6.2-6.6.22, 6.7.0-6.7.10, 6.8.0-6.8.1 - Out-of-bounds Read in Bluetooth btrtl Driver
CVSS 6.5
CVE-2024-3839 MEDIUM
Chrome < 124.0.6367.60 - Out-of-bounds Read in Fonts via Crafted HTML Page
CVSS 6.5
CVE-2024-21099 MEDIUM
Oracle Business Intelligence Enterprise Edition 7.0.0.0.0 - Unauthorized Data Read via Data Visualization
CVSS 4.3
CVE-2024-3859 MEDIUM
Firefox < 125 and ESR < 115.10 - Integer Overflow via OpenType Font Parsing
CVSS 5.9
CVE-2024-3855 MEDIUM
Firefox < 125.0 - Out-of-bounds Read via MSubstr JIT Optimization
CVSS 6.5
CVE-2024-3854 HIGH
Firefox < 125 and ESR < 115.10 - Out-of-bounds Read via JIT Switch Statement Optimization
CVSS 8.8
CVE-2024-32631 HIGH
ASR180X Firmware < cp01.057.067 - Out-of-Bounds Read in ciCCIOTOPT
CVSS 7.2
CVE-2024-29219 HIGH
KV STUDIO <11.64 - Info Disclosure/Arbitrary Code Execution
CVSS 7.8
CVE-2024-28894 MEDIUM
Cente IPv6 < 1.51 & SNMPv2/v3 < 2.30 - DoS via IPv6 Header Option Length Mismatch
CVSS 5.3
CVE-2024-23911 HIGH
Cente IPv6 < 1.51 and Cente IPv6 SNMPv2/v3 < 2.30 - Unauthenticated Denial of Service via IPv6 NDP Packet Option Length
CVSS 7.5
CVE-2024-30401 MEDIUM
Juniper Junos OS 21.2-22.2 - Out-of-bounds Read in aftman Interface Definition
CVSS 5.9
CVE-2024-21618 MEDIUM
Juniper Junos OS and Junos OS Evolved - Unauthenticated Denial of Service via Malformed LLDP Packet
CVSS 6.5
CVE-2024-20797 HIGH
Adobe Animate < 23.0.5 - Out-of-bounds Read via Crafted File
CVSS 7.8
CVE-2024-20796 MEDIUM
Adobe Animate < 23.0.5 - Out-of-bounds Read via Malicious File
CVSS 5.5
CVE-2024-20798 MEDIUM
Illustrator <28.3,27.9.2 - Info Disclosure
CVSS 5.5
CVE-2024-20771 MEDIUM
Adobe Bridge < 13.0.7 - Out-of-bounds Read via Malicious File
CVSS 5.5
CVE-2024-20770 MEDIUM
Photoshop Desktop <25.3.1 - Info Disclosure
CVSS 5.5
Details
Vulnerabilities 8,863