CWE-126

Buffer Over-read

Parent: CWE-125 - Out-of-bounds Read

The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.

449 vulnerabilities with CWE-126
CVE-2024-21457 MEDIUM
Qualcomm AR8035 Firmware - Information Disclosure via Multi-link IE in Beacon Frame
CVSS 6.5
CVE-2024-21456 MEDIUM
Qualcomm AR8035 Firmware - Out-of-bounds Read in Beacon Frame Parser
CVSS 6.5
CVE-2024-38373 CRITICAL
FreeRTOS-Plus-TCP <4.1.0 - Buffer Overflow
CVSS 9.6
CVE-2024-30069 MEDIUM
Windows Remote Access < - Info Disclosure
CVSS 4.7
CVE-2024-23363 HIGH
Qualcomm AR8035 Firmware - Denial of Service via Improperly Formatted FTM Management Frame
CVSS 7.5
CVE-2024-30039 MEDIUM
Windows Remote Access < - Info Disclosure
CVSS 5.5
CVE-2024-21477 HIGH
Qualcomm AQT1000 Firmware - Denial of Service via 802.11az FTM Frame Parsing
CVSS 7.5
CVE-2024-28902 MEDIUM
Windows Remote Access Connection Manager - Information Disclosure via Out-of-bounds Read
CVSS 5.5
CVE-2024-28901 MEDIUM
Windows Remote Access Connection Manager - Information Disclosure via Out-of-bounds Read
CVSS 5.5
CVE-2024-28900 MEDIUM
Windows Remote Access Connection Manager - Information Disclosure via Out-of-bounds Read
CVSS 5.5
CVE-2024-26255 MEDIUM
Windows Remote Access Connection Manager - Information Disclosure via Out-of-bounds Read
CVSS 5.5
CVE-2024-26243 HIGH
Windows 10/11, Server 2022 Elevation of Privilege via USB Print Driver Race Condition
CVSS 7.0
CVE-2024-31082 HIGH
Red Hat Enterprise Linux 6-10 - Heap-Based Buffer Over-read in ProcAppleDRICreatePixmap
CVSS 7.3
CVE-2024-31081 HIGH
Red Hat Enterprise Linux - Heap-Based Buffer Over-read in X.org Server ProcXIPassiveGrabDevice
CVSS 7.3
CVE-2024-31080 HIGH
Red Hat Enterprise Linux X.org Server - Heap-Based Buffer Over-read in ProcXIGetSelectedEvents
CVSS 7.3
CVE-2024-3077 MEDIUM
Zephyr < 3.6.0 - Denial of Service via Malformed BLE GATT Packet
CVSS 6.8
CVE-2024-26176 HIGH
Windows Kernel - Elevation of Privilege via Buffer Over-read
CVSS 7.8
CVE-2024-26160 MEDIUM
Microsoft Windows 11 22h2 < 10.0.22621.3296 - Buffer Over-read
CVSS 5.5
CVE-2024-21340 MEDIUM
Windows Kernel - Information Disclosure via Buffer Over-read
CVSS 4.6
CVE-2024-20290 HIGH
Cisco Secure Endpoint - Denial of Service via OLE2 File Format Parser
CVSS 7.5
CVE-2023-53159 MEDIUM
openssl < 0.10.55 - Buffer Over-read via X509VerifyParamRef::set_host
CVSS 4.5
CVE-2023-43555 HIGH
Qualcomm Video MP2 Parsing Firmware - Information Disclosure
CVSS 8.2
CVE-2023-43537 MEDIUM
Qualcomm AR8035 Firmware - Out-of-bounds Read in WLAN Host T2LM Action Frame Handling
CVSS 6.5
CVE-2023-43528 MEDIUM
ADSP <expected size - Info Disclosure
CVSS 6.1
CVE-2023-43527 MEDIUM
Qualcomm FastConnect and QCA/QAM Firmware - Information Disclosure via DTS Header Parsing
CVSS 6.8
Details
Vulnerabilities 449