CWE-823

Use of Out-of-range Pointer Offset

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs pointer arithmetic on a valid pointer, but it uses an offset that can point outside of the intended range of valid memory locations for the resulting pointer.

91 vulnerabilities with CWE-823
CVE-2026-41907 HIGH
uuid: Missing buffer bounds check in `v3`/`v5`/`v6` when `buf` is provided
CVE-2026-21732 CRITICAL
GPU DDK - libusc OOB write at ConvertSwitchToArrayLookupBP during WebGPU shader compilation
CVSS 9.6
CVE-2026-32829 HIGH
lz4_flex: Decompression can leak information from uninitialized memory or reused output buffer
CVSS 7.5
CVE-2026-20022 MEDIUM
Cisco Secure Firewall ASA/FTD - DoS
CVSS 6.1
CVE-2026-23764 MEDIUM
VB-Audio Voicemeeter <1.1.1.9-3.1.1.9 - Memory Corruption
CVE-2026-21487 MEDIUM
Color Iccdev < 2.3.1.2 - Out-of-Bounds Access
CVSS 6.1
CVE-2025-33215 MEDIUM
Nvidia Snap-4 Container - Denial of Service
CVSS 6.8
CVE-2025-54152 MEDIUM
Qsync Central <5.0.0.4 - Memory Corruption
CVSS 6.5
CVE-2025-11232 HIGH
Kea <3.0.1 - DoS
CVSS 7.5
CVE-2025-47349 HIGH
Product <Version - Memory Corruption
CVSS 7.8
CVE-2025-27059 HIGH
Qualcomm Immersive Home and IPQ Firmware - Memory Corruption in SCM Call
CVSS 8.8
CVE-2025-25180 HIGH
Software - Memory Corruption
CVSS 7.8
CVE-2025-46806 MEDIUM
sslh <2.2.4 - DoS
CVE-2025-0467 HIGH
Kernel software - Memory Corruption
CVSS 8.2
CVE-2024-53017 MEDIUM
Product Version - Memory Corruption
CVSS 6.6
CVE-2024-47893 MEDIUM
Kernel software - Memory Corruption
CVSS 6.5
CVE-2024-45570 MEDIUM
Qualcomm Firmware - Memory Corruption during IO Configuration Processing
CVSS 6.6
CVE-2024-45557 HIGH
Qualcomm FastConnect and AR8035 Firmware - Memory Corruption in TME
CVSS 7.8
CVE-2024-43060 HIGH
Qualcomm Firmware - Memory Corruption during Voice Activation
CVSS 7.8
CVE-2024-52939 HIGH
Kernel software <Guest VM - Memory Corruption
CVSS 7.8
CVE-2024-47896 LOW
Kernel software <Guest VM - Memory Corruption
CVSS 3.3
CVE-2024-12577 HIGH
Kernel - Memory Corruption
CVSS 7.3
CVE-2024-49840 HIGH
Qualcomm FastConnect and Multiple Firmware - Memory Corruption via IOCTL FIPS Validation
CVSS 7.8
CVE-2024-45573 HIGH
Product <Version - Memory Corruption
CVSS 7.8
CVE-2024-47900 HIGH
Software <version> - Memory Corruption
CVSS 7.8
Details
Vulnerabilities 91