CWE-823
Use of Out-of-range Pointer Offset
The product performs pointer arithmetic on a valid pointer, but it uses an offset that can point outside of the intended range of valid memory locations for the resulting pointer.
94 vulnerabilities with CWE-823
CVE-2026-34193
MEDIUM
Imagination Graphics DDK - Firmware Memory Arbitrary Write
CVSS 4.3
CVE-2026-28764
HIGH
MediaArea MediaInfoLib 26.01 - Heap-based Buffer Overflow in LXF Element Parsing
CVSS 7.8
CVE-2026-42946
MEDIUM
NGINX ngx_http_scgi_module and ngx_http_uwsgi_module vulnerability
CVSS 6.5
CVE-2026-41907
HIGH
uuid: Missing buffer bounds check in `v3`/`v5`/`v6` when `buf` is provided
CVSS 7.5
CVE-2026-21732
CRITICAL
GPU DDK - libusc OOB write at ConvertSwitchToArrayLookupBP during WebGPU shader compilation
CVSS 9.6
CVE-2026-32829
HIGH
lz4_flex: Decompression can leak information from uninitialized memory or reused output buffer
CVSS 7.5
CVE-2026-20022
MEDIUM
Cisco Secure Firewall ASA/FTD - DoS
CVSS 6.1
CVE-2026-23764
MEDIUM
VB-Audio Voicemeeter <1.1.1.9-3.1.1.9 - Memory Corruption
CVE-2026-21487
MEDIUM
iccDEV < 2.3.1.2 - Out-of-bounds Read in CIccProfile::LoadTag
CVSS 6.1
CVE-2025-33215
MEDIUM
NVIDIA SNAP-4 Container < 4.9.1 and < 4.5.5 - Denial of Service via VIRTIO-BLK Crafted Messages
CVSS 6.8
CVE-2025-54152
MEDIUM
Qsync Central <5.0.0.4 - Memory Corruption
CVSS 6.5
CVE-2025-11232
HIGH
ISC Kea 2.6.0-2.6.4, 2.7.0-2.7.9, 3.0.0-3.0.1, 3.1.0-3.1.2 - Denial of Service via DDNS Hostname Processing
CVSS 7.5
CVE-2025-47349
HIGH
Product <Version - Memory Corruption
CVSS 7.8
CVE-2025-27059
HIGH
Qualcomm Immersive Home and IPQ Firmware - Memory Corruption in SCM Call
CVSS 8.8
CVE-2025-25180
HIGH
Imagination Technologies Graphics DDK <=25.1 RTM1 - Use-After-Free via GPU System Calls
CVSS 7.8
CVE-2025-46806
MEDIUM
sslh < 2.2.4 - Denial of Service via Out-of-range Pointer Offset
CVE-2025-0467
HIGH
Kernel software - Memory Corruption
CVSS 8.2
CVE-2024-53017
MEDIUM
Product Version - Memory Corruption
CVSS 6.6
CVE-2024-47893
MEDIUM
Kernel software - Memory Corruption
CVSS 6.5
CVE-2024-45570
MEDIUM
Qualcomm Firmware - Memory Corruption during IO Configuration Processing
CVSS 6.6
CVE-2024-45557
HIGH
Qualcomm FastConnect and AR8035 Firmware - Memory Corruption in TME
CVSS 7.8
CVE-2024-43060
HIGH
Qualcomm Firmware - Memory Corruption during Voice Activation
CVSS 7.8
CVE-2024-52939
HIGH
Kernel software <Guest VM - Memory Corruption
CVSS 7.8
CVE-2024-47896
LOW
Kernel software <Guest VM - Memory Corruption
CVSS 3.3
CVE-2024-12577
HIGH
Imagination Technologies Graphics DDK 1.15 RTM-24.2 RTM & >=25.1 RTM - Memory Corruption
CVSS 7.3
Details
Vulnerabilities
94