CWE-823
Use of Out-of-range Pointer Offset
The product performs pointer arithmetic on a valid pointer, but it uses an offset that can point outside of the intended range of valid memory locations for the resulting pointer.
100 vulnerabilities with CWE-823
CVE-2026-49745
HIGH
GPU DDK - Unvalidated sHWPerfCtlDMABuf GPU-VA, DMA-write into FW privdata via MMU ctx 0
CVSS 7.8
CVE-2026-49744
HIGH
Imagination Technologies Graphics DDK - GPU DDK - Unchecked ui32TracePointer in rgxfw_log_ex()
CVSS 7.8
CVE-2026-21734
HIGH
GPU DDK - libusc OOB write at TreeRemove during WebGPU shader compilation
CVSS 7.7
CVE-2026-12290
HIGH
Mozilla Firefox - Memory Safety Bug Fixed in Thunderbird 152
CVSS 8.1
CVE-2026-46244
CRITICAL
netfilter: nft_inner: Fix IPv6 inner_thoff desync
CVSS 9.1
CVE-2026-34193
MEDIUM
Imagination Graphics DDK - Firmware Memory Arbitrary Write
CVSS 4.3
CVE-2026-28764
HIGH
MediaArea MediaInfoLib 26.01 - Heap-based Buffer Overflow in LXF Element Parsing
CVSS 7.8
CVE-2026-42946
MEDIUM
NGINX ngx_http_scgi_module and ngx_http_uwsgi_module vulnerability
CVSS 6.5
CVE-2026-41907
HIGH
uuid: Missing buffer bounds check in `v3`/`v5`/`v6` when `buf` is provided
CVSS 7.5
CVE-2026-4693
HIGH
Incorrect boundary conditions in the Audio/Video: Playback component
CVSS 7.5
CVE-2026-21732
CRITICAL
GPU DDK - libusc OOB write at ConvertSwitchToArrayLookupBP during WebGPU shader compilation
CVSS 9.6
CVE-2026-32829
HIGH
lz4_flex: Decompression can leak information from uninitialized memory or reused output buffer
CVSS 7.5
CVE-2026-20022
MEDIUM
Cisco Secure Firewall ASA/FTD - DoS
CVSS 6.1
CVE-2026-23764
MEDIUM
VB-Audio Voicemeeter <1.1.1.9-3.1.1.9 - Memory Corruption
CVE-2026-21487
MEDIUM
iccDEV < 2.3.1.2 - Out-of-bounds Read in CIccProfile::LoadTag
CVSS 6.1
CVE-2025-33215
MEDIUM
NVIDIA SNAP-4 Container < 4.9.1 and < 4.5.5 - Denial of Service via VIRTIO-BLK Crafted Messages
CVSS 6.8
CVE-2025-54152
MEDIUM
Qsync Central <5.0.0.4 - Memory Corruption
CVSS 6.5
CVE-2025-11232
HIGH
ISC Kea 2.6.0-2.6.4, 2.7.0-2.7.9, 3.0.0-3.0.1, 3.1.0-3.1.2 - Denial of Service via DDNS Hostname Processing
CVSS 7.5
CVE-2025-47349
HIGH
Product <Version - Memory Corruption
CVSS 7.8
CVE-2025-27059
HIGH
Qualcomm Immersive Home and IPQ Firmware - Memory Corruption in SCM Call
CVSS 8.8
CVE-2025-25180
HIGH
Imagination Technologies Graphics DDK <=25.1 RTM1 - Use-After-Free via GPU System Calls
CVSS 7.8
CVE-2025-46806
MEDIUM
sslh < 2.2.4 - Denial of Service via Out-of-range Pointer Offset
CVE-2025-0467
HIGH
Kernel software - Memory Corruption
CVSS 8.2
CVE-2024-53017
MEDIUM
Product Version - Memory Corruption
CVSS 6.6
CVE-2024-47893
MEDIUM
Kernel software - Memory Corruption
CVSS 6.5
Details
Vulnerabilities
100