CWE-823

Use of Out-of-range Pointer Offset

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs pointer arithmetic on a valid pointer, but it uses an offset that can point outside of the intended range of valid memory locations for the resulting pointer.

91 vulnerabilities with CWE-823
CVE-2024-52938 HIGH
Kernel software - Memory Corruption
CVSS 7.8
CVE-2024-52937 MEDIUM
Kernel software - Memory Corruption
CVSS 6.7
CVE-2024-52936 MEDIUM
Kernel software <Guest VM - Info Disclosure
CVSS 4.4
CVE-2024-52935 MEDIUM
Kernel software - Memory Corruption
CVSS 4.1
CVE-2024-47895 HIGH
Kernel software <Guest VM - Info Disclosure
CVSS 7.1
CVE-2024-47894 HIGH
Kernel software <Guest VM - Info Disclosure
CVSS 7.1
CVE-2024-33041 MEDIUM
Qualcomm Fastconnect 6900 Firmware - Out-of-Bounds Write
CVSS 6.7
CVE-2024-33036 MEDIUM
Camera Driver - Memory Corruption
CVSS 6.7
CVE-2024-42391 MEDIUM
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 4.3
CVE-2024-42390 MEDIUM
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 4.3
CVE-2024-42389 MEDIUM
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 5.3
CVE-2024-42388 MEDIUM
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 5.3
CVE-2024-42387 MEDIUM
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 5.3
CVE-2024-42386 HIGH
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 8.2
CVE-2024-42383 MEDIUM
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 4.2
CVE-2024-23377 MEDIUM
EVA - Memory Corruption
CVSS 6.7
CVE-2024-42416 HIGH
bhyve - Code Execution
CVSS 8.8
CVE-2024-6603 HIGH
Firefox <128 - Memory Corruption
CVSS 7.4
CVE-2024-21475 HIGH
Firmware <expected protocol size - Memory Corruption
CVSS 7.8
CVE-2024-1013 HIGH
Unixodbc - Out-of-Bounds Access
CVSS 7.8
CVE-2023-43553 CRITICAL
Qualcomm Wi-Fi Firmware - Memory Corruption via MLIE Parsing
CVSS 9.8
CVE-2023-33066 HIGH
Qualcomm 315 5G Iot Modem Firmware - Out-of-Bounds Write
CVSS 8.4
CVE-2023-43534 HIGH
Qualcomm TID to Link Mapping Firmware - Memory Corruption
CVSS 8.6
CVE-2023-43516 HIGH
Qualcomm FastConnect and Snapdragon Firmware - Memory Corruption
CVSS 7.8
CVE-2023-43513 HIGH
Qualcomm Modem and Networking Firmware - Memory Corruption
CVSS 7.8
Details
Vulnerabilities 91