CWE-823
Use of Out-of-range Pointer Offset
The product performs pointer arithmetic on a valid pointer, but it uses an offset that can point outside of the intended range of valid memory locations for the resulting pointer.
94 vulnerabilities with CWE-823
CVE-2024-49840
HIGH
Qualcomm FastConnect and Multiple Firmware - Memory Corruption via IOCTL FIPS Validation
CVSS 7.8
CVE-2024-45573
HIGH
Product <Version - Memory Corruption
CVSS 7.8
CVE-2024-47900
HIGH
Software <version> - Memory Corruption
CVSS 7.8
CVE-2024-52938
HIGH
Kernel software - Memory Corruption
CVSS 7.8
CVE-2024-52937
MEDIUM
Kernel software - Memory Corruption
CVSS 6.7
CVE-2024-52936
MEDIUM
Kernel software <Guest VM - Info Disclosure
CVSS 4.4
CVE-2024-52935
MEDIUM
Kernel software - Memory Corruption
CVSS 4.1
CVE-2024-47895
HIGH
Kernel software <Guest VM - Info Disclosure
CVSS 7.1
CVE-2024-47894
HIGH
Kernel software <Guest VM - Info Disclosure
CVSS 7.1
CVE-2024-33041
MEDIUM
Qualcomm FastConnect 6900 Firmware - Memory Corruption via Fence Frame IOCTL Calls
CVSS 6.7
CVE-2024-33036
MEDIUM
Qualcomm C-V2X 9150 Firmware - Memory Corruption via Sensor Packet Parsing
CVSS 6.7
CVE-2024-42391
MEDIUM
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 4.3
CVE-2024-42390
MEDIUM
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 4.3
CVE-2024-42389
MEDIUM
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 5.3
CVE-2024-42388
MEDIUM
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 5.3
CVE-2024-42387
MEDIUM
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 5.3
CVE-2024-42386
HIGH
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 8.2
CVE-2024-42383
MEDIUM
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 4.2
CVE-2024-23377
MEDIUM
Qualcomm WSA8845H and other Firmware - Memory Corruption via IOCTL Command Packet Size Modification
CVSS 6.7
CVE-2024-42416
HIGH
FreeBSD 13.0-13.2 - Use-After-Free in ctl_report_supported_opcodes
CVSS 8.8
CVE-2024-6603
HIGH
Firefox < 128 and ESR < 115.13 - Use-After-Free via Out-of-Memory Allocation Failure
CVSS 7.4
CVE-2024-21475
HIGH
Firmware <expected protocol size - Memory Corruption
CVSS 7.8
CVE-2024-1013
HIGH
unixODBC - Use-After-Free via Stack Write Mismatch on 64-bit Architectures
CVSS 7.8
CVE-2023-43553
CRITICAL
Qualcomm Wi-Fi Firmware - Memory Corruption via MLIE Parsing
CVSS 9.8
CVE-2023-33066
HIGH
Qualcomm Modem and Networking Firmware - Memory Corruption in Audio RT Proxy Port Register Driver
CVSS 8.4
Details
Vulnerabilities
94