Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2022-02-01 CVE-2022-24198 Out-of-bounds Read vulnerability in Itextpdf Itext 7.1.17
iText v7.1.17 was discovered to contain an out-of-bounds exception via the component ARCFOUREncryption.encryptARCFOUR, which allows attackers to cause a Denial of Service (DoS) via a crafted PDF file.
network
low complexity
itextpdf CWE-125
6.5
2022-02-01 CVE-2021-41040 Out-of-bounds Read vulnerability in Eclipse Wakaama 1.0
In Eclipse Wakaama, ever since its inception until 2021-01-14, the CoAP parsing code does not properly sanitize network-received data.
network
low complexity
eclipse CWE-125
7.5
2022-01-28 CVE-2021-22809 Out-of-bounds Read vulnerability in Schneider-Electric Guicon 2.0
A CWE-125:Out-of-Bounds Read vulnerability exists that could cause unintended data disclosure when a malicious *.gd1 configuration file is loaded into the GUIcon tool.
local
low complexity
schneider-electric CWE-125
5.5
2022-01-28 CVE-2022-23096 Out-of-bounds Read vulnerability in multiple products
An issue was discovered in the DNS proxy in Connman through 1.40.
network
low complexity
intel debian CWE-125
critical
9.1
2022-01-28 CVE-2022-23097 Out-of-bounds Read vulnerability in multiple products
An issue was discovered in the DNS proxy in Connman through 1.40.
network
low complexity
intel debian CWE-125
critical
9.1
2022-01-25 CVE-2021-40158 Out-of-bounds Read vulnerability in Autodesk products
A maliciously crafted JT file in Autodesk Inventor 2022, 2021, 2020, 2019 and AutoCAD 2022 may be forced to read beyond allocated boundaries when parsing the JT file.
local
low complexity
autodesk CWE-125
7.8
2022-01-25 CVE-2021-40167 Out-of-bounds Read vulnerability in Autodesk Design Review 2018
A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access violation.
local
low complexity
autodesk CWE-125
7.8
2022-01-24 CVE-2022-21711 Out-of-bounds Read vulnerability in Elfspirit Project Elfspirit 0.1/1.0
elfspirit is an ELF static analysis and injection framework that parses, manipulates, and camouflages ELF files.
local
low complexity
elfspirit-project CWE-125
7.1
2022-01-24 CVE-2021-35005 Out-of-bounds Read vulnerability in Teamviewer
This vulnerability allows local attackers to disclose sensitive information on affected installations of TeamViewer.
local
low complexity
teamviewer CWE-125
3.3
2022-01-21 CVE-2022-23130 Out-of-bounds Read vulnerability in multiple products
Buffer Over-read vulnerability in Mitsubishi Electric MC Works64 versions 4.00A (10.95.201.23) to 4.04E (10.95.210.01), ICONICS GENESIS64 versions 10.97 and prior and ICONICS Hyper Historian versions 10.97 and prior allows an attacker to cause a DoS condition in the database server by getting a legitimate user to import a configuration file containing specially crafted stored procedures into GENESIS64 or MC Works64 and execute commands against the database from GENESIS64 or MC Works64.
local
low complexity
mitsubishielectric iconics CWE-125
5.5