Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2021-08-12 CVE-2021-27791 Out-of-bounds Read vulnerability in Broadcom Fabric Operating System
The function that is used to parse the Authentication header in Brocade Fabric OS Web application service before Brocade Fabric OS v9.0.1a and v8.2.3a fails to properly process a malformed authentication header from the client, resulting in reading memory addresses outside the intended range.
network
low complexity
broadcom CWE-125
5.4
2021-08-11 CVE-2021-1111 Out-of-bounds Read vulnerability in Nvidia Jetson Linux
Bootloader contains a vulnerability in the NV3P server where any user with physical access through USB can trigger an incorrect bounds check, which may lead to buffer overflow, resulting in limited information disclosure, limited data integrity, and denial of service across all components.
low complexity
nvidia CWE-125
6.7
2021-08-11 CVE-2021-38564 Out-of-bounds Read vulnerability in Foxitsoftware PDF Editor and PDF Reader
An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1.
network
low complexity
foxitsoftware CWE-125
critical
9.1
2021-08-11 CVE-2021-0009 Out-of-bounds Read vulnerability in Intel Ethernet Controller E810 Firmware 1.3.19/1.4.11/1.5.1.0
Out-of-bounds read in the firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.3.0 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
low complexity
intel CWE-125
6.5
2021-08-10 CVE-2021-38380 Out-of-bounds Read vulnerability in Live555
Live555 through 1.08 mishandles huge requests for the same MP3 stream, leading to recursion and s stack-based buffer over-read.
network
low complexity
live555 CWE-125
7.5
2021-08-08 CVE-2021-38202 Out-of-bounds Read vulnerability in multiple products
fs/nfsd/trace.h in the Linux kernel before 5.13.4 might allow remote attackers to cause a denial of service (out-of-bounds read in strlen) by sending NFS traffic when the trace event framework is being used for nfsd.
network
low complexity
linux netapp CWE-125
7.5
2021-08-04 CVE-2021-38115 Out-of-bounds Read vulnerability in Libgd
read_header_tga in gd_tga.c in the GD Graphics Library (aka LibGD) through 2.3.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TGA file.
network
low complexity
libgd CWE-125
6.5
2021-08-03 CVE-2021-36159 Out-of-bounds Read vulnerability in Freebsd Libfetch
libfetch before 2021-07-26, as used in apk-tools, xbps, and other products, mishandles numeric strings for the FTP and HTTP protocols.
network
low complexity
freebsd CWE-125
critical
9.1
2021-08-02 CVE-2021-22552 Out-of-bounds Read vulnerability in Google Asylo
An untrusted memory read vulnerability in Asylo versions up to 0.6.1 allows an untrusted attacker to pass a syscall number in MessageReader that is then used by sysno() and can bypass validation.
local
low complexity
google CWE-125
5.5
2021-07-26 CVE-2021-25801 Out-of-bounds Read vulnerability in Videolan VLC Media Player 3.0.11
A buffer overflow vulnerability in the __Parse_indx component of VideoLAN VLC Media Player 3.0.11 allows attackers to cause an out-of-bounds read via a crafted .avi file.
local
low complexity
videolan CWE-125
7.1