Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2021-02-02 CVE-2020-8672 Out-of-bounds Read vulnerability in Intel Bios
Out of bound read in BIOS firmware for 8th, 9th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 4000 Series Processors may allow an unauthenticated user to potentially enable elevation of privilege or denial of service via local access.
local
low complexity
intel CWE-125
7.8
2021-02-02 CVE-2020-24335 Out-of-bounds Read vulnerability in UIP Project UIP
An issue was discovered in uIP through 1.0, as used in Contiki and Contiki-NG.
network
low complexity
uip-project CWE-125
7.5
2021-01-27 CVE-2021-22655 Out-of-bounds Read vulnerability in Fujielectric V-Server and V-Simulator
Multiple out-of-bounds read issues have been identified in the way the application processes project files, allowing an attacker to craft a special project file that may allow arbitrary code execution on the Tellus Lite V-Simulator and V-Server Lite (versions prior to 4.0.10.0).
local
low complexity
fujielectric CWE-125
7.8
2021-01-27 CVE-2021-3272 Out-of-bounds Read vulnerability in multiple products
jp2_decode in jp2/jp2_dec.c in libjasper in JasPer 2.0.24 has a heap-based buffer over-read when there is an invalid relationship between the number of channels and the number of image components.
local
low complexity
jasper-project fedoraproject CWE-125
5.5
2021-01-26 CVE-2020-27299 Out-of-bounds Read vulnerability in Honeywell OPC UA Tunneller
The affected product is vulnerable to an out-of-bounds read, which may allow an attacker to obtain and disclose sensitive data information or cause the device to crash on the OPC UA Tunneller (versions prior to 6.3.0.8233).
network
low complexity
honeywell CWE-125
critical
9.1
2021-01-26 CVE-2021-25901 Out-of-bounds Read vulnerability in Lazy-Init Project Lazy-Init
An issue was discovered in the lazy-init crate through 2021-01-17 for Rust.
network
low complexity
lazy-init-project CWE-125
5.3
2021-01-26 CVE-2020-29443 Out-of-bounds Read vulnerability in multiple products
ide_atapi_cmd_reply_end in hw/ide/atapi.c in QEMU 5.1.0 allows out-of-bounds read access because a buffer index is not validated.
local
high complexity
qemu debian CWE-125
3.9
2021-01-26 CVE-2020-16236 Out-of-bounds Read vulnerability in Panasonic Fpwin PRO
FPWIN Pro is vulnerable to an out-of-bounds read vulnerability when a user opens a maliciously crafted project file, which may allow an attacker to remotely execute arbitrary code.
local
low complexity
panasonic CWE-125
7.8
2021-01-26 CVE-2020-0236 Out-of-bounds Read vulnerability in Google Android 10.0
In A2DP_GetCodecType of a2dp_codec_config, there is a possible out-of-bounds read due to improper input validation.
network
low complexity
google CWE-125
7.5
2021-01-21 CVE-2020-11215 Out-of-bounds Read vulnerability in Qualcomm products
An out of bounds read can happen when processing VSA attribute due to improper minimum required length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
network
low complexity
qualcomm CWE-125
critical
9.1