Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2020-07-14 CVE-2020-10037 Out-of-bounds Read vulnerability in Siemens products
A vulnerability has been identified in SICAM MMU (All versions < V2.05), SICAM SGU (All versions), SICAM T (All versions < V2.18).
network
low complexity
siemens CWE-125
7.5
2020-07-09 CVE-2020-13131 Out-of-bounds Read vulnerability in Yubico products
An issue was discovered in Yubico libykpiv before 2.1.0.
low complexity
yubico CWE-125
4.3
2020-07-09 CVE-2020-10756 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read vulnerability was found in the SLiRP networking implementation of the QEMU emulator.
6.5
2020-07-09 CVE-2020-12425 Out-of-bounds Read vulnerability in Mozilla Firefox
Due to confusion processing a hyphen character in Date.parse(), a one-byte out of bounds read could have occurred, leading to potential information disclosure.
network
low complexity
mozilla CWE-125
6.5
2020-07-09 CVE-2020-12418 Out-of-bounds Read vulnerability in multiple products
Manipulating individual parts of a URL object could have caused an out-of-bounds read, leaking process memory to malicious JavaScript.
network
low complexity
mozilla canonical opensuse CWE-125
6.5
2020-07-09 CVE-2020-12407 Out-of-bounds Read vulnerability in Mozilla Firefox
Mozilla Developer Nicolas Silva found that when using WebRender, Firefox would under certain conditions leak arbitrary GPU memory to the visible screen.
network
low complexity
mozilla CWE-125
6.5
2020-07-01 CVE-2020-12498 Out-of-bounds Read vulnerability in Phoenixcontact PC Worx and PC Worx Express
mwe file parsing in Phoenix Contact PC Worx and PC Worx Express version 1.87 and earlier is vulnerable to out-of-bounds read remote code execution.
local
low complexity
phoenixcontact CWE-125
7.8
2020-07-01 CVE-2020-15476 Out-of-bounds Read vulnerability in multiple products
In nDPI through 3.2, the Oracle protocol dissector has a heap-based buffer over-read in ndpi_search_oracle in lib/protocols/oracle.c.
network
low complexity
ntop debian CWE-125
7.5
2020-07-01 CVE-2020-15473 Out-of-bounds Read vulnerability in Ntop Ndpi
In nDPI through 3.2, the OpenVPN dissector is vulnerable to a heap-based buffer over-read in ndpi_search_openvpn in lib/protocols/openvpn.c.
network
low complexity
ntop CWE-125
critical
9.1
2020-07-01 CVE-2020-15472 Out-of-bounds Read vulnerability in multiple products
In nDPI through 3.2, the H.323 dissector is vulnerable to a heap-based buffer over-read in ndpi_search_h323 in lib/protocols/h323.c, as demonstrated by a payload packet length that is too short.
network
low complexity
ntop debian CWE-125
critical
9.1