Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2020-02-07 CVE-2019-14057 Out-of-bounds Read vulnerability in Qualcomm products
Buffer Over read of codec private data while parsing an mkv file due to lack of check of buffer size before read in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MSM8905, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8939, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, Nicobar, QCA6574AU, QCS405, QCS605, QM215, Rennell, SA6155P, Saipan, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
network
low complexity
qualcomm CWE-125
critical
9.1
2020-02-06 CVE-2016-7524 Out-of-bounds Read vulnerability in Imagemagick
coders/meta.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
network
low complexity
imagemagick CWE-125
6.5
2020-02-06 CVE-2016-7523 Out-of-bounds Read vulnerability in Imagemagick
coders/meta.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
network
low complexity
imagemagick CWE-125
6.5
2020-02-05 CVE-2020-3123 Out-of-bounds Read vulnerability in multiple products
A vulnerability in the Data-Loss-Prevention (DLP) module in Clam AntiVirus (ClamAV) Software versions 0.102.1 and 0.102.0 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device.
network
low complexity
clamav canonical CWE-125
7.5
2020-02-04 CVE-2020-6058 Out-of-bounds Read vulnerability in Minisnmpd Project Minisnmpd 1.4
An exploitable out-of-bounds read vulnerability exists in the way MiniSNMPD version 1.4 parses incoming SNMP packets.
network
low complexity
minisnmpd-project CWE-125
critical
9.1
2020-02-04 CVE-2020-5235 Out-of-bounds Read vulnerability in Nanopb Project Nanopb
There is a potentially exploitable out of memory condition In Nanopb before 0.4.1, 0.3.9.5, and 0.2.9.4.
network
low complexity
nanopb-project CWE-125
critical
9.8
2020-02-03 CVE-2019-18567 Out-of-bounds Read vulnerability in HP Bromium 4.0.3.2060/4.1.7
Bromium client version 4.0.3.2060 and prior to 4.1.7 Update 1 has an out of bound read results in race condition causing Kernel memory leaks or denial of service.
local
high complexity
hp CWE-125
6.3
2020-01-28 CVE-2014-2898 Out-of-bounds Read vulnerability in Wolfssl
wolfSSL CyaSSL before 2.9.4 allows remote attackers to have unspecified impact via multiple calls to the CyaSSL_read function which triggers an out-of-bounds read when an error occurs, related to not checking the return code and MAC verification failure.
network
low complexity
wolfssl CWE-125
critical
9.8
2020-01-28 CVE-2014-2897 Out-of-bounds Read vulnerability in Wolfssl
The SSL 3 HMAC functionality in wolfSSL CyaSSL 2.5.0 before 2.9.4 does not check the padding length when verification fails, which allows remote attackers to have unspecified impact via a crafted HMAC, which triggers an out-of-bounds read.
network
low complexity
wolfssl CWE-125
critical
9.8
2020-01-28 CVE-2014-2896 Out-of-bounds Read vulnerability in Wolfssl
The DoAlert function in the (1) TLS and (2) DTLS implementations in wolfSSL CyaSSL before 2.9.4 allows remote attackers to have unspecified impact and vectors, which trigger memory corruption or an out-of-bounds read.
network
low complexity
wolfssl CWE-125
critical
9.8