Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2020-01-14 CVE-2020-0615 Out-of-bounds Read vulnerability in Microsoft products
An information disclosure vulnerability exists in the Windows Common Log File System (CLFS) driver when it fails to properly handle objects in memory, aka 'Windows Common Log File System Driver Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-125
5.5
2020-01-14 CVE-2015-2326 Out-of-bounds Read vulnerability in multiple products
The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".
local
low complexity
pcre opensuse mariadb php CWE-125
5.5
2020-01-10 CVE-2019-19817 Out-of-bounds Read vulnerability in Gonitro Nitro Free PDF Reader 12.0.0.112
The JBIG2Decode library in npdf.dll in Nitro Free PDF Reader 12.0.0.112 has a CAPPDAnnotHandlerUtils::PDAnnotHandlerDestroyData2+0x2e8a Out-of-Bounds Read via crafted Unicode content.
local
low complexity
gonitro CWE-125
5.5
2020-01-10 CVE-2020-6162 Out-of-bounds Read vulnerability in Bftpd Project Bftpd 5.3
An issue was discovered in Bftpd 5.3.
network
low complexity
bftpd-project CWE-125
critical
9.1
2020-01-09 CVE-2020-6628 Out-of-bounds Read vulnerability in Libming 0.4.8
Ming (aka libming) 0.4.8 has a heap-based buffer over-read in the function decompile_SWITCH() in decompile.c.
network
low complexity
libming CWE-125
8.8
2020-01-09 CVE-2020-6625 Out-of-bounds Read vulnerability in Jhead Project Jhead
jhead through 3.04 has a heap-based buffer over-read in Get32s when called from ProcessGpsInfo in gpsinfo.c.
local
low complexity
jhead-project CWE-125
7.1
2020-01-09 CVE-2020-6624 Out-of-bounds Read vulnerability in Jhead Project Jhead
jhead through 3.04 has a heap-based buffer over-read in process_DQT in jpgqguess.c.
local
low complexity
jhead-project CWE-125
7.1
2020-01-08 CVE-2020-6622 Out-of-bounds Read vulnerability in Nothings STB Truetype.H 1.22
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in stbtt__buf_peek8.
network
low complexity
nothings CWE-125
8.8
2020-01-08 CVE-2020-6621 Out-of-bounds Read vulnerability in Nothings STB Truetype.H 1.22
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in ttUSHORT.
network
low complexity
nothings CWE-125
8.8
2020-01-08 CVE-2020-6620 Out-of-bounds Read vulnerability in Nothings STB Truetype.H 1.22
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in stbtt__buf_get8.
network
low complexity
nothings CWE-125
8.8