Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2019-10-10 CVE-2019-1345 Out-of-bounds Read vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-125
5.5
2019-10-10 CVE-2019-1344 Out-of-bounds Read vulnerability in Microsoft products
An information disclosure vulnerability exists in the way that the Windows Code Integrity Module handles objects in memory, aka 'Windows Code Integrity Module Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-125
5.5
2019-10-09 CVE-2019-17401 Out-of-bounds Read vulnerability in Liblnk Project Liblnk 20191006
libyal liblnk 20191006 has a heap-based buffer over-read in the network_share_name_offset>20 code block of liblnk_location_information_read_data in liblnk_location_information.c, a different issue than CVE-2019-17264.
local
low complexity
liblnk-project CWE-125
3.3
2019-10-09 CVE-2019-17362 Out-of-bounds Read vulnerability in multiple products
In LibTomCrypt through 1.18.2, the der_decode_utf8_string function (in der_decode_utf8_string.c) does not properly detect certain invalid UTF-8 sequences.
network
low complexity
libtom debian CWE-125
critical
9.1
2019-10-08 CVE-2019-17260 Out-of-bounds Read vulnerability in Mpc-Hc
MPC-HC through 1.7.13 allows a Read Access Violation on a Block Data Move starting at mpc_hc!memcpy+0x000000000000004e.
local
low complexity
mpc-hc CWE-125
7.8
2019-10-07 CVE-2019-13120 Out-of-bounds Read vulnerability in Amazon web Services Freertos
Amazon FreeRTOS up to and including v1.4.8 lacks length checking in prvProcessReceivedPublish, resulting in untargetable leakage of arbitrary memory contents on a device to an attacker.
network
low complexity
amazon CWE-125
7.5
2019-10-06 CVE-2019-17266 Out-of-bounds Read vulnerability in multiple products
libsoup from versions 2.65.1 until 2.68.1 have a heap-based buffer over-read because soup_ntlm_parse_challenge() in soup-auth-ntlm.c does not properly check an NTLM message's length before proceeding with a memcpy.
network
low complexity
gnome canonical CWE-125
critical
9.8
2019-10-06 CVE-2019-17263 Out-of-bounds Read vulnerability in Libfwsi Project Libfwsi 20181227
In libyal libfwsi before 20191006, libfwsi_extension_block_copy_from_byte_stream in libfwsi_extension_block.c has a heap-based buffer over-read because rejection of an unsupported size only considers values less than 6, even though values of 6 and 7 are also unsupported.
local
low complexity
libfwsi-project CWE-125
3.3
2019-10-03 CVE-2019-13331 Out-of-bounds Read vulnerability in Foxitsoftware Reader
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.5.0.20723.
local
low complexity
foxitsoftware CWE-125
7.8
2019-10-03 CVE-2019-13326 Out-of-bounds Read vulnerability in Foxitsoftware Reader
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.5.0.20723.
local
low complexity
foxitsoftware CWE-125
7.8