Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2019-07-28 CVE-2019-14370 Out-of-bounds Read vulnerability in multiple products
In Exiv2 0.27.99.0, there is an out-of-bounds read in Exiv2::MrwImage::readMetadata() in mrwimage.cpp.
network
low complexity
exiv2 debian CWE-125
6.5
2019-07-28 CVE-2019-14369 Out-of-bounds Read vulnerability in multiple products
Exiv2::PngImage::readMetadata() in pngimage.cpp in Exiv2 0.27.99.0 allows attackers to cause a denial of service (heap-based buffer over-read) via a crafted image file.
network
low complexity
exiv2 debian CWE-125
6.5
2019-07-28 CVE-2019-14368 Out-of-bounds Read vulnerability in Exiv2 0.27.99.0
Exiv2 0.27.99.0 has a heap-based buffer over-read in Exiv2::RafImage::readMetadata() in rafimage.cpp.
local
low complexity
exiv2 CWE-125
7.8
2019-07-27 CVE-2015-9289 Out-of-bounds Read vulnerability in Linux Kernel
In the Linux kernel before 4.1.4, a buffer overflow occurs when checking userspace params in drivers/media/dvb-frontends/cx24116.c.
local
low complexity
linux CWE-125
5.5
2019-07-27 CVE-2019-14293 Out-of-bounds Read vulnerability in Glyphandcog Xpdfreader 4.01.01
An issue was discovered in Xpdf 4.01.01.
local
low complexity
glyphandcog CWE-125
5.5
2019-07-27 CVE-2019-14292 Out-of-bounds Read vulnerability in Glyphandcog Xpdfreader 4.01.01
An issue was discovered in Xpdf 4.01.01.
local
low complexity
glyphandcog CWE-125
5.5
2019-07-27 CVE-2019-14291 Out-of-bounds Read vulnerability in Glyphandcog Xpdfreader 4.01.01
An issue was discovered in Xpdf 4.01.01.
local
low complexity
glyphandcog CWE-125
5.5
2019-07-27 CVE-2019-14290 Out-of-bounds Read vulnerability in Glyphandcog Xpdfreader 4.01.01
An issue was discovered in Xpdf 4.01.01.
local
low complexity
glyphandcog CWE-125
5.5
2019-07-26 CVE-2018-20854 Out-of-bounds Read vulnerability in Linux Kernel
An issue was discovered in the Linux kernel before 4.20.
local
low complexity
linux CWE-125
7.8
2019-07-26 CVE-2019-5604 Out-of-bounds Read vulnerability in Freebsd
In FreeBSD 12.0-STABLE before r350246, 12.0-RELEASE before 12.0-RELEASE-p8, 11.3-STABLE before r350247, 11.3-RELEASE before 11.3-RELEASE-p1, and 11.2-RELEASE before 11.2-RELEASE-p12, the emulated XHCI device included with the bhyve hypervisor did not properly validate data provided by the guest, allowing an out-of-bounds read.
network
low complexity
freebsd CWE-125
critical
9.6