Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2019-01-16 CVE-2018-20721 Out-of-bounds Read vulnerability in multiple products
URI_FUNC() in UriParse.c in uriparser before 0.9.1 has an out-of-bounds read (in uriParse*Ex* functions) for an incomplete URI with an IPv6 address containing an embedded IPv4 address, such as a "//[::44.1" address.
network
low complexity
uriparser-project debian CWE-125
critical
9.8
2019-01-16 CVE-2019-6444 Out-of-bounds Read vulnerability in Ntpsec
An issue was discovered in NTPsec before 1.1.3.
network
low complexity
ntpsec CWE-125
critical
9.1
2019-01-16 CVE-2019-6443 Out-of-bounds Read vulnerability in Ntpsec
An issue was discovered in NTPsec before 1.1.3.
network
low complexity
ntpsec CWE-125
critical
9.1
2019-01-15 CVE-2019-3557 Out-of-bounds Read vulnerability in Facebook Hhvm
The implementations of streams for bz2 and php://output improperly implemented their readImpl functions, returning -1 consistently.
network
low complexity
facebook CWE-125
critical
9.8
2019-01-15 CVE-2018-20712 Out-of-bounds Read vulnerability in GNU Binutils 2.31.1
A heap-based buffer over-read exists in the function d_expression_1 in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31.1.
network
low complexity
gnu CWE-125
6.5
2019-01-14 CVE-2019-6286 Out-of-bounds Read vulnerability in Sass-Lang Libsass 3.5.5
In LibSass 3.5.5, a heap-based buffer over-read exists in Sass::Prelexer::skip_over_scopes in prelexer.hpp when called from Sass::Parser::parse_import(), a similar issue to CVE-2018-11693.
network
low complexity
sass-lang CWE-125
6.5
2019-01-14 CVE-2019-6284 Out-of-bounds Read vulnerability in Sass-Lang Libsass 3.5.5
In LibSass 3.5.5, a heap-based buffer over-read exists in Sass::Prelexer::alternatives in prelexer.hpp.
network
low complexity
sass-lang CWE-125
6.5
2019-01-14 CVE-2019-6283 Out-of-bounds Read vulnerability in Sass-Lang Libsass 3.5.5
In LibSass 3.5.5, a heap-based buffer over-read exists in Sass::Prelexer::parenthese_scope in prelexer.hpp.
network
low complexity
sass-lang CWE-125
6.5
2019-01-13 CVE-2019-6246 Out-of-bounds Read vulnerability in Svgpp 1.2.3
An issue was discovered in SVG++ (aka svgpp) 1.2.3.
network
low complexity
svgpp CWE-125
critical
9.8
2019-01-11 CVE-2018-4256 Out-of-bounds Read vulnerability in Apple mac OS X
In macOS High Sierra before 10.13.5, an out-of-bounds read was addressed with improved input validation.
local
low complexity
apple CWE-125
5.5