Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2018-11-17 CVE-2018-19342 Out-of-bounds Read vulnerability in Foxitsoftware Foxit Reader and U3D
The u3d plugin 9.3.0.10809 (aka plugins\U3DBrowser.fpi) in FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read) or obtain sensitive information via a U3D sample because of a "Read Access Violation starting at U3DBrowser+0x000000000000347a" issue.
local
low complexity
foxitsoftware CWE-125
7.1
2018-11-17 CVE-2018-19341 Out-of-bounds Read vulnerability in Foxitsoftware Foxit Reader and U3D
The u3d plugin 9.3.0.10809 (aka plugins\U3DBrowser.fpi) in FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read) or obtain sensitive information via a U3D sample because of a "Read Access Violation near NULL starting at FoxitReader!std::basic_ostream >::operator<<+0x0000000000087906" issue.
local
low complexity
foxitsoftware CWE-125
7.1
2018-11-15 CVE-2015-9274 Out-of-bounds Read vulnerability in Harfbuzz Project Harfbuzz
HarfBuzz before 1.0.4 allows remote attackers to cause a denial of service (invalid read of two bytes and application crash) because of GPOS and GSUB table mishandling, related to hb-ot-layout-gpos-table.hh, hb-ot-layout-gsub-table.hh, and hb-ot-layout-gsubgpos-private.hh.
network
low complexity
harfbuzz-project CWE-125
6.5
2018-11-14 CVE-2018-9544 Out-of-bounds Read vulnerability in Google Android 9.0
In register_app of btif_hd.cc, there is a possible out-of-bounds read due to a missing bounds check.
local
low complexity
google CWE-125
5.5
2018-11-14 CVE-2018-9542 Out-of-bounds Read vulnerability in Google Android
In avrc_pars_vendor_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2018-11-14 CVE-2018-9541 Out-of-bounds Read vulnerability in Google Android
In avrc_pars_vendor_rsp of avcr_pars_ct.cc, there is a possible out-of-bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2018-11-14 CVE-2018-9540 Out-of-bounds Read vulnerability in Google Android
In avrc_ctrl_pars_vendor_rsp of avrc_pars_ct.c, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2018-11-14 CVE-2018-6067 Out-of-bounds Read vulnerability in multiple products
Incorrect IPC serialization in Skia in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google redhat debian CWE-125
8.8
2018-11-14 CVE-2018-17469 Out-of-bounds Read vulnerability in multiple products
Incorrect handling of PDF filter chains in PDFium in Google Chrome prior to 70.0.3538.67 allowed a remote attacker to perform an out of bounds memory read via a crafted PDF file.
network
low complexity
google redhat debian CWE-125
8.8
2018-11-14 CVE-2018-17466 Out-of-bounds Read vulnerability in multiple products
Incorrect texture handling in Angle in Google Chrome prior to 70.0.3538.67 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
network
low complexity
google redhat debian canonical CWE-125
8.8