Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2018-05-29 CVE-2018-11546 Out-of-bounds Read vulnerability in Md4C Project Md4C 0.2.5
md4c 0.2.5 has a heap-based buffer over-read because md_is_named_entity_contents has an off-by-one error.
network
low complexity
md4c-project CWE-125
critical
9.8
2018-05-29 CVE-2018-3745 Out-of-bounds Read vulnerability in Atob Project Atob
atob 2.0.3 and earlier allocates uninitialized Buffers when number is passed in input on Node.js 4.x and below.
network
low complexity
atob-project CWE-125
critical
9.1
2018-05-26 CVE-2018-11504 Out-of-bounds Read vulnerability in multiple products
The islist function in markdown.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file, as demonstrated by mkd2html.
local
low complexity
discount-project debian CWE-125
5.5
2018-05-26 CVE-2018-11503 Out-of-bounds Read vulnerability in multiple products
The isfootnote function in markdown.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file, as demonstrated by mkd2html.
local
low complexity
discount-project debian CWE-125
5.5
2018-05-25 CVE-2018-6234 Out-of-bounds Read vulnerability in Trendmicro products
An Out-of-Bounds Read Information Disclosure vulnerability in Trend Micro Maximum Security (Consumer) 2018 could allow a local attacker to disclose sensitive information on vulnerable installations due to a flaw within processing of IOCTL 0x222814 by the tmnciesc.sys driver.
local
low complexity
trendmicro CWE-125
5.5
2018-05-25 CVE-2018-11468 Out-of-bounds Read vulnerability in multiple products
The __mkd_trim_line function in mkdio.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file, as demonstrated by mkd2html.
local
low complexity
discount-project debian CWE-125
5.5
2018-05-24 CVE-2018-5680 Out-of-bounds Read vulnerability in Foxitsoftware Reader
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader before 9.1 and PhantomPDF before 9.1.
network
low complexity
foxitsoftware CWE-125
8.8
2018-05-24 CVE-2018-5679 Out-of-bounds Read vulnerability in Foxitsoftware Reader
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader before 9.1 and PhantomPDF before 9.1.
network
low complexity
foxitsoftware CWE-125
8.8
2018-05-24 CVE-2018-5677 Out-of-bounds Read vulnerability in Foxitsoftware Reader
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader before 9.1 and PhantomPDF before 9.1.
network
low complexity
foxitsoftware CWE-125
8.8
2018-05-24 CVE-2018-11419 Out-of-bounds Read vulnerability in Jerryscript 1.0
An issue was discovered in JerryScript 1.0.
network
low complexity
jerryscript CWE-125
critical
9.8