Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2018-05-26 CVE-2018-11504 Out-of-bounds Read vulnerability in multiple products
The islist function in markdown.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file, as demonstrated by mkd2html.
4.3
2018-05-26 CVE-2018-11503 Out-of-bounds Read vulnerability in multiple products
The isfootnote function in markdown.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file, as demonstrated by mkd2html.
4.3
2018-05-25 CVE-2018-11468 Out-of-bounds Read vulnerability in multiple products
The __mkd_trim_line function in mkdio.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file, as demonstrated by mkd2html.
4.3
2018-05-24 CVE-2018-5680 Out-of-bounds Read vulnerability in Foxitsoftware Phantompdf and Reader
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader before 9.1 and PhantomPDF before 9.1.
6.8
2018-05-24 CVE-2018-5679 Out-of-bounds Read vulnerability in Foxitsoftware Phantompdf and Reader
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader before 9.1 and PhantomPDF before 9.1.
6.8
2018-05-24 CVE-2018-5677 Out-of-bounds Read vulnerability in Foxitsoftware Phantompdf and Reader
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader before 9.1 and PhantomPDF before 9.1.
6.8
2018-05-24 CVE-2018-11419 Out-of-bounds Read vulnerability in Jerryscript 1.0
An issue was discovered in JerryScript 1.0.
network
low complexity
jerryscript CWE-125
7.5
2018-05-24 CVE-2018-11418 Out-of-bounds Read vulnerability in Jerryscript 1.0
An issue was discovered in JerryScript 1.0.
network
low complexity
jerryscript CWE-125
7.5
2018-05-24 CVE-2018-1000301 Out-of-bounds Read vulnerability in multiple products
curl version curl 7.20.0 to and including curl 7.59.0 contains a CWE-126: Buffer Over-read vulnerability in denial of service that can result in curl can be tricked into reading data beyond the end of a heap based buffer used to store downloaded RTSP content..
network
low complexity
debian canonical haxx redhat oracle CWE-125
6.4
2018-05-22 CVE-2018-11362 Out-of-bounds Read vulnerability in multiple products
In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the LDSS dissector could crash.
network
low complexity
wireshark debian CWE-125
7.5