Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2017-02-02 CVE-2016-6236 Out-of-bounds Read vulnerability in Lepton Project Lepton 1.0
The setup_imginfo_jpg function in lepton/jpgcoder.cc in Dropbox lepton 1.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted jpeg file.
local
low complexity
lepton-project CWE-125
5.5
2017-01-30 CVE-2016-5434 Out-of-bounds Read vulnerability in Pacman Project Pacman 5.0.1
libalpm, as used in pacman 5.0.1, allows remote attackers to cause a denial of service (infinite loop or out-of-bounds read) via a crafted signature file.
local
low complexity
pacman-project CWE-125
5.5
2017-01-30 CVE-2016-2518 Out-of-bounds Read vulnerability in multiple products
The MATCH_ASSOC function in NTP before version 4.2.8p9 and 4.3.x before 4.3.92 allows remote attackers to cause an out-of-bounds reference via an addpeer request with a large hmode value.
network
low complexity
ntp debian netapp oracle redhat freebsd siemens CWE-125
5.3
2017-01-27 CVE-2017-5601 Out-of-bounds Read vulnerability in Libarchive 3.2.2
An error in the lha_read_file_header_1() function (archive_read_support_format_lha.c) in libarchive 3.2.2 allows remote attackers to trigger an out-of-bounds read memory access and subsequently cause a crash via a specially crafted archive.
network
low complexity
libarchive CWE-125
7.5
2017-01-27 CVE-2016-5827 Out-of-bounds Read vulnerability in Libical Project Libical 0.47/1.0.0
The icaltime_from_string function in libical 0.47 and 1.0 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted string to the icalparser_parse_string function.
network
low complexity
libical-project CWE-125
7.5
2017-01-27 CVE-2016-5826 Out-of-bounds Read vulnerability in Libical Project Libical 0.47/1.0
The parser_get_next_char function in libical 0.47 and 1.0 allows remote attackers to cause a denial of service (out-of-bounds heap read) by crafting a string to the icalparser_parse_string function.
network
low complexity
libical-project CWE-125
7.5
2017-01-27 CVE-2016-5825 Out-of-bounds Read vulnerability in Libical Project Libical 0.47/1.0
The icalparser_parse_string function in libical 0.47 and 1.0 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted ics file.
local
low complexity
libical-project CWE-125
5.5
2017-01-26 CVE-2016-9050 Out-of-bounds Read vulnerability in Aerospike Database Server 3.10.0.3
An exploitable out-of-bounds read vulnerability exists in the client message-parsing functionality of Aerospike Database Server 3.10.0.3.
network
low complexity
aerospike CWE-125
8.2
2017-01-26 CVE-2016-6911 Out-of-bounds Read vulnerability in Libgd
The dynamicGetbuf function in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TIFF image.
local
low complexity
libgd CWE-125
5.5
2017-01-24 CVE-2016-10161 Out-of-bounds Read vulnerability in PHP
The object_common1 function in ext/standard/var_unserializer.c in PHP before 5.6.30, 7.0.x before 7.0.15, and 7.1.x before 7.1.1 allows remote attackers to cause a denial of service (buffer over-read and application crash) via crafted serialized data that is mishandled in a finish_nested_data call.
network
low complexity
php CWE-125
7.5