Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2017-03-03 CVE-2017-5195 Out-of-bounds Read vulnerability in Irssi
Irssi 0.8.17 before 0.8.21 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted ANSI x8 color code.
network
low complexity
irssi CWE-125
7.5
2017-03-02 CVE-2016-10071 Out-of-bounds Read vulnerability in Imagemagick
coders/mat.c in ImageMagick before 6.9.4-0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted mat file.
local
low complexity
imagemagick CWE-125
5.5
2017-03-02 CVE-2017-6387 Out-of-bounds Read vulnerability in Radare Radare2 1.2.1
The dex_loadcode function in libr/bin/p/bin_dex.c in radare2 1.2.1 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted DEX file.
local
low complexity
radare CWE-125
5.5
2017-03-01 CVE-2017-6347 Out-of-bounds Read vulnerability in Linux Kernel
The ip_cmsg_recv_checksum function in net/ipv4/ip_sockglue.c in the Linux kernel before 4.10.1 has incorrect expectations about skb data layout, which allows local users to cause a denial of service (buffer over-read) or possibly have unspecified other impact via crafted system calls, as demonstrated by use of the MSG_MORE flag in conjunction with loopback UDP transmission.
local
low complexity
linux CWE-125
7.8
2017-03-01 CVE-2017-5978 Out-of-bounds Read vulnerability in Zziplib Project Zziplib 0.13.62
The zzip_mem_entry_new function in memdisk.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted ZIP file.
local
low complexity
zziplib-project CWE-125
5.5
2017-03-01 CVE-2017-5977 Out-of-bounds Read vulnerability in Zziplib Project Zziplib 0.13.62
The zzip_mem_entry_extra_block function in memdisk.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted ZIP file.
local
low complexity
zziplib-project CWE-125
5.5
2017-03-01 CVE-2017-5504 Out-of-bounds Read vulnerability in Jasper Project Jasper 1.900.17
The jpc_undo_roi function in libjasper/jpc/jpc_dec.c in JasPer 1.900.27 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted image.
local
low complexity
jasper-project CWE-125
5.5
2017-02-28 CVE-2016-8388 Out-of-bounds Read vulnerability in Iceni Argus 6.6.04
An exploitable arbitrary heap-overwrite vulnerability exists within Iceni Argus.
local
low complexity
iceni CWE-125
7.8
2017-02-27 CVE-2016-10029 Out-of-bounds Read vulnerability in Qemu
The virtio_gpu_set_scanout function in QEMU (aka Quick Emulator) built with Virtio GPU Device emulator support allows local guest OS users to cause a denial of service (out-of-bounds read and process crash) via a scanout id in a VIRTIO_GPU_CMD_SET_SCANOUT command larger than num_scanouts.
local
low complexity
qemu CWE-125
5.5
2017-02-27 CVE-2016-10028 Out-of-bounds Read vulnerability in Qemu
The virgl_cmd_get_capset function in hw/display/virtio-gpu-3d.c in QEMU (aka Quick Emulator) built with Virtio GPU Device emulator support allows local guest OS users to cause a denial of service (out-of-bounds read and process crash) via a VIRTIO_GPU_CMD_GET_CAPSET command with a maximum capabilities size with a value of 0.
local
low complexity
qemu CWE-125
5.5