Vulnerabilities > Out-of-bounds Read

DATE CVE VULNERABILITY TITLE RISK
2017-01-27 CVE-2016-5826 Out-of-bounds Read vulnerability in Libical Project Libical 0.47/1.0
The parser_get_next_char function in libical 0.47 and 1.0 allows remote attackers to cause a denial of service (out-of-bounds heap read) by crafting a string to the icalparser_parse_string function.
network
low complexity
libical-project CWE-125
7.5
2017-01-27 CVE-2016-5825 Out-of-bounds Read vulnerability in Libical Project Libical 0.47/1.0
The icalparser_parse_string function in libical 0.47 and 1.0 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted ics file.
local
low complexity
libical-project CWE-125
5.5
2017-01-26 CVE-2016-9050 Out-of-bounds Read vulnerability in Aerospike Database Server 3.10.0.3
An exploitable out-of-bounds read vulnerability exists in the client message-parsing functionality of Aerospike Database Server 3.10.0.3.
network
low complexity
aerospike CWE-125
8.2
2017-01-26 CVE-2016-6911 Out-of-bounds Read vulnerability in Libgd
The dynamicGetbuf function in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TIFF image.
local
low complexity
libgd CWE-125
5.5
2017-01-24 CVE-2016-10161 Out-of-bounds Read vulnerability in PHP
The object_common1 function in ext/standard/var_unserializer.c in PHP before 5.6.30, 7.0.x before 7.0.15, and 7.1.x before 7.1.1 allows remote attackers to cause a denial of service (buffer over-read and application crash) via crafted serialized data that is mishandled in a finish_nested_data call.
network
low complexity
php CWE-125
7.5
2017-01-23 CVE-2016-7410 Out-of-bounds Read vulnerability in Libdwarf Project Libdwarf 20160613
The _dwarf_read_loc_section function in dwarf_loc.c in libdwarf 20160613 allows attackers to cause a denial of service (buffer over-read) via a crafted file.
local
low complexity
libdwarf-project CWE-125
5.5
2017-01-23 CVE-2017-5563 Out-of-bounds Read vulnerability in Libtiff 4.0.7
LibTIFF version 4.0.7 is vulnerable to a heap-based buffer over-read in tif_lzw.c resulting in DoS or code execution via a crafted bmp image to tools/bmp2tiff.
network
low complexity
libtiff CWE-125
8.8
2017-01-23 CVE-2017-5556 Out-of-bounds Read vulnerability in Foxitsoftware Foxit Reader and Phantompdf
The ConvertToPDF plugin in Foxit Reader before 8.2 and PhantomPDF before 8.2 on Windows, when the gflags app is enabled, allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG image.
network
low complexity
foxitsoftware CWE-125
8.1
2017-01-21 CVE-2017-5545 Out-of-bounds Read vulnerability in Libimobiledevice Libplist
The main function in plistutil.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via Apple Property List data that is too short.
network
low complexity
libimobiledevice CWE-125
critical
9.1
2017-01-20 CVE-2016-5316 Out-of-bounds Read vulnerability in multiple products
Out-of-bounds read in the PixarLogCleanup function in tif_pixarlog.c in libtiff 4.0.6 and earlier allows remote attackers to crash the application by sending a crafted TIFF image to the rgb2ycbcr tool.
network
low complexity
libtiff opensuse-project opensuse CWE-125
6.5