Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
One Firmware MEDIUM 6.5
CVE-2023-27353

This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sonos One Speaker 70.3-35220. Aut…

Fix: 11.7.1 / 15.1+
Fix from $1,600 2023-04-20
Linux Kernel HIGH 7.8
CVE-2023-2176

A vulnerability was found in compare_netdev_and_ip in drivers/infiniband/core/cma.c in RDMA in the Linux Kernel. The improper cleanup results in out-…

Fix: 6.1.81 / 6.3+
Fix from $1,950 2023-04-20
Crosscadware MEDIUM 5.5
CVE-2023-22295

Datakit CrossCadWare_x64.dll contains an out of bounds read past the end of an allocated buffer while parsing a specially crafted SLDPRT file. This v…

Fix: 2023.1+
Fix from $1,600 2023-04-20
Crosscadware MEDIUM 5.5
CVE-2023-22321

Datakit CrossCadWare_x64.dll contains an out-of-bounds read past the end of an allocated buffer while parsing a specially crafted SLDPRT file. This v…

Fix: 2023.1+
Fix from $1,600 2023-04-20
Crosscadware MEDIUM 5.5
CVE-2023-22354

Datakit CrossCadWare_x64.dll contains an out-of-bounds read past the end of an allocated buffer while parsing a specially crafted SLDPRT file. This v…

Fix: 2023.1+
Fix from $1,600 2023-04-20
Crosscadware MEDIUM 5.5
CVE-2023-22846

Datakit CrossCadWare_x64.dll contains an out-of-bounds read past the end of an allocated buffer while parsing a specially crafted SLDPRT file. This v…

Fix: 2023.1+
Fix from $1,600 2023-04-20
OpenSSL MEDIUM 5.9
CVE-2023-1255

Issue summary: The AES-XTS cipher decryption implementation for 64 bit ARM platform contains a bug that could cause it to read past the input buffer,…

Fix: 3.0.9 / 3.1.1+
Fix from $1,600 2023-04-20
Android MEDIUM 5.5
CVE-2023-21080

In register_notification_rsp of btif_rc.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio…

Mitigation only
Fix from $1,600 2023-04-19
Android MEDIUM 5.5
CVE-2023-20935

In deserialize of multiple files, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosu…

Mitigation only
Fix from $1,600 2023-04-19
Maya Usd HIGH 7.8
CVE-2023-27906

A malicious actor may convince a victim to open a malicious USD file that may trigger an out-of-bounds read vulnerability which may result in code ex…

Fix: 0.23.0+
Fix from $1,950 2023-04-17
Emui CRITICAL 9.1
CVE-2022-48312

The HwPCAssistant module has the out-of-bounds read/write vulnerability. Successful exploitation of this vulnerability may affect confidentiality and…

No fix yet
Fix from $2,300 2023-04-16
Exynos 5300 Firmware HIGH 7.5
CVE-2023-29089

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exyn…

No fix yet
Fix from $1,950 2023-04-14
Autocad HIGH 7.8
CVE-2023-27915

A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 could lead to memory corruption vulnerability by read access violation. Th…

Fix: 2023.1.3+
Fix from $1,950 2023-04-14
Autocad HIGH 7.8
CVE-2023-27912

A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can force an Out-of-Bound Read. A malicious actor can leverage this vulner…

Fix: 2023.1.3+
Fix from $1,950 2023-04-14
Substance 3d Designer HIGH 7.8
CVE-2023-26409

Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could …

Fix: after 12.4.0
Fix from $1,950 2023-04-13
Substance 3d Designer HIGH 7.8
CVE-2023-26411

Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could …

Fix: after 12.4.0
Fix from $1,950 2023-04-13
Substance 3d Designer HIGH 7.8
CVE-2023-26398

Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could …

Fix: after 12.4.0
Fix from $1,950 2023-04-13
9206 Lte Modem Firmware HIGH 7.5
CVE-2022-40503

Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.

Patch available
Fix from $1,950 2023-04-13
Mdm8207 Firmware HIGH 7.5
CVE-2022-33295

Information disclosure in Modem due to buffer over-read while parsing the wms message received given the buffer and its length.

Mitigation only
Fix from $1,950 2023-04-13
Qca6310 Firmware MEDIUM 5.5
CVE-2022-33297

Information disclosure due to buffer overread in Linux sensors

No fix yet
Fix from $1,600 2023-04-13
9205 Lte Modem Firmware HIGH 7.5
CVE-2022-33291

Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length.

Mitigation only
Fix from $1,950 2023-04-13
9205 Lte Modem Firmware HIGH 7.5
CVE-2022-33287

Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet.

Mitigation only
Fix from $1,950 2023-04-13
Mdm8207 Firmware HIGH 7.5
CVE-2022-33258

Information disclosure due to buffer over-read in modem while reading configuration parameters.

Mitigation only
Fix from $1,950 2023-04-13
Mdm9205 Firmware HIGH 7.5
CVE-2022-33222

Information disclosure due to buffer over-read while parsing DNS response packets in Modem.

Mitigation only
Fix from $1,950 2023-04-13
Mdm8207 Firmware HIGH 7.5
CVE-2022-33228

Information disclosure sue to buffer over-read in modem while processing ipv6 packet with hop-by-hop or destination option in header.

Mitigation only
Fix from $1,950 2023-04-13
Mdm8207 Firmware HIGH 7.5
CVE-2022-25747

Information disclosure in modem due to improper input validation during parsing of upcoming CoAP message

Mitigation only
Fix from $1,950 2023-04-13
Mdm8207 Firmware HIGH 7.5
CVE-2022-25730

Information disclosure in modem due to improper check of IP type while processing DNS server query

Mitigation only
Fix from $1,950 2023-04-13
Mdm9205 Firmware HIGH 7.5
CVE-2022-25731

Information disclosure in modem due to buffer over-read while processing packets from DNS server

Mitigation only
Fix from $1,950 2023-04-13
Mdm9205 Firmware HIGH 7.5
CVE-2022-25726

Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet

Mitigation only
Fix from $1,950 2023-04-13
Substance 3d Stager HIGH 7.8
CVE-2023-26402

Adobe Substance 3D Stager version 2.0.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could res…

Fix: after 2.0.1
Fix from $1,950 2023-04-12