Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.5
CVE-2018-16069
Unintended floating-point error accumulation in SwiftShader in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to leak cross-origin dat…
Chrome
69.0.3497.81+
MEDIUM 5.5
CVE-2019-12972
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a heap-based buffer o…
Ubuntu Linux
Patch available
HIGH 7.8
CVE-2019-12957
In Xpdf 4.01.01, a buffer over-read could be triggered in FoFiType1C::convertToType1 in fofi/FoFiType1C.cc when the index number is larger than the c…
Fedora
No fix yet
MEDIUM 5.5
CVE-2019-12958
In Xpdf 4.01.01, a heap-based buffer over-read could be triggered in FoFiType1C::convertToType0 in fofi/FoFiType1C.cc when it is trying to access the…
Xpdfreader
No fix yet
HIGH 8.8
CVE-2019-12869
An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Con…
Automationworx Software Suite
after 1.86
HIGH 8.8
CVE-2019-6964
A heap-based buffer over-read in Service_SetParamStringValue in cosa_x_cisco_com_ddns_dml.c of the RDK RDKB-20181217-1 CcspPandM module may allow att…
Rdkb Ccsppandm
Mitigation only
HIGH 7.5
CVE-2019-12894
Alternate Pic View 2.600 has a Read Access Violation at the Instruction Pointer after a call from PicViewer!PerfgrapFinalize+0x00000000000a9a1b.
Alternate Pic View
No fix yet
HIGH 7.5
CVE-2019-12897
Edraw Max 7.9.3 has a Read Access Violation at the Instruction Pointer after a call from ObjectModule!Paint::Clear+0x0000000000000074.
Edraw Max
No fix yet
MEDIUM 6.5
CVE-2018-9561
In llcp_util_parse_connect of llcp_util.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information…
Android
Mitigation only
MEDIUM 6.5
CVE-2018-9563
In llcp_util_parse_cc of llcp_util.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disc…
Android
Mitigation only
MEDIUM 6.5
CVE-2018-9564
In llcp_util_parse_link_params of llcp_util.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local informa…
Android
Mitigation only
MEDIUM 6.5
CVE-2019-2019
In ce_t4t_data_cback of ce_t4t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosu…
Android
Mitigation only
MEDIUM 6.5
CVE-2019-2020
In llcp_dlc_proc_rr_rnr_pdu of llcp_dlc.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information…
Android
Mitigation only
MEDIUM 6.5
CVE-2019-2021
In rw_t3t_act_handle_ndef_detect_rsp of rw_t3t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local info…
Android
Mitigation only
MEDIUM 6.5
CVE-2019-2022
In rw_t3t_act_handle_fmt_rsp and rw_t3t_act_handle_sro_rsp of rw_t3t.cc, there is a possible out-of-bound read due to a missing bounds check. This co…
Android
Mitigation only
CRITICAL 9.1
CVE-2019-11039
Function iconv_mime_decode_headers() in PHP versions 7.1.x below 7.1.30, 7.2.x below 7.2.19 and 7.3.x below 7.3.6 may perform out-of-buffer read due …
PHP
7.1.30 / 7.2.19+
CRITICAL 9.1
CVE-2019-11040
When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7.1.x below 7.1.30, 7.2.x belo…
PHP
7.1.30 / 7.2.19+
CRITICAL 9.8
CVE-2018-6350
An out-of-bounds read was possible in WhatsApp due to incorrect parsing of RTP extension headers. This issue affects WhatsApp for Android prior to 2.…
Whatsapp
2.18.99 / 2.18.100.2+
CRITICAL 9.8
CVE-2018-11955
Lack of check on length of reason-code fetched from payload may lead driver access the memory not allocated to the frame and results in out of bound …
Mdm9150 Firmware
Patch available
HIGH 7.8
CVE-2018-13910
Out-of-Bounds access in TZ due to invalid index calculated to check against DDR in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Elec…
Ipq8074 Firmware
Mitigation only
CRITICAL 9.8
CVE-2018-13911
Out of bounds memory read and access may lead to unexpected behavior in GNSS XTRA Parser in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer …
Mdm9150 Firmware
Mitigation only
MEDIUM 6.7
CVE-2019-11124
Out of bound read/write in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of …
Nuc Kit Firmware
Patch available
MEDIUM 6.7
CVE-2019-11129
Out of bound read/write in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of …
Nuc Kit Firmware
Patch available
HIGH 7.8
CVE-2019-12790
In radare2 through 3.5.1, there is a heap-based buffer over-read in the r_egg_lang_parsechar function of egg_lang.c. This allows remote attackers to …
Radare2
after 3.5.1
HIGH 7.4
CVE-2019-3956
Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validatin…
Remote Mini Control
after 12.1.0.34
HIGH 7.4
CVE-2019-3957EPSS 26%
Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validatin…
Dameware Mini Remote Control
after 12.1.0.34
MEDIUM 5.5
CVE-2019-2101
In uvc_parse_standard_control of uvc_driver.c, there is a possible out-of-bound read due to improper input validation. This could lead to local infor…
Debian Linux
No fix yet
HIGH 7.1
CVE-2019-5522
VMware Tools for Windows update addresses an out of bounds read vulnerability in vm3dmp driver which is installed with vmtools in Windows guest machi…
Tools
10.3.10+
HIGH 7.5
CVE-2019-12554
In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the WSubStr function (provided by the scripting en…
010 Editor
No fix yet
HIGH 7.5
CVE-2019-12555
In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the SubStr function (provided by the scripting eng…
010 Editor
No fix yet