Total
7858 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2024-23532 | 1 Ivanti | 1 Avalanche | 2025-05-06 | 7.5 High |
An out-of-bounds Read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows an authenticated remote attacker to perform denial of service attacks. In certain conditions this could also lead to remote code execution. | ||||
CVE-2022-44081 | 1 Lodev | 1 Lodepng | 2025-05-06 | 5.5 Medium |
Lodepng v20220717 was discovered to contain a segmentation fault via the function pngdetail. | ||||
CVE-2022-32936 | 1 Apple | 1 Macos | 2025-05-06 | 5.5 Medium |
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13. An app may be able to disclose kernel memory. | ||||
CVE-2018-6340 | 1 Facebook | 1 Hhvm | 2025-05-06 | 8.1 High |
The Memcache::getextendedstats function can be used to trigger an out-of-bounds read. Exploiting this issue requires control over memcached server hostnames and/or ports. This affects all supported versions of HHVM (3.30 and 3.27.4 and below). | ||||
CVE-2024-23530 | 1 Ivanti | 1 Avalanche | 2025-05-06 | 7.5 High |
An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory. | ||||
CVE-2024-23529 | 1 Ivanti | 1 Avalanche | 2025-05-06 | 7.5 High |
An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory. | ||||
CVE-2024-23528 | 1 Ivanti | 1 Avalanche | 2025-05-06 | 7.5 High |
An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory. | ||||
CVE-2024-23526 | 1 Ivanti | 1 Avalanche | 2025-05-06 | 7.5 High |
An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory. | ||||
CVE-2018-20618 | 1 Ok-file-formats Project | 1 Ok-file-formats | 2025-05-06 | 8.8 High |
ok-file-formats through 2018-10-16 has a heap-based buffer over-read in the ok_mo_decode2 function in ok_mo.c. | ||||
CVE-2025-29834 | 2025-05-06 | 7.5 High | ||
Out-of-bounds read in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. | ||||
CVE-2025-29811 | 2025-05-06 | 7.8 High | ||
Improper input validation in Windows Mobile Broadband allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-27733 | 2025-05-06 | 7.8 High | ||
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally. | ||||
CVE-2025-27728 | 2025-05-06 | 7.8 High | ||
Out-of-bounds read in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-27490 | 2025-05-06 | 7.8 High | ||
Heap-based buffer overflow in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-27483 | 2025-05-06 | 7.8 High | ||
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally. | ||||
CVE-2025-26675 | 2025-05-06 | 7.8 High | ||
Out-of-bounds read in Windows Subsystem for Linux allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-26642 | 2025-05-06 | 7.8 High | ||
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-27742 | 2025-05-06 | 5.5 Medium | ||
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally. | ||||
CVE-2025-27741 | 2025-05-06 | 7.8 High | ||
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally. | ||||
CVE-2025-26669 | 2025-05-06 | 8.8 High | ||
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network. |