Support Us — Your donation helps us keep running

Goal: 1000 CNY,Raised: 1000 CNY

100.0%

CWE-125 (跨界内存读) — Vulnerability Class 2871

2871 vulnerabilities classified as CWE-125 (跨界内存读). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPaused
CVE-2026-41503 BACnet Stack: Out-of-Bounds Read in ReadPropertyMultiple Property Decoder via Deprecated Tag Parser — bacnet-stack 7.5AIHighAI2026-04-24
CVE-2026-41502 BACnet Stack: Off-by-One Out-of-Bounds Read in ReadPropertyMultiple Object ID Decoder — bacnet-stack 9.1AICriticalAI2026-04-24
CVE-2026-41475 BACnet Stack: Out-of-Bounds Read in WritePropertyMultiple Decoder via Deprecated Tag Parser — bacnet-stack 7.5AIHighAI2026-04-24
CVE-2026-41415 PJSIP: SIP Multipart CID URI Length Underflow — pjproject 9.1AICriticalAI2026-04-24
CVE-2026-41677 rust-openssl: Out-of-bounds read in PEM password callback when user callback returns an oversized length — rust-openssl--AI2026-04-24
CVE-2026-41079 OpenPrinting CUPS: Heap out-of-bounds read in SNMP supply-level polling leaks stack memory to authenticated users — cups 4.3 Medium2026-04-24
CVE-2026-33317 OP-TEE: PKCS#11 TA out-of-bounds read and memory disclosure — optee_os 8.7 High2026-04-24
CVE-2026-6920 Google Chrome 缓冲区错误漏洞 — Chrome 9.3AICriticalAI2026-04-23
CVE-2026-34003 Xorg: xwayland: x.org x server: information exposure and denial of service via out-of-bounds memory access — Red Hat Enterprise Linux 10 7.8 High2026-04-23
CVE-2026-40890 github.com/gomarkdown/markdown: Out-of-bounds Read in SmartypantsRenderer — markdown 7.5 High2026-04-21
CVE-2026-24189 NVIDIA CUDA-Q 缓冲区错误漏洞 — CUDA-Q 8.2 High2026-04-21
CVE-2026-40340 libgphoto2 has OOB read in ptp_unpack_OI() in ptp-pack.c via malicious PTP ObjectInfo response — libgphoto2 6.1 Medium2026-04-17
CVE-2026-40339 libgphoto2 has OOB read in ptp_unpack_Sony_DPD() FormFlag parsing in ptp-pack.c — libgphoto2 5.2 Medium2026-04-17
CVE-2026-40338 libgphoto2 has OOB read in ptp_unpack_Sony_DPD() enumeration count parsing in ptp-pack.c — libgphoto2 5.2 Medium2026-04-17
CVE-2026-40335 libgphoto2 has OOB read in ptp_unpack_DPV() UINT128/INT128 handling in ptp-pack.c — libgphoto2 5.2 Medium2026-04-17
CVE-2026-40333 libgphoto2 has OOB read in ptp_unpack_EOS_ImageFormat() and ptp_unpack_EOS_CustomFuncEx() due to missing length parameter in ptp-pack.c — libgphoto2 6.1 Medium2026-04-17
CVE-2026-29013 libcoap Out-of-Bounds Read in OSCORE CBOR Unwrap Handling — libcoap 9.8AICriticalAI2026-04-17
CVE-2026-33689 xrdp: Pre-authentication out-of-bounds reads in channel parsers — xrdp 8.2AIHighAI2026-04-17
CVE-2026-33516 xrdp: Pre-authentication out-of-bounds reads in RDP capability and channel parsers — xrdp 9.1AICriticalAI2026-04-17
CVE-2026-40253 openCryptoki: Memory safety vulnerabilities in BER/DER decoders in asn1.c — opencryptoki 6.8 Medium2026-04-16
CVE-2026-41034 DocumentServer 安全漏洞 — ONLYOFFICE DocumentServer 5.0 Medium2026-04-16
CVE-2026-6364 Google Chrome 安全漏洞 — Chrome 6.5 -2026-04-15
CVE-2026-6308 Google Chrome 安全漏洞 — Chrome 8.8 -2026-04-15
CVE-2026-40917 Gimp: gimp: application crashes or information disclosure via crafted icns image files — Red Hat Enterprise Linux 6 5.0 Medium2026-04-15
CVE-2026-27294 Adobe Framemaker | Out-of-bounds Read (CWE-125) — Adobe Framemaker 7.8 High2026-04-14
CVE-2026-33019 libsixel: Integer overflow leads to Out-of-bounds Read in img2sixel — libsixel 7.1 High2026-04-14
CVE-2026-27287 InCopy | Out-of-bounds Read (CWE-125) — InCopy 7.8 High2026-04-14
CVE-2026-27289 Photoshop Desktop | Out-of-bounds Read (CWE-125) — Photoshop Desktop 7.8 High2026-04-14
CVE-2026-32076 Windows Storage Spaces Controller Elevation of Privilege Vulnerability — Windows 11 version 22H3 7.8 High2026-04-14
CVE-2026-27930 Windows GDI Information Disclosure Vulnerability — Windows 10 Version 1607 5.5 Medium2026-04-14

Vulnerabilities classified as CWE-125 (跨界内存读) represent 2871 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.