Filtered by CWE-125
Total 8221 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-33297 1 Qualcomm 20 Qca6310, Qca6310 Firmware, Qca6320 and 17 more 2024-11-21 6.8 Medium
Information disclosure due to buffer overread in Linux sensors
CVE-2022-33295 1 Qualcomm 24 Mdm8207, Mdm8207 Firmware, Mdm9205 and 21 more 2024-11-21 8.2 High
Information disclosure in Modem due to buffer over-read while parsing the wms message received given the buffer and its length.
CVE-2022-33291 1 Qualcomm 78 9205 Lte Modem, 9205 Lte Modem Firmware, 9206 Lte Modem and 75 more 2024-11-21 8.2 High
Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length.
CVE-2022-33287 1 Qualcomm 78 9205 Lte Modem, 9205 Lte Modem Firmware, 9206 Lte Modem and 75 more 2024-11-21 8.2 High
Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet.
CVE-2022-33273 1 Qualcomm 198 Aqt1000, Aqt1000 Firmware, Ar8035 and 195 more 2024-11-21 7.3 High
Information disclosure due to buffer over-read in Trusted Execution Environment while QRKS report generation.
CVE-2022-33271 1 Qualcomm 490 Apq8096au, Apq8096au Firmware, Aqt1000 and 487 more 2024-11-21 8.2 High
Information disclosure due to buffer over-read in WLAN while parsing NMF frame.
CVE-2022-33258 1 Qualcomm 30 9205 Lte Modem Firmware, 9206 Lte Modem Firmware, 9207 Lte Modem Firmware and 27 more 2024-11-21 8.2 High
Information disclosure due to buffer over-read in modem while reading configuration parameters.
CVE-2022-33229 1 Qualcomm 42 Ar8031, Ar8031 Firmware, Csra6620 and 39 more 2024-11-21 8.2 High
Information disclosure due to buffer over-read in Modem while using static array to process IPv4 packets.
CVE-2022-33228 1 Qualcomm 24 Mdm8207, Mdm8207 Firmware, Mdm9205 and 21 more 2024-11-21 8.2 High
Information disclosure sue to buffer over-read in modem while processing ipv6 packet with hop-by-hop or destination option in header.
CVE-2022-33222 1 Qualcomm 26 Mdm8207, Mdm8207 Firmware, Mdm9205 and 23 more 2024-11-21 8.2 High
Information disclosure due to buffer over-read while parsing DNS response packets in Modem.
CVE-2022-33221 1 Qualcomm 28 Sd 8 Gen1 5g Firmware, Sm8475, Ssg2115p and 25 more 2024-11-21 6.8 Medium
Information disclosure in Trusted Execution Environment due to buffer over-read while processing metadata verification requests.
CVE-2022-33220 1 Qualcomm 90 Aqt1000, Aqt1000 Firmware, Qam8295p and 87 more 2024-11-21 5.1 Medium
Information disclosure in Automotive multimedia due to buffer over-read.
CVE-2022-33021 1 Openhwgroup 1 Cva6 2024-11-21 7.5 High
CVA6 commit 909d85a accesses invalid memory when reading the value of MHPMCOUNTER30.
CVE-2022-32990 2 Gimp, Redhat 2 Gimp, Enterprise Linux 2024-11-21 5.5 Medium
An issue in gimp_layer_invalidate_boundary of GNOME GIMP 2.10.30 allows attackers to trigger an unhandled exception via a crafted XCF file, causing a Denial of Service (DoS).
CVE-2022-32912 2 Apple, Redhat 4 Ipados, Iphone Os, Safari and 1 more 2024-11-21 8.8 High
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Safari 16, iOS 16, iOS 15.7 and iPadOS 15.7. Processing maliciously crafted web content may lead to arbitrary code execution.
CVE-2022-32745 1 Samba 1 Samba 2024-11-21 8.1 High
A flaw was found in Samba. Samba AD users can cause the server to access uninitialized data with an LDAP add or modify the request, usually resulting in a segmentation fault.
CVE-2022-32325 2 Fedoraproject, Jpegoptim Project 2 Fedora, Jpegoptim 2024-11-21 6.5 Medium
JPEGOPTIM v1.4.7 was discovered to contain a segmentation violation which is caused by a READ memory access at jpegoptim.c.
CVE-2022-32200 1 Libdwarf Project 1 Libdwarf 2024-11-21 7.8 High
libdwarf 0.4.0 has a heap-based buffer over-read in _dwarf_check_string_valid in dwarf_util.c.
CVE-2022-32141 1 Codesys 2 Plcwinnt, Runtime Toolkit 2024-11-21 6.5 Medium
Multiple CODESYS Products are prone to a buffer over read. A low privileged remote attacker may craft a request with an invalid offset, which can cause an internal buffer over-read, resulting in a denial-of-service condition. User interaction is not required.
CVE-2022-32139 1 Codesys 2 Plcwinnt, Runtime Toolkit 2024-11-21 6.5 Medium
In multiple CODESYS products, a low privileged remote attacker may craft a request, which cause an out-of-bounds read, resulting in a denial-of-service condition. User Interaction is not required.