Vulnerabilities (CVE)

Filtered by CWE-126
Total 168 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-21176 3 Apple, Linux, Microsoft 20 Macos, Linux Kernel, .net and 17 more 2025-04-16 N/A 8.8 HIGH
.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
CVE-2025-26676 2025-04-09 N/A 6.5 MEDIUM
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
CVE-2025-26672 2025-04-09 N/A 6.5 MEDIUM
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
CVE-2025-26664 2025-04-09 N/A 6.5 MEDIUM
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
CVE-2025-21203 2025-04-09 N/A 6.5 MEDIUM
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
CVE-2023-38144 1 Microsoft 12 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 9 more 2025-04-08 N/A 7.8 HIGH
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2025-32052 2025-04-07 N/A 6.5 MEDIUM
A flaw was found in libsoup. A vulnerability in the sniff_unknown() function may lead to heap buffer over-read.
CVE-2025-32053 2025-04-07 N/A 6.5 MEDIUM
A flaw was found in libsoup. A vulnerability in sniff_feed_or_html() and skip_insignificant_space() functions may lead to a heap buffer over-read.
CVE-2025-21434 2025-04-07 N/A 7.5 HIGH
Transient DOS may occur while parsing EHT operation IE or EHT capability IE.
CVE-2025-21428 2025-04-07 N/A 7.5 HIGH
Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request from the AP to establish a TSpec session.
CVE-2025-21430 2025-04-07 N/A 7.5 HIGH
Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session.
CVE-2025-21435 2025-04-07 N/A 7.5 HIGH
Transient DOS may occur while parsing extended IE in beacon.
CVE-2024-45552 2025-04-07 N/A 8.2 HIGH
Information disclosure may occur during a video call if a device resets due to a non-conforming RTCP packet that doesn`t adhere to RFC standards.
CVE-2025-21421 2025-04-07 N/A 7.8 HIGH
Memory corruption while processing escape code in API.
CVE-2025-21448 2025-04-07 N/A 7.5 HIGH
Transient DOS may occur while parsing SSID in action frames.
CVE-2025-21429 2025-04-07 N/A 7.5 HIGH
Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request.
CVE-2023-6936 1 Wolfssl 1 Wolfssl 2025-03-26 N/A 5.3 MEDIUM
In wolfSSL prior to 5.6.6, if callback functions are enabled (via the WOLFSSL_CALLBACKS flag), then a malicious TLS client or network attacker can trigger a buffer over-read on the heap of 5 bytes (WOLFSSL_CALLBACKS is only intended for debugging).
CVE-2025-24992 2025-03-11 N/A 5.5 MEDIUM
Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information locally.
CVE-2024-43056 2025-03-03 N/A 5.5 MEDIUM
Transient DOS during hypervisor virtual I/O operation in a virtual machine.
CVE-2024-57970 2025-02-18 N/A 4.0 MEDIUM
libarchive through 3.7.7 has a heap-based buffer over-read in header_gnu_longlink in archive_read_support_format_tar.c via a TAR archive because it mishandles truncation in the middle of a GNU long linkname.