Medium
CVSS: 5.3
PerfreeBlog v4.0.11 has an arbitrary file read vulnerability in the validThemeFilePath function
Medium
CVSS: 6.9
In NetX Duo before 6.4.4, the networking support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _nx_ipv4_packet_receive() when handling unicast DHCP messages that could cause corruption of 4 bytes of…
Medium
CVSS: 6.9
In NetX Duo version before 6.4.4, the component of Eclipse Foundation ThreadX, there was an incorrect bound check in_nx_secure_tls_proc_clienthello_supported_versions_extension() in the extension version field.
Medium
CVSS: 6.9
In NetX Duo version before 6.4.4, the component of Eclipse Foundation ThreadX, there was an incorrect bound check resulting it out by two out of bound read.
Medium
CVSS: 6.9
In Eclipse Foundation NextX Duo before 6.4.4, a module of ThreadX, the _nx_secure_tls_process_clienthello() function was missing length verification of
certain SSL/TLS client hello message: the ciphersuite length and
compression method le…
High
CVSS: 7.8
Buffer over-read in Storport.sys Driver allows an authorized attacker to elevate privileges locally.
Medium
CVSS: 5.5
Buffer over-read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
Medium
CVSS: 5.3
A missing validation check in FreeRTOS-Plus-TCP's IPv6 packet processing code can lead to an out-of-bounds read when receiving a IPv6 packet with incorrect payload lengths in the packet header. This issue only affects applications using IPv…
Medium
CVSS: 5.3
A missing validation check in FreeRTOS-Plus-TCP's ICMPv6 packet processing code can lead to an out-of-bounds read when receiving ICMPv6 packets of certain message types which are smaller than the expected size. These issues only affect appl…
Medium
CVSS: 5.5
Transient DOS while processing IOCTL call for image encoding.
Medium
CVSS: 6.1
Information disclosure while processing batch command execution in Video driver.
Medium
CVSS: 5.5
Transient DOS while processing video packets received from video firmware.
Medium
CVSS: 5.1
libvips is a demand-driven, horizontally threaded image processing library. For versions 8.17.1 and below, when libvips is compiled with support for PDF input via poppler, the pdfload operation is affected by a buffer read overflow when par…
High
CVSS: 7.5
Transient DOS while processing power control requests with invalid antenna or stream values.
High
CVSS: 7.5
Transient DOS while handling command data during power control processing.
High
CVSS: 7.5
Transient DOS while parsing the EPTM test control message to get the test pattern.
High
CVSS: 7.8
Memory corruption due to global buffer overflow when a test command uses an invalid payload type.
Medium
CVSS: 6.1
Information disclosure when Video engine escape input data is less than expected minimum size.
Medium
CVSS: 6.1
Information disclosure while running video usecase having rogue firmware.
Medium
CVSS: 6.1
information disclosure while invoking calibration data from user space to update firmware size.