CVE-2025-47395
Published Jan 7, 2026Transient DOS while parsing a WLAN management frame with a Vendor Specific Information Element.
CWE archive
476 CVEs tagged with CWE-126 — 10 Critical, 249 High, 203 Medium, 14 Low, 0 Unrated.
Transient DOS while parsing a WLAN management frame with a Vendor Specific Information Element.
Information disclosure while processing a firmware event.
Transient DOS while parsing video packets received from the video firmware.
pcap_ether_aton() is an auxiliary function in libpcap, it takes a string argument and returns a fixed-size allocated buffer. The string argument must be a well-formed MAC-48 addr…
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
Integer overflow or wraparound in Windows Projected File System allows an authorized attacker to elevate privileges locally.
Buffer over-read in Windows Projected File System allows an authorized attacker to elevate privileges locally.
Buffer over-read in Windows Projected File System allows an authorized attacker to elevate privileges locally.
Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges locally.
Insufficient argument validation in OpenVPN 2.7_alpha1 through 2.7_rc1 allows an attacker to trigger a heap buffer over-read when parsing IP addresses
A vulnerability was discovered in Awesome Miner thru 11.2.4 that allows arbitrary read and write to kernel memory and MSRs (such as LSTAR) as an unprivileged user. This is due to…
Buffer over-read in Windows TDX.sys allows an authorized attacker to elevate privileges locally.
A weakness has been identified in QuickJS up to eb2c89087def1829ed99630cb14b549d7a98408c. This affects the function js_array_buffer_slice of the file quickjs.c. This manipulation…
Memory corruption when dereferencing an invalid userspace address in a user buffer during MCDM IOCTL processing.
Information disclosure while processing message from client with invalid payload.
Information disclosure while registering commands from clients with diag through diagHal.
Wazuh is a free and open source platform used for threat prevention, detection, and response. Prior to 4.12.0, a buffer over-read occurs in w_expression_match() when strlen() is c…
Wazuh is a free and open source platform used for threat prevention, detection, and response. Prior to 4.10.2, a buffer over-read occurs in DecodeWinevt() when child_attr[p]->attr…
PerfreeBlog v4.0.11 has an arbitrary file read vulnerability in the validThemeFilePath function
In NetX Duo before 6.4.4, the networking support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _nx_ipv4_packet_receive() when handling un…
In Eclipse Foundation NetX Duo before 6.4.4, the networking support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _nx_ipv4_option_process…
In NetX Duo before 6.4.4, the networking support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _nx_ip_packet_receive() function when rece…
In NetX Duo before 6.4.4, the networking support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _nx_ipv4_packet_receive() function when re…
In NetX Duo version before 6.4.4, the component of Eclipse Foundation ThreadX, there was an incorrect bound check in_nx_secure_tls_proc_clienthello_supported_versions_extension()…