Multiple out-of-bounds read vulnerabilities were identified in a system component responsible for handling certain data buffers. Due to insufficient validation of maximum buffer size values, the process may attempt to read beyond the intended memory region. Under specific conditions, this can result in a crash of the affected process and a potential denial-of-service of the compromised process.
Metrics
Affected Vendors & Products
References
History
Tue, 13 Jan 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-125 | |
| Metrics |
ssvc
|
Tue, 13 Jan 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Multiple out-of-bounds read vulnerabilities were identified in a system component responsible for handling certain data buffers. Due to insufficient validation of maximum buffer size values, the process may attempt to read beyond the intended memory region. Under specific conditions, this can result in a crash of the affected process and a potential denial-of-service of the compromised process. | |
| Title | Out-of-Bounds Read Vulnerabilities Leading to Process Crash in AOS-8 Operating System | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: hpe
Published:
Updated: 2026-01-13T20:46:35.369Z
Reserved: 2025-04-16T01:28:25.379Z
Link: CVE-2025-37178
Updated: 2026-01-13T20:46:20.633Z
Status : Received
Published: 2026-01-13T20:16:05.983
Modified: 2026-01-13T21:15:50.200
Link: CVE-2025-37178
No data.
OpenCVE Enrichment
No data.