Multiple out-of-bounds read vulnerabilities were identified in a system component responsible for handling certain data buffers. Due to insufficient validation of maximum buffer size values, the process may attempt to read beyond the intended memory region. Under specific conditions, this can result in a crash of the affected process and a potential denial-of-service of the compromised process.
Metrics
Affected Vendors & Products
References
History
Tue, 13 Jan 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-125 | |
| Metrics |
ssvc
|
Tue, 13 Jan 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Multiple out-of-bounds read vulnerabilities were identified in a system component responsible for handling certain data buffers. Due to insufficient validation of maximum buffer size values, the process may attempt to read beyond the intended memory region. Under specific conditions, this can result in a crash of the affected process and a potential denial-of-service of the compromised process. | |
| Title | Out-of-Bounds Read Vulnerabilities Leading to Process Crash in AOS-8 Operating System | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: hpe
Published:
Updated: 2026-01-13T20:32:08.785Z
Reserved: 2025-04-16T01:28:25.379Z
Link: CVE-2025-37179
Updated: 2026-01-13T20:32:01.045Z
Status : Received
Published: 2026-01-13T20:16:06.113
Modified: 2026-01-13T21:15:50.330
Link: CVE-2025-37179
No data.
OpenCVE Enrichment
No data.