Multiple out-of-bounds read vulnerabilities were identified in a system component responsible for handling certain data buffers. Due to insufficient validation of maximum buffer size values, the process may attempt to read beyond the intended memory region. Under specific conditions, this can result in a crash of the affected process and a potential denial-of-service of the compromised process.
Metrics
Affected Vendors & Products
References
History
Wed, 14 Jan 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Arubanetworks
Arubanetworks arubaos Hp Hp arubaos Hpe Hpe arubaos |
|
| Vendors & Products |
Arubanetworks
Arubanetworks arubaos Hp Hp arubaos Hpe Hpe arubaos |
Tue, 13 Jan 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-125 | |
| Metrics |
ssvc
|
Tue, 13 Jan 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Multiple out-of-bounds read vulnerabilities were identified in a system component responsible for handling certain data buffers. Due to insufficient validation of maximum buffer size values, the process may attempt to read beyond the intended memory region. Under specific conditions, this can result in a crash of the affected process and a potential denial-of-service of the compromised process. | |
| Title | Out-of-Bounds Read Vulnerabilities Leading to Process Crash in AOS-8 Operating System | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: hpe
Published: 2026-01-13T20:08:58.718Z
Updated: 2026-01-13T20:32:08.785Z
Reserved: 2025-04-16T01:28:25.379Z
Link: CVE-2025-37179
Updated: 2026-01-13T20:32:01.045Z
Status : Awaiting Analysis
Published: 2026-01-13T20:16:06.113
Modified: 2026-01-14T16:25:40.430
Link: CVE-2025-37179
No data.