CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,784 vulnerabilities with CWE-125
CVE-2026-34003 HIGH
Xorg: xwayland: x.org x server: information exposure and denial of service via out-of-bounds memory access
CVSS 7.8
CVE-2026-33599 LOW
PowerDNS dnsdist Service Discovery - Out-of-Bounds Read
CVSS 3.1
CVE-2026-33598 MEDIUM
Out-of-bounds read in cache inspection via Lua
CVSS 4.8
CVE-2026-31528 HIGH
perf: Make sure to use pmu_ctx->pmu for groups
CVSS 7.8
CVE-2026-31513 HIGH
Bluetooth: L2CAP: Fix stack-out-of-bounds read in l2cap_ecred_conn_req
CVSS 8.1
CVE-2026-31484 HIGH
io_uring/fdinfo: fix OOB read in SQE_MIXED wrap check
CVSS 7.1
CVE-2026-31464 HIGH
scsi: ibmvfc: Fix OOB access in ibmvfc_discover_targets_done()
CVSS 8.1
CVE-2026-31449 HIGH
ext4: validate p_idx bounds in ext4_ext_correct_indexes
CVSS 7.8
CVE-2026-31442 HIGH
dmaengine: idxd: Fix possible invalid memory access after FLR
CVSS 7.8
CVE-2026-31435 HIGH
netfs: Fix read abandonment during retry
CVSS 8.8
CVE-2026-31433 HIGH
ksmbd: fix potencial OOB in get_file_all_info() for compound requests
CVSS 8.8
CVE-2026-40890 HIGH
github.com/gomarkdown/markdown: Out-of-bounds Read in SmartypantsRenderer
CVSS 7.5
CVE-2026-24189 HIGH
NVIDIA CUDA-Q < 0.14.0 - Unauthenticated Out-of-Bounds Read via Maliciously Crafted Request
CVSS 8.2
CVE-2026-6784 HIGH
Memory safety bugs fixed in Firefox 150 and Thunderbird 150
CVSS 7.5
CVE-2026-0930 MEDIUM
Potential wolfSSHd Buffer out-of-bounds Read on Windows Handling Terminal Resize
CVSS 4.3
CVE-2026-31430 HIGH
X.509: Fix out-of-bounds access when parsing extensions
CVSS 7.1
CVE-2026-40340 MEDIUM
libgphoto2 has OOB read in ptp_unpack_OI() in ptp-pack.c via malicious PTP ObjectInfo response
CVSS 6.1
CVE-2026-40339 MEDIUM
libgphoto2 has OOB read in ptp_unpack_Sony_DPD() FormFlag parsing in ptp-pack.c
CVSS 5.2
CVE-2026-40338 MEDIUM
libgphoto2 has OOB read in ptp_unpack_Sony_DPD() enumeration count parsing in ptp-pack.c
CVSS 5.2
CVE-2026-40335 MEDIUM
libgphoto2 has OOB read in ptp_unpack_DPV() UINT128/INT128 handling in ptp-pack.c
CVSS 5.2
CVE-2026-40333 MEDIUM
libgphoto2 has OOB read in ptp_unpack_EOS_ImageFormat() and ptp_unpack_EOS_CustomFuncEx() due to missing length parameter in ptp-pack.c
CVSS 6.1
CVE-2026-5720 CRITICAL
miniupnpd Integer Underflow SOAPAction Header Parsing
CVSS 9.1
CVE-2026-29013 CRITICAL
libcoap Out-of-Bounds Read in OSCORE CBOR Unwrap Handling
CVSS 9.8
CVE-2026-33689 CRITICAL
xrdp: Pre-authentication out-of-bounds reads in channel parsers
CVSS 9.1
CVE-2026-33516 CRITICAL
xrdp: Pre-authentication out-of-bounds reads in RDP capability and channel parsers
CVSS 9.1
Details
Vulnerabilities 8,784