CWE-125
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
8,784 vulnerabilities with CWE-125
CVE-2026-34003
HIGH
Xorg: xwayland: x.org x server: information exposure and denial of service via out-of-bounds memory access
CVSS 7.8
CVE-2026-33599
LOW
PowerDNS dnsdist Service Discovery - Out-of-Bounds Read
CVSS 3.1
CVE-2026-33598
MEDIUM
Out-of-bounds read in cache inspection via Lua
CVSS 4.8
CVE-2026-31528
HIGH
perf: Make sure to use pmu_ctx->pmu for groups
CVSS 7.8
CVE-2026-31513
HIGH
Bluetooth: L2CAP: Fix stack-out-of-bounds read in l2cap_ecred_conn_req
CVSS 8.1
CVE-2026-31484
HIGH
io_uring/fdinfo: fix OOB read in SQE_MIXED wrap check
CVSS 7.1
CVE-2026-31464
HIGH
scsi: ibmvfc: Fix OOB access in ibmvfc_discover_targets_done()
CVSS 8.1
CVE-2026-31449
HIGH
ext4: validate p_idx bounds in ext4_ext_correct_indexes
CVSS 7.8
CVE-2026-31442
HIGH
dmaengine: idxd: Fix possible invalid memory access after FLR
CVSS 7.8
CVE-2026-31435
HIGH
netfs: Fix read abandonment during retry
CVSS 8.8
CVE-2026-31433
HIGH
ksmbd: fix potencial OOB in get_file_all_info() for compound requests
CVSS 8.8
CVE-2026-40890
HIGH
github.com/gomarkdown/markdown: Out-of-bounds Read in SmartypantsRenderer
CVSS 7.5
CVE-2026-24189
HIGH
NVIDIA CUDA-Q < 0.14.0 - Unauthenticated Out-of-Bounds Read via Maliciously Crafted Request
CVSS 8.2
CVE-2026-6784
HIGH
Memory safety bugs fixed in Firefox 150 and Thunderbird 150
CVSS 7.5
CVE-2026-0930
MEDIUM
Potential wolfSSHd Buffer out-of-bounds Read on Windows Handling Terminal Resize
CVSS 4.3
CVE-2026-31430
HIGH
X.509: Fix out-of-bounds access when parsing extensions
CVSS 7.1
CVE-2026-40340
MEDIUM
libgphoto2 has OOB read in ptp_unpack_OI() in ptp-pack.c via malicious PTP ObjectInfo response
CVSS 6.1
CVE-2026-40339
MEDIUM
libgphoto2 has OOB read in ptp_unpack_Sony_DPD() FormFlag parsing in ptp-pack.c
CVSS 5.2
CVE-2026-40338
MEDIUM
libgphoto2 has OOB read in ptp_unpack_Sony_DPD() enumeration count parsing in ptp-pack.c
CVSS 5.2
CVE-2026-40335
MEDIUM
libgphoto2 has OOB read in ptp_unpack_DPV() UINT128/INT128 handling in ptp-pack.c
CVSS 5.2
CVE-2026-40333
MEDIUM
libgphoto2 has OOB read in ptp_unpack_EOS_ImageFormat() and ptp_unpack_EOS_CustomFuncEx() due to missing length parameter in ptp-pack.c
CVSS 6.1
CVE-2026-5720
CRITICAL
miniupnpd Integer Underflow SOAPAction Header Parsing
CVSS 9.1
CVE-2026-29013
CRITICAL
libcoap Out-of-Bounds Read in OSCORE CBOR Unwrap Handling
CVSS 9.8
CVE-2026-33689
CRITICAL
xrdp: Pre-authentication out-of-bounds reads in channel parsers
CVSS 9.1
CVE-2026-33516
CRITICAL
xrdp: Pre-authentication out-of-bounds reads in RDP capability and channel parsers
CVSS 9.1
Details
Vulnerabilities
8,784