CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,471 vulnerabilities with CWE-125
CVE-2026-31558 HIGH
LoongArch: KVM: Make kvm_get_vcpu_by_cpuid() more robust
CVSS 8.8
CVE-2026-33317 HIGH
Op-tee Optee OS - Out-of-Bounds Access
CVSS 8.7
CVE-2026-28525 MEDIUM
SWUpdate Integer Underflow in Multipart Upload Parser
CVSS 6.8
CVE-2026-6920 CRITICAL
Google Chrome < 147.0.7727.117 - Out-of-Bounds Access
CVSS 9.6
CVE-2026-34003 HIGH
Xorg: xwayland: x.org x server: information exposure and denial of service via out-of-bounds memory access
CVSS 7.8
CVE-2026-33599 LOW
Out-of-bounds read in service discovery
CVSS 3.1
CVE-2026-33598 MEDIUM
Out-of-bounds read in cache inspection via Lua
CVSS 4.8
CVE-2026-31528 HIGH
perf: Make sure to use pmu_ctx->pmu for groups
CVSS 7.8
CVE-2026-31513 HIGH
Bluetooth: L2CAP: Fix stack-out-of-bounds read in l2cap_ecred_conn_req
CVSS 8.1
CVE-2026-31484 HIGH
io_uring/fdinfo: fix OOB read in SQE_MIXED wrap check
CVSS 7.1
CVE-2026-40890 HIGH
github.com/gomarkdown/markdown: Out-of-bounds Read in SmartypantsRenderer
CVSS 7.5
CVE-2026-24189 HIGH
Nvidia Cuda-q - Denial of Service
CVSS 8.2
CVE-2026-6784 HIGH
Memory safety bugs fixed in Firefox 150 and Thunderbird 150
CVSS 7.5
CVE-2026-0930 MEDIUM
Potential wolfSSHd Buffer out-of-bounds Read on Windows Handling Terminal Resize
CVSS 4.3
CVE-2026-40340 MEDIUM
libgphoto2 has OOB read in ptp_unpack_OI() in ptp-pack.c via malicious PTP ObjectInfo response
CVSS 6.1
CVE-2026-40339 MEDIUM
libgphoto2 has OOB read in ptp_unpack_Sony_DPD() FormFlag parsing in ptp-pack.c
CVSS 5.2
CVE-2026-40338 MEDIUM
libgphoto2 has OOB read in ptp_unpack_Sony_DPD() enumeration count parsing in ptp-pack.c
CVSS 5.2
CVE-2026-40335 MEDIUM
libgphoto2 has OOB read in ptp_unpack_DPV() UINT128/INT128 handling in ptp-pack.c
CVSS 5.2
CVE-2026-40333 MEDIUM
libgphoto2 has OOB read in ptp_unpack_EOS_ImageFormat() and ptp_unpack_EOS_CustomFuncEx() due to missing length parameter in ptp-pack.c
CVSS 6.1
CVE-2026-5720 HIGH
miniupnpd Integer Underflow SOAPAction Header Parsing
CVE-2026-29013 HIGH
libcoap Out-of-Bounds Read in OSCORE CBOR Unwrap Handling
CVE-2026-33689 CRITICAL
xrdp: Pre-authentication out-of-bounds reads in channel parsers
CVSS 9.1
CVE-2026-33516 CRITICAL
xrdp: Pre-authentication out-of-bounds reads in RDP capability and channel parsers
CVSS 9.1
CVE-2026-40253 MEDIUM
openCryptoki: Memory safety vulnerabilities in BER/DER decoders in asn1.c
CVSS 6.8
CVE-2026-41034 MEDIUM
Ascensio Onlyoffice DocumentServer < 9.3.0 - Information Disclosure
CVSS 5.0
Details
Vulnerabilities 8,471