CWE-125
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
9,161 vulnerabilities with CWE-125
CVE-2026-46022
HIGH
misc: ibmasm: fix OOB MMIO read in ibmasm_handle_mouse_interrupt()
CVSS 7.1
CVE-2026-46020
HIGH
mm/damon/core: validate damos_quota_goal->nid for node_mem_{used,free}_bp
CVSS 7.1
CVE-2026-45994
HIGH
ibmasm: fix OOB reads in command_file_write due to missing size checks
CVSS 7.1
CVE-2026-45957
HIGH
rcu: Fix rcu_read_unlock() deadloop due to softirq
CVSS 7.1
CVE-2026-45943
HIGH
erofs: fix inline data read failure for ztailpacking pclusters
CVSS 7.1
CVE-2026-45935
HIGH
fs/ntfs3: Fix slab-out-of-bounds read in DeleteIndexEntryRoot
CVSS 7.8
CVE-2026-45903
HIGH
bpf: Fix memory access flags in helper prototypes
CVSS 7.1
CVE-2026-45893
HIGH
apparmor: Fix & Optimize table creation from possibly unaligned memory
CVSS 7.1
CVE-2026-45856
HIGH
RDMA/uverbs: Validate wqe_size before using it in ib_uverbs_post_send
CVSS 7.1
CVE-2026-45851
HIGH
efi: Fix reservation of unaccepted memory table
CVSS 7.1
CVE-2026-23679
MEDIUM
libusb < 1.0.30 NULL Pointer Dereference in parse_interface()
CVSS 6.2
CVE-2026-24196
HIGH
Nvidia GeForce - Out-of-bounds Read
CVSS 7.1
CVE-2026-48688
HIGH
FastNetMon Community Edition <= 1.2.9 - Out-of-Bounds Read in BGP MP_REACH_NLRI IPv6 Decoder
CVSS 7.5
CVE-2026-48684
MEDIUM
FastNetMon Community Edition <= 1.2.9 - Out-of-Bounds Read in NetFlow v9 Options Template Parser
CVSS 6.5
CVE-2026-48683
MEDIUM
FastNetMon Community Edition <= 1.2.9 - Out-of-Bounds Read in NetFlow v9 Data Flowset Processor
CVSS 6.5
CVE-2026-48132
HIGH
VPN service may restart unexpectedly when processing IKE traffic over NAT-T 4500/UDP
CVSS 8.1
CVE-2026-9530
LOW
GNU LibreDWG Dwgbmp Utility decode.c read_2004_compressed_section out-of-bounds
CVSS 3.3
CVE-2026-9504
LOW
GNU LibreDWG Dwggrep Utility dwggrep.c bit_convert_TU out-of-bounds
CVSS 3.3
CVE-2026-41071
HIGH
libheif: Heap buffer over-read in SampleAuxInfoReader via crafted HEIF sequence file with mismatched saiz sample count
CVSS 8.1
CVE-2026-41069
MEDIUM
libheif allows Out-of-bounds vector access leading to invalid dereference (DoS)
CVSS 6.5
CVE-2026-43495
HIGH
net: wwan: t7xx: validate port_count against message length in t7xx_port_enum_msg_handler
CVSS 8.8
CVE-2026-44067
MEDIUM
Netatalk 2.1.0-4.4.2 and >=4.5.0 - Authenticated Heap-Based Out-of-bounds Read in Extended Attribute Header Parsing
CVSS 4.2
CVE-2026-44066
HIGH
Heap out-of-bounds reads in Spotlight RPC unmarshalling
CVSS 7.1
CVE-2026-44064
HIGH
Netatalk 1.3-4.4.2 - Out-of-bounds Read in ASP Session ID Handling
CVSS 7.1
CVE-2026-9122
MEDIUM
Google Chrome < 148.0.7778.179 - Out-of-bounds Read in GPU via Crafted HTML Page
CVSS 6.5
Details
Vulnerabilities
9,161