CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,817 vulnerabilities with CWE-125
CVE-2025-10933 MEDIUM
Silicon Labs Z-Wave Protocol Controller - Memory Corruption
CVE-2025-52871 MEDIUM
QNAP License Center 2.0.17-2.0.35 - Authenticated Out-of-Bounds Read
CVSS 6.5
CVE-2025-54166 MEDIUM
QNAP QTS and QuTS hero - Authenticated Out-of-bounds Read
CVSS 4.9
CVE-2025-54165 MEDIUM
QNAP QTS and QuTS hero - Authenticated Out-of-bounds Read
CVSS 4.9
CVE-2025-54164 MEDIUM
QNAP QTS and QuTS hero - Authenticated Out-of-bounds Read
CVSS 4.9
CVE-2025-15412 MEDIUM
WebAssembly wabt <= 1.0.39 - Out-of-Bounds Read in wasm-decompile VarName Function
CVSS 5.3
CVE-2025-68431 MEDIUM
libheif <1.21.0 - Memory Corruption
CVSS 6.5
CVE-2025-14177 HIGH
PHP 8.1.0-8.1.33, 8.2.0-8.2.29, 8.3.0-8.3.28, 8.4.0-8.4.15, 8.5.0 - Out-of-bounds Read in getimagesize()
CVSS 7.5
CVE-2025-14421 MEDIUM
pdfforge PDF Architect - Info Disclosure
CVSS 5.5
CVE-2025-14411 MEDIUM
Soda PDF Desktop - Out-of-Bounds Read in PDF File Parser
CVSS 5.5
CVE-2025-14410 MEDIUM
Soda PDF Desktop - Out-of-Bounds Read in PDF File Parser
CVSS 5.5
CVE-2025-14408 LOW
Soda PDF Desktop - Out-of-Bounds Read in PDF File Parser
CVSS 3.3
CVE-2025-14401 HIGH
PDFsam Enhanced - Remote Code Execution via Out-of-Bounds Read in App Object Handling
CVSS 7.8
CVE-2025-14956 MEDIUM
WebAssembly Binaryen < 125 - Heap-Based Buffer Overflow in WasmBinaryReader::readExport
CVSS 5.3
CVE-2025-66498 MEDIUM
Foxit PDF Reader - Memory Corruption
CVSS 5.3
CVE-2025-66497 MEDIUM
Foxit PDF Reader - Memory Corruption
CVSS 5.3
CVE-2025-66496 MEDIUM
Foxit PDF Reader - Memory Corruption
CVSS 5.3
CVE-2025-68382 MEDIUM
Packetbeat 7.0.0-7.17.29 - Unauthenticated Denial of Service via NFS Protocol Dissector
CVSS 6.5
CVE-2025-65568 HIGH
omec-project UPF pfcpiface 2.1.3-dev - Denial of Service via PFCP Session Establishment Request with Empty IPv4 Address
CVSS 7.5
CVE-2025-65567 HIGH
omec-project UPF 2.1.3-dev - Denial of Service via Malformed Flow-Description in PFCP Session Establishment Request
CVSS 7.5
CVE-2025-64467 HIGH
NI LabVIEW 2025 Q3 (25.3) and prior - Out-of-bounds Read in LVResFile::FindRsrcListEntry()
CVSS 7.8
CVE-2025-64466 HIGH
NI LabVIEW - Out-of-bounds Read in lvre!ExecPostedProcRecPost()
CVSS 7.8
CVE-2025-64465 HIGH
NI LabVIEW 2025 Q3 (25.3) and prior - Out-of-bounds Read in lvre!DataSizeTDR()
CVSS 7.8
CVE-2025-64464 HIGH
NI LabVIEW 2025 Q3 (25.3) and prior - Out-of-bounds Read in lvre!VisaWriteFromFile()
CVSS 7.8
CVE-2025-64463 HIGH
NI LabVIEW - Out-of-bounds Read in LVResource::DetachResource()
CVSS 7.8
Details
Vulnerabilities 8,817