CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,817 vulnerabilities with CWE-125
CVE-2025-43384 MEDIUM
Apple TVOS <26.1 - Memory Corruption
CVSS 4.3
CVE-2025-43383 MEDIUM
Apple TVOS <26.1 - Memory Corruption
CVSS 4.3
CVE-2025-43377 MEDIUM
macOS < 15.7.2 - Out-of-bounds Read
CVSS 5.5
CVE-2025-43361 HIGH
iPadOS < 26.1 - Out-of-bounds Read
CVSS 7.8
CVE-2025-58148 HIGH
Xen >=4.15.0 - Out-of-bounds Read and Write via Viridian Hypercall vCPU Mask Processing
CVSS 7.5
CVE-2025-58147 HIGH
Xen >=4.15.0 - Out-of-bounds Read and Write via Viridian Hypercall vCPU Mask Handling
CVSS 7.5
CVE-2025-23050 LOW
Qt < 5.15.19, 6.0.0-6.5.9, 6.6.0-6.8.2 - Out-of-bounds Read in QLowEnergyController
CVSS 3.1
CVE-2025-61043 CRITICAL
Monkey's Audio 11.31 - Memory Corruption
CVSS 9.1
CVE-2025-40082 HIGH
Linux Kernel - Out-of-bounds Read in hfsplus_uni2asc
CVSS 7.1
CVE-2025-23345 MEDIUM
NVIDIA GeForce, RTX, Quadro, NVS, Tesla - Out-of-bounds Read in Video Decoder
CVSS 4.4
CVE-2025-62525 HIGH
OpenWrt < 24.10.4 - Out-of-bounds Read and Write via ltq-ptm Driver ioctls
CVSS 7.9
CVE-2025-53065 MEDIUM
Oracle PeopleSoft Enterprise PeopleTools 8.60-8.62 - Unauthenticated Out-of-bounds Read via PIA Core Technology
CVSS 5.4
CVE-2025-53063 MEDIUM
Oracle PeopleSoft Enterprise PeopleTools 8.60-8.62 - Out-of-bounds Read in PIA Core Technology
CVSS 5.4
CVE-2025-53055 MEDIUM
Oracle PeopleSoft Enterprise PeopleTools 8.60-8.62 - Unauthenticated Out-of-bounds Read via HTTP
CVSS 6.1
CVE-2025-53051 LOW
Oracle Database Server 23.4-23.9 - Authenticated Out-of-bounds Read in RDBMS Functional Index
CVSS 2.7
CVE-2025-53048 MEDIUM
Oracle PeopleSoft Enterprise PeopleTools 8.60-8.62 - Out-of-bounds Read in Rich Text Editor
CVSS 5.4
CVE-2025-55086 CRITICAL
Eclipse ThreadX NetX Duo < 6.4.4.202503 - Out-of-bounds Read in DHCPV6 Client
CVSS 9.8
CVE-2025-11679 MEDIUM
libwebsockets 4.0-4.4.1 and 4.0-4.3.5 - Out-of-bounds Read in lws_upng_emit_next_line
CVE-2025-55085 HIGH
Eclipse ThreadX NetX Duo < 6.4.4.202503 - HTTP Header Parsing Buffer Overflow
CVSS 7.5
CVE-2025-55100 CRITICAL
Eclipse ThreadX USBX < 6.4.3.202503 - Out-of-bounds Read in Audio Sampling Frequency Parser
CVSS 9.1
CVE-2025-55099 MEDIUM
Eclipse ThreadX USBX < 6.4.3.202503 - Out-of-bounds Read in Audio Alternate Setting Descriptor Parser
CVSS 6.1
CVE-2025-55098 MEDIUM
Eclipse ThreadX USBX < 6.4.3.202503 - Out-of-Bounds Read in _ux_host_class_audio_device_type_get()
CVSS 6.1
CVE-2025-55097 MEDIUM
Eclipse ThreadX USBX < 6.4.3.202503 - Out-of-bounds Read in USB Audio Streaming Descriptor Parser
CVSS 6.1
CVE-2025-55094 HIGH
NetX Duo <6.4.4 - Memory Corruption
CVSS 7.5
CVE-2025-55087 HIGH
NextX Duo <6.4.4 - Memory Corruption
CVSS 7.5
Details
Vulnerabilities 8,817