CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,828 vulnerabilities with CWE-125
CVE-2025-26675 HIGH
Windows 10/11, Server 2022/2025 - Privilege Escalation via WSL Out-of-bounds Read
CVSS 7.8
CVE-2025-26669 HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008 - Unauthenticated Out-of-bounds Read in RRAS
CVSS 8.8
CVE-2025-26642 HIGH
Microsoft 365 Apps - Out-of-Bounds Read and Local Code Execution
CVSS 7.8
CVE-2025-3288 HIGH
Rockwell Automation Arena - Memory Corruption
CVSS 7.8
CVE-2025-3287 HIGH
Rockwell Automation Arena - Buffer Overflow
CVSS 7.8
CVE-2025-3286 HIGH
Rockwell Automation Arena - Memory Corruption
CVSS 7.8
CVE-2025-3285 HIGH
Rockwell Automation Arena - Memory Corruption
CVSS 7.8
CVE-2025-20948 MEDIUM
Samsung Android - Out-of-bounds Read in CDSP Frame Secfr Trustlet
CVSS 5.5
CVE-2025-20944 MEDIUM
Samsung Android - Out-of-bounds Read in libsavsac.so Audio Data Parser
CVSS 6.2
CVE-2025-3407 MEDIUM
Nothings stb_image.h < 2025-03-14 - Out-of-Bounds Read in stbhw_build_tileset_from_image
CVSS 6.3
CVE-2025-3406 MEDIUM
Nothings stb_image.h < 2025-03-14 - Out-of-Bounds Read in stbhw_build_tileset_from_image
CVSS 4.3
CVE-2025-21438 HIGH
Qualcomm FastConnect and QCA Firmware - Out-of-bounds Read via IOCTL Board Data Call
CVSS 7.8
CVE-2025-20662 MEDIUM
Android - Out-of-bounds Read in PlayReady TA
CVSS 6.7
CVE-2025-20661 MEDIUM
Google Android - Out-of-bounds Read in PlayReady TA
CVSS 6.7
CVE-2025-20660 MEDIUM
Android - Out-of-bounds Read in PlayReady TA
CVSS 6.7
CVE-2025-20659 MEDIUM
Mediatek Mt2735 Firmware - Out-of-Bounds Read
CVSS 6.5
CVE-2025-20655 MEDIUM
Android - Out-of-bounds Read in Keymaster
CVSS 5.3
CVE-2025-27534 LOW
OpenHarmony < 5.0.2 - Denial of Service via Memory Release Omission
CVSS 3.3
CVE-2025-22842 LOW
OpenHarmony < 5.0.2 - Denial of Service via Out-of-bounds Read
CVSS 3.3
CVE-2025-22452 LOW
OpenHarmony < 5.0.2 - Denial of Service via Out-of-bounds Read
CVSS 3.3
CVE-2025-20102 LOW
OpenHarmony < 5.0.2 - Denial of Service via Out-of-bounds Read
CVSS 3.3
CVE-2025-32365 MEDIUM
Poppler < 25.04.0 - Out-of-bounds Read in JBIG2Bitmap::combine
CVSS 4.0
CVE-2025-3160 LOW
Open Asset Import Library Assimp 5.4.3 - Out-of-Bounds Read in SceneCombiner AddNodeHashes
CVSS 3.3
CVE-2025-22003 MEDIUM
Linux Kernel 6.2-6.6.84, 6.7-6.12.20, 6.13-6.13.8 - Out-of-bounds Read in ucan strscpy()
CVSS 5.5
CVE-2025-2784 HIGH
libsoup < 3.6.5 - Heap Buffer Over-Read via skip_insight_whitespace()
CVSS 7.0
Details
Vulnerabilities 8,828