CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,778 vulnerabilities with CWE-125
CVE-2026-9875 CRITICAL
Google Chrome - Out-of-bounds Read
CVSS 9.6
CVE-2026-10017 HIGH
Google Chrome - Out-of-bounds Read
CVSS 8.3
CVE-2026-39929 HIGH
Lakeside SysTrack Agent LsiAgent.exe Out-of-Bounds Read via UDP
CVSS 7.5
CVE-2026-47333 HIGH
Out-of-bounds read in Ubuntu Linux AppArmor notification handling
CVSS 7.8
CVE-2026-47332 MEDIUM
Out-of-bounds read in Ubuntu Linux AppArmor notification handling
CVSS 5.5
CVE-2026-46230 HIGH
drm/amdgpu/vcn3: Prevent OOB reads when parsing dec msg
CVSS 7.1
CVE-2026-46204 HIGH
drm/amdgpu/vcn4: Prevent OOB reads when parsing IB
CVSS 7.1
CVE-2026-46203 HIGH
spi: cadence-quadspi: fix unclocked access on unbind
CVSS 7.1
CVE-2026-46199 HIGH
drm/amdgpu/vcn4: Prevent OOB reads when parsing dec msg
CVSS 7.1
CVE-2026-46191 HIGH
fbcon: Avoid OOB font access if console rotation fails
CVSS 7.1
CVE-2026-46190 HIGH
Linux - Out-of-Bounds Access
CVSS 7.1
CVE-2026-46185 CRITICAL
smb/client: fix out-of-bounds read in symlink_data()
CVSS 9.1
CVE-2026-46155 CRITICAL
smb/client: fix out-of-bounds read in smb2_compound_op()
CVSS 9.1
CVE-2026-9803 MEDIUM
Keycloak: keycloak: denial of service via malformed authorization header
CVSS 5.3
CVE-2026-47104 MEDIUM
libusb < 1.0.30 Out-of-Bounds Read in parse_iad_array()
CVSS 4.0
CVE-2026-45957 HIGH
rcu: Fix rcu_read_unlock() deadloop due to softirq
CVSS 7.1
CVE-2026-23679 MEDIUM
libusb < 1.0.30 NULL Pointer Dereference in parse_interface()
CVSS 6.2
CVE-2026-24196 HIGH
Nvidia GeForce - Out-of-bounds Read
CVSS 7.1
CVE-2026-48688 HIGH
FastNetMon Community Edition <= 1.2.9 - Out-of-Bounds Read in BGP MP_REACH_NLRI IPv6 Decoder
CVSS 7.5
CVE-2026-48684 MEDIUM
FastNetMon Community Edition <= 1.2.9 - Out-of-Bounds Read in NetFlow v9 Options Template Parser
CVSS 6.5
CVE-2026-48683 MEDIUM
FastNetMon Community Edition <= 1.2.9 - Out-of-Bounds Read in NetFlow v9 Data Flowset Processor
CVSS 6.5
CVE-2026-48132 HIGH
VPN service may restart unexpectedly when processing IKE traffic over NAT-T 4500/UDP
CVSS 8.1
CVE-2026-9530 LOW
GNU LibreDWG Dwgbmp Utility decode.c read_2004_compressed_section out-of-bounds
CVSS 3.3
CVE-2026-9504 LOW
GNU LibreDWG Dwggrep Utility dwggrep.c bit_convert_TU out-of-bounds
CVSS 3.3
CVE-2026-41071 HIGH
libheif: Heap buffer over-read in SampleAuxInfoReader via crafted HEIF sequence file with mismatched saiz sample count
CVSS 8.1
Details
Vulnerabilities 8,778