CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,778 vulnerabilities with CWE-125
CVE-2026-42446 MEDIUM
NanaZip: Stack out-of-bounds read in NanaZip ZealFS bitmap parser
CVSS 4.4
CVE-2026-40380 MEDIUM
Windows Volume Manager Extension Driver Remote Code Execution Vulnerability
CVSS 6.2
CVE-2026-40360 HIGH
Microsoft Excel Information Disclosure Vulnerability
CVSS 7.8
CVE-2026-35423 MEDIUM
Microsoft Windows 10 Version 1607 - Windows 11 Telnet Client Information Disclosure Vulnerability
CVSS 5.4
CVE-2026-35419 MEDIUM
Microsoft Windows 11 Version 24H2 - Windows DWM Core Library Information Disclosure Vulnerability
CVSS 5.5
CVE-2026-34663 MEDIUM
Illustrator | Out-of-bounds Read (CWE-125)
CVSS 5.5
CVE-2026-20751 HIGH
Intel(R) Data Center Graphics Driver For VMware ESXi Software - Out-of-bounds Read
CVE-2026-43916 HIGH
pam_authnft: Heap buffer overflow in NETLINK_SOCK_DIAG reply walker
CVE-2026-34961 MEDIUM
barebox ext4 Extent Parsing Out-of-Bounds Read
CVSS 6.2
CVE-2026-34960 MEDIUM
barebox Out-of-Bounds Read in DHCP Option Parsing
CVSS 6.5
CVE-2026-43655 HIGH
iOS and iPadOS < 26.5 - Out-of-bounds Read
CVSS 7.3
CVE-2026-28991 HIGH
iOS and iPadOS < 26.5 - Out-of-bounds Read
CVSS 7.5
CVE-2026-28956 MEDIUM
iOS and iPadOS < 26.5 - Out-of-bounds Read via Maliciously Crafted Media File
CVSS 6.5
CVE-2026-28918 MEDIUM
iOS and iPadOS < 26.5 - Out-of-bounds Read via Maliciously Crafted File
CVSS 6.5
CVE-2026-8177 HIGH
XML::LibXML versions through 2.0210 for Perl read out-of-bounds heap memory when parsing XML node names containing truncated UTF-8 byte sequences
CVSS 7.5
CVE-2026-6104 CRITICAL
Global buffer over-read in mb_convert_encoding() with attacker-supplied encoding
CVSS 9.1
CVE-2026-7568 HIGH
Signed integer overflow in metaphone()
CVSS 7.5
CVE-2026-7258 HIGH
Out-of-bounds read in urldecode() on NetBSD
CVSS 7.5
CVE-2026-8213 MEDIUM
OSGeo gdal Grid File GDapi.c GDSDfldsrch heap-based overflow
CVSS 5.3
CVE-2026-8212 MEDIUM
OSGeo gdal SWapi.c SWSDfldsrch heap-based overflow
CVSS 5.3
CVE-2026-8186 MEDIUM
Open5GS NF client.c ogs_sbi_client_send_via_scp_or_sepp out-of-bounds
CVSS 5.3
CVE-2026-43453 HIGH
netfilter: nft_set_pipapo: fix stack out-of-bounds read in pipapo_drop()
CVSS 7.1
CVE-2026-43450 HIGH
netfilter: nfnetlink_cthelper: fix OOB read in nfnl_cthelper_dump_table()
CVSS 7.1
CVE-2026-43449 HIGH
nvme-pci: Fix slab-out-of-bounds in nvme_dbbuf_set
CVSS 7.1
CVE-2026-43427 HIGH
Linux Kernel cdc-wdm - Uninitialized Memory Disclosure
CVSS 7.1
Details
Vulnerabilities 8,778