CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,778 vulnerabilities with CWE-125
CVE-2026-43407 CRITICAL
libceph: Fix potential out-of-bounds access in ceph_handle_auth_reply()
CVSS 9.1
CVE-2026-43406 CRITICAL
libceph: prevent potential out-of-bounds reads in process_message_header()
CVSS 9.1
CVE-2026-43386 HIGH
staging: rtl8723bs: fix potential out-of-bounds read in rtw_restruct_wmm_ie
CVSS 7.1
CVE-2026-43380 HIGH
hwmon: (pmbus/q54sj108a2) fix stack overflow in debugfs read
CVSS 7.8
CVE-2026-3508 MEDIUM
ASUS System Control Interface < V3.1.59.1 - Out-of-bounds Read via IOCTL Handler
CVE-2026-8088 LOW
OSGeo gdal GDapi.c GDfieldinfo out-of-bounds
CVSS 3.3
CVE-2026-8084 LOW
OSGeo gdal HDF-EOS Grid File SWapi.c memmove out-of-bounds
CVSS 3.3
CVE-2026-8092 HIGH
Memory safety bugs fixed in Firefox ESR 115.35.2, Firefox ESR 140.10.2 and Firefox 150.0.2
CVSS 8.1
CVE-2026-42216 CRITICAL
OpenEXR: Out-of-bounds read in `IDManifest::init()` during prefix expansion
CVSS 9.1
CVE-2026-7995 HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Read in AdFilter
CVSS 8.8
CVE-2026-7983 MEDIUM
Google Chrome < 148.0.7778.96 - Out-of-bounds Read in Dawn
CVSS 4.3
CVE-2026-7981 HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Read in Codecs
CVSS 8.1
CVE-2026-7950 MEDIUM
Google Chrome < 148.0.7778.96 - Out-of-bounds Read and Write in GFX
CVSS 5.4
CVE-2026-7949 LOW
Google Chrome < 148.0.7778.96 - Out-of-bounds Read in Skia via Chrome Extension
CVSS 3.1
CVE-2026-7936 MEDIUM
Google Chrome < 148.0.7778.96 - Out-of-bounds Read in V8
CVSS 4.3
CVE-2026-7933 MEDIUM
Google Chrome < 148.0.7778.96 - Out-of-bounds Read in WebCodecs via Crafted Video File
CVSS 4.3
CVE-2026-7904 MEDIUM
Google Chrome < 148.0.7778.96 - Out-of-bounds Read in Fonts via Crafted HTML Page
CVSS 4.3
CVE-2026-7902 HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Read in V8
CVSS 8.8
CVE-2026-7899 HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Read and Write in V8
CVSS 8.8
CVE-2026-43281 HIGH
mailbox: Prevent out-of-bounds access in fw_mbox_index_xlate()
CVSS 7.1
CVE-2026-43280 HIGH
drm/xe: Add bounds check on pat_index to prevent OOB kernel read in madvise
CVSS 7.1
CVE-2026-43274 HIGH
mailbox: mchp-ipc-sbi: fix out-of-bounds access in mchp_ipc_get_cluster_aggr_irq()
CVSS 8.4
CVE-2026-43256 HIGH
media: qcom: camss: vfe: Fix out-of-bounds access in vfe_isr_reg_update()
CVSS 7.8
CVE-2026-43241 HIGH
ntb: ntb_hw_switchtec: Fix array-index-out-of-bounds access
CVSS 7.1
CVE-2026-43233 HIGH
netfilter: nf_conntrack_h323: fix OOB read in decode_choice()
CVSS 8.2
Details
Vulnerabilities 8,778