CWE-126

Buffer Over-read

Parent: CWE-125 - Out-of-bounds Read

The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.

449 vulnerabilities with CWE-126
CVE-2026-21367 HIGH
Buffer Over-read in WLAN Firmware
CVSS 7.6
CVE-2026-2394 MEDIUM
RTI Connext Professional Core Libraries - Buffer Over-Read
CVSS 6.5
CVE-2026-24028 MEDIUM
Out-of-bounds read when parsing DNS packets via Lua
CVSS 5.3
CVE-2026-4371 HIGH
Out of bounds read in IMAP parsing
CVSS 7.4
CVE-2026-28364 HIGH
OCaml <4.14.3/5.x<5.4.1 - Buffer Overflow
CVSS 7.9
CVE-2026-27799 MEDIUM
ImageMagick <7.1.2-15/6.9.13-40 - Buffer Overflow
CVSS 4.0
CVE-2026-27798 MEDIUM
ImageMagick <7.1.2-15/6.9.13-40 - Buffer Overflow
CVSS 4.0
CVE-2026-26271 MEDIUM
FreeRDP < 3.23.0 - Buffer Over-read in TS_ICON_INFO Icon Data Processing
CVSS 5.3
CVE-2026-3203 MEDIUM
Wireshark 4.6.0-4.6.3/4.4.0-4.4.13 - DoS
CVSS 5.5
CVE-2026-26282 MEDIUM
NanaZip 5.0.1252.0-6.0.1630.0 - Memory Corruption
CVSS 6.6
CVE-2026-25646 HIGH
libpng < 1.6.55 - Buffer Over-read in png_set_quantize()
CVSS 8.1
CVE-2026-20846 HIGH
Windows 10/11 GDI+ Buffer Over-read Denial of Service
CVSS 7.5
CVE-2025-59609 MEDIUM
Qualcomm, Snapdragon - Buffer Over-Read in WLAN Host Communication
CVSS 5.5
CVE-2025-47406 MEDIUM
Snapdragon - Out-of-bounds Read in IOCTL Handler Callback
CVSS 6.1
CVE-2025-47403 MEDIUM
Buffer Over-read in WLAN Firmware
CVSS 6.5
CVE-2025-47401 MEDIUM
Buffer Over-read in WLAN HAL
CVSS 6.5
CVE-2025-47400 HIGH
Buffer Over-read in Computer Vision
CVSS 7.1
CVE-2025-47390 HIGH
Buffer Over-read in Camera
CVSS 7.8
CVE-2025-66038 LOW
OpenSC: `sc_compacttlv_find_tag` can return out-of-bounds pointers
CVSS 3.9
CVE-2025-59600 HIGH
Qualcomm FastConnect and AR8031/AR8035/CSRA6620/CSRA6640 Firmware - Memory Corruption
CVSS 7.8
CVE-2025-47402 MEDIUM
Qualcomm SA8620P and other Snapdragon Firmware - Denial of Service via Large Authentication Information Element
CVSS 6.5
CVE-2025-66692 HIGH
Binance - Trust Wallet Core <5668c67 - DoS
CVSS 7.5
CVE-2025-60003 HIGH
Juniper Junos OS & Evolved DoS via BGP Update with Specific Optional Transitive Attributes
CVSS 7.5
CVE-2025-47395 MEDIUM
Qualcomm WCN7861 Firmware - Denial of Service via WLAN Management Frame Parsing
CVSS 6.5
CVE-2025-47331 MEDIUM
Qualcomm AR8031 Firmware - Buffer Over-read
CVSS 6.1
Details
Vulnerabilities 449