CWE-126

Buffer Over-read

Parent: CWE-125 - Out-of-bounds Read

The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.

449 vulnerabilities with CWE-126
CVE-2025-59192 HIGH
Windows 10/11, Server 2016 - Privilege Escalation via Storport.sys Buffer Over-read
CVSS 7.8
CVE-2025-55325 MEDIUM
Windows Storage Management Provider - Info Disclosure
CVSS 5.5
CVE-2025-11617 MEDIUM
FreeRTOS-Plus-TCP 4.0.0-4.3.3 - Buffer Over-read in IPv6 Packet Processing
CVSS 5.4
CVE-2025-11616 MEDIUM
FreeRTOS-Plus-TCP 4.0.0-4.3.3 - Buffer Over-read in ICMPv6 Packet Processing
CVSS 5.4
CVE-2025-27049 MEDIUM
Qualcomm FastConnect and Snapdragon Firmware - Denial of Service via IOCTL Image Encoding
CVSS 5.5
CVE-2025-27045 MEDIUM
Qualcomm FastConnect 6900 Firmware - Buffer Over-read in Video Driver
CVSS 6.1
CVE-2025-27041 MEDIUM
Qualcomm AR8035 Firmware - Denial of Service via Video Packet Processing
CVSS 5.5
CVE-2025-59933 HIGH
libvips < 8.17.2 - Buffer Over-read in PDF Header Parsing
CVSS 7.8
CVE-2025-47328 HIGH
Qualcomm FastConnect 7800 Firmware - Denial of Service via Invalid Power Control Request
CVSS 7.5
CVE-2025-47326 HIGH
Qualcomm AR8035 Firmware - Denial of Service via Power Control Command Handling
CVSS 7.5
CVE-2025-47318 HIGH
Qualcomm APQ8017 Firmware - Denial of Service via EPTM Test Control Message Parsing
CVSS 7.5
CVE-2025-47317 HIGH
Qualcomm FastConnect and Sound Platform Firmware - Memory Corruption via Invalid Payload Type in Test Command
CVSS 7.8
CVE-2025-27036 MEDIUM
Video Engine <expected min size - Info Disclosure
CVSS 6.1
CVE-2025-27033 MEDIUM
Qualcomm Video Usecase Firmware - Information Disclosure
CVSS 6.1
CVE-2025-27030 MEDIUM
Firmware <version> - Info Disclosure
CVSS 6.1
CVE-2025-21488 HIGH
Qualcomm FastConnect and MSM/QCA/QCM/QCS/QMP Firmware - Buffer Over-read in RTP Packet Header Decoding
CVSS 8.2
CVE-2025-21487 HIGH
Qualcomm APQ8017 and Snapdragon Firmware - Buffer Over-read in RTP Packet Decoding
CVSS 8.2
CVE-2025-21484 HIGH
Qualcomm Sm8750 Firmware - Buffer Over-read
CVSS 8.2
CVE-2025-4582 HIGH
RTI Connext Professional Buffer Over-read in Core Libraries
CVSS 7.1
CVE-2025-54901 MEDIUM
Microsoft Excel - Buffer Over-read
CVSS 5.5
CVE-2025-53806 MEDIUM
Windows Server RRAS Unauthenticated Out-of-bounds Read
CVSS 6.5
CVE-2025-53798 MEDIUM
Windows Server 2008/2012/2016/2019/2022/2025 <10.0.26100.6508 - Unauthenticated Buffer Over-read in RRAS
CVSS 6.5
CVE-2025-53797 MEDIUM
Windows Server RRAS Unauthenticated Buffer Over-read
CVSS 6.5
CVE-2025-53796 MEDIUM
Windows Server 2008-2025 Unauthenticated Info Disclosure via RRAS Buffer Over-read
CVSS 6.5
CVE-2025-36855 HIGH
ASP.NET 6.0.0-6.0.36, ASP.NET 8.0.0-8.0.11, ASP.NET 9.0.0 - Buffer ...
CVSS 8.8
Details
Vulnerabilities 449