← Back to feed Search feed

CWE-125 Out-of-bounds Read vulnerabilities

108 CVEs — updated 2026-08-04 · vulnfeed

CVE / IDTitleSeverityCVSSEPSSSourceDate
CVE-2022-4337An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch.CRITICAL9.868%ileMicrosoft2023-01-10
CVE-2026-17701Insufficient validation of untrusted input in ANGLE in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attaCRITICAL9.628%ileNVD2026-07-30
CVE-2026-17801Out of bounds read and write in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially pCRITICAL9.624%ileNVD2026-07-30
CVE-2024-25178LuaJIT through 2.1 and OpenRusty luajit2 before v2.1-20240314 have an out-of-bounds read in the stack-overflow handler iCRITICAL9.442%ileMicrosoft2025-07-08
CVE-2024-32622HDF5 Library through 1.14.3 contains a out-of-bounds read operation in H5FL_arr_malloc in H5FL.c (called from H5S_set_exCRITICAL9.159%ileMicrosoft2024-05-14
CVE-2026-17678Out of bounds read in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the reHIGH8.830%ileNVD2026-07-30
CVE-2026-17971Inappropriate implementation in Frame in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially pHIGH8.819%ileNVD2026-07-30
CVE-2026-66360The ISO Presentation layer contains a flaw in the handling of specific parameters during normal mode negotiation. A misHIGH8.720%ileNVD2026-07-30
CVE-2026-67290FreeRDP before 3.29.0 contains a heap out-of-bounds read vulnerability in the TSMF FFmpeg decoder when parsing AVC1 MPEGHIGH8.736%ileNVD2026-08-01
CVE-2026-67291FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains a heap out-of-bounds read in update_process_glyph_fragmentsHIGH8.726%ileNVD2026-08-01
CVE-2026-67301FreeRDP before 3.29.0 contains out-of-bounds read vulnerabilities in the async update message proxy for the PolygonSC anHIGH8.726%ileNVD2026-08-01
CVE-2026-62959Coturn is a free open source implementation of TURN and STUN Server. From 4.5.2 through 4.14.0, when Coturn is started wHIGH8.231%ileNVD2026-07-31
CVE-2026-57235Nokogiri: Possible Out-of-Bounds Read in `Nokogiri::XML::NodeSet#[]`HIGH8.227%ileMicrosoft2026-06-09
CVE-2026-17869Out of bounds read in WebXR in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform an out of boundHIGH8.118%ileNVD2026-07-30
CVE-2026-17995Out of bounds read in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform an out of boundsHIGH8.115%ileNVD2026-07-30
CVE-2023-0049Out-of-bounds Read in vim/vimHIGH7.838%ileMicrosoft2023-01-10
CVE-2026-41703VMware ESX, Workstation, and Fusion contain an out-of-bounds read vulnerability. A malicious actor with VM deployment prHIGH7.643%ileNVD2026-07-30
CVE-2026-20479In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of servHIGH7.540%ileNVD2026-08-03
CVE-2026-66034libssh2 Heap Out-of-Bounds Read via publickey subsystemHIGH7.517%ileMicrosoft2026-07-14
CVE-2026-40890github.com/gomarkdown/markdown: Out-of-bounds Read in SmartypantsRendererHIGH7.527%ileMicrosoft2026-04-14
CVE-2025-11021Libsoup: out-of-bounds read in cookie date handling of libsoup http libraryHIGH7.545%ileMicrosoft2025-09-09
CVE-2025-9230Out-of-bounds read & write in RFC 3211 KEK UnwrapHIGH7.576%ileMicrosoft2025-09-09
CVE-2026-9076Out-of-Bounds Read in CMS Password-Based DecryptionHIGH7.545%ileMicrosoft2026-06-09
CVE-2026-63550The MMS BER decoder contains a boundary-handling flaw in the processing of certain fields within confirmed-request messHIGH7.116%ileNVD2026-07-30
CVE-2026-65421The MMS BER decoder contains a flaw in decoding fixed-width BER fields (boolean/integer): an attacker-supplied length vHIGH7.17%ileNVD2026-07-30
CVE-2026-66364The GOOSE payload parser contains a boundary handling flaw that can be triggered by a single unauthenticated Layer 2 muHIGH7.17%ileNVD2026-07-30
CVE-2026-66369The GOOSE parser contains an off-by-one boundary-handling flaw that can be triggered by a single unauthenticated Layer-HIGH7.17%ileNVD2026-07-30
CVE-2026-66720The GOOSE subscriber component improperly validates the UTC timestamp field in unauthenticated IEC 61850 GOOSE (EtherTyHIGH7.17%ileNVD2026-07-30
CVE-2026-69244AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.3, an out-of-bounds heap rHIGH7.122%ileNVD2026-08-03
CVE-2026-53402fbdev: fbcon: fix out-of-bounds read in err_out of fbcon_do_set_font()HIGH7.13%ileMicrosoft2026-07-14
CVE-2026-53390ksmbd: fix out-of-bounds read in smb_check_perm_dacl()HIGH7.138%ileMicrosoft2026-07-14
CVE-2025-38680media: uvcvideo: Fix 1-byte out-of-bounds read in uvc_parse_format()HIGH7.16%ileMicrosoft2025-09-09
CVE-2026-53268netfilter: conntrack_irc: fix possible out-of-bounds readHIGH7.127%ileMicrosoft2026-06-09
CVE-2025-38111net/mdiobus: Fix potential out-of-bounds read/write accessHIGH7.19%ileMicrosoft2025-07-08
CVE-2025-38249ALSA: usb-audio: Fix out-of-bounds read in snd_usb_get_audioformat_uac3()HIGH7.15%ileMicrosoft2025-07-08
CVE-2026-10848The OCPP 1.6 client in subsys/net/lib/ocpp parsed inbound WAMP RPC frames in parse_rpc_msg() (subsys/net/lib/ocpp/ocpp_jHIGH7.010%ileNVD2026-08-02
CVE-2025-38204jfs: fix array-index-out-of-bounds read in add_missing_indicesHIGH7.06%ileMicrosoft2025-07-08
CVE-2026-56758The ACSE layer contains a flaw in the processing of AARQ PDUs during MMS connection establishment. When parsing certainMEDIUM6.98%ileNVD2026-07-30
CVE-2026-61893A crafted IEC 60870-5-104 I-frame with TypeID 104 (C_TS_NA_1) and an inflated object count causes TestCommand_getFromBuMEDIUM6.918%ileNVD2026-07-30
CVE-2026-63033A crafted IEC 60870-5-104 I-frame with a declared object count exceeding what fits in the ASDU body causes InformationOMEDIUM6.918%ileNVD2026-07-30
CVE-2026-66349The MMS server connection handler contains a flaw in its processing of BER-encoded request data. When an MMS confirmed MEDIUM6.98%ileNVD2026-07-30
CVE-2026-16530A flaw was found in the PCP (Performance Co-Pilot) `pmproxy` service. A remote attacker can exploit a vulnerability in tMEDIUM6.522%ileNVD2026-07-30
CVE-2026-70368A stack-based out-of-bounds read vulnerability exists in the "s_vlog" function of stunnel, when handling oversized log mMEDIUM6.5NVD2026-08-04
CVE-2026-14258Dhcpcd: dhcpcd infinite loop and out-of-bounds read via zero-length ipv6 nd option in router advertisement handlingMEDIUM6.517%ileMicrosoft2026-07-14
CVE-2026-15714Libsoup: soupmultipartinputstream: libsoup: out-of-bounds read in soup_multipart_input_stream_read_headers via an oversiMEDIUM6.532%ileMicrosoft2026-07-14
CVE-2025-4969Libsoup: off-by-one out-of-bounds read in find_boundary() in soup-multipart.cMEDIUM6.552%ileMicrosoft2025-05-13
CVE-2023-6174Out-of-bounds Read in WiresharkMEDIUM6.551%ileMicrosoft2025-07-08
CVE-2026-58160Apache Traffic Server reads out of bounds while parsing DNS answers. This issue affects Apache Traffic Server: from 8.0MEDIUM6.343%ileNVD2026-07-29
CVE-2026-50735pglogical's apply worker does not sufficiently validate the length of certain fields in incoming replication protocol meMEDIUM6.19%ileNVD2026-07-28
CVE-2026-16465A maliciously crafted DWG or DXF file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerabiliMEDIUM6.14%ileNVD2026-07-29
CVE-2026-64450tipc: fix out-of-bounds read in broadcast Gap ACK blocksMEDIUM6.142%ileMicrosoft2026-07-14
CVE-2025-38713hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc()MEDIUM6.15%ileMicrosoft2025-09-09
CVE-2026-57454Vim: Out-of-bounds Read with Text PropertiesMEDIUM6.12%ileMicrosoft2026-06-09
CVE-2026-12996A use-after-free in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote authenticated peers to potenMEDIUM6.032%ileNVD2026-07-30
CVE-2026-35201Discount has an Out-of-bounds Read in rdiscountMEDIUM5.920%ileMicrosoft2026-04-14
CVE-2025-9232Out-of-bounds read in HTTP client no_proxy handlingMEDIUM5.981%ileMicrosoft2025-09-09
CVE-2026-17745Out of bounds read in Skia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renMEDIUM5.88%ileNVD2026-07-30
CVE-2026-17770Out of bounds read in Media in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromisedMEDIUM5.86%ileNVD2026-07-30
CVE-2026-67550re2 provides Node.js bindings for Google's RE2 regular expression engine. Prior to 1.25.2, re2 validates lastIndex againMEDIUM5.72%ileNVD2026-07-30
CVE-2026-17550A maliciously crafted DWG or DXF file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerabiliMEDIUM5.54%ileNVD2026-07-29
CVE-2026-20494In wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discMEDIUM5.51%ileNVD2026-08-03
CVE-2026-18583A weakness has been identified in mz-automation libiec61850 up to 1.6.1. This issue affects the function checkDataSetAccMEDIUM5.540%ileNVD2026-08-03
CVE-2026-68742A flaw was found in SSSD. The sss_nss_protocol_parse_addr() function in the NSS responder does not validate the addrlen MEDIUM5.54%ileNVD2026-08-03
CVE-2026-64299tracing: Prevent out-of-bounds read in glob matchingMEDIUM5.56%ileMicrosoft2026-07-14
CVE-2026-64487ALSA: caiaq: fix out-of-bounds read in the Traktor Kontrol S4 input parserMEDIUM5.58%ileMicrosoft2026-07-14
CVE-2026-39855osslsigncode has an Integer Underflow in PE Page Hash Calculation Can Cause Out-of-Bounds ReadMEDIUM5.54%ileMicrosoft2026-04-14
CVE-2026-39856osslsigncode has an Out-of-Bounds Read via Unvalidated Section Bounds in PE Page Hash CalculationMEDIUM5.54%ileMicrosoft2026-04-14
CVE-2026-46155smb/client: fix out-of-bounds read in smb2_compound_op()MEDIUM5.539%ileMicrosoft2026-05-12
CVE-2026-46190mtd: spi-nor: debugfs: fix out-of-bounds read in spi_nor_params_show()MEDIUM5.53%ileMicrosoft2026-05-12
CVE-2026-46185smb/client: fix out-of-bounds read in symlink_data()MEDIUM5.541%ileMicrosoft2026-05-12
CVE-2026-50262Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: out-of-bounds read/write in glx changedrawableattributesMEDIUM5.53%ileMicrosoft2026-06-09
CVE-2026-57452Vim: Out-of-bounds Read with libsodium-encrypted FilesMEDIUM5.52%ileMicrosoft2026-06-09
CVE-2026-4367Libxpm: libxpm: denial of service via out-of-bounds read in xpm file parsingMEDIUM5.53%ileMicrosoft2026-06-09
CVE-2025-38320arm64/ptrace: Fix stack-out-of-bounds read in regs_get_kernel_stack_nth()MEDIUM5.58%ileMicrosoft2025-07-08
CVE-2022-48303GNU Tar through 1.34 has a one-byte out-of-bounds read that results in use of uninitialized memory for a conditional jumMEDIUM5.591%ileMicrosoft2023-01-10
CVE-2023-23454cbq_classify in net/sched/sch_cbq.c in the Linux kernel through 6.1.4 allows attackers to cause a denial of service (slaMEDIUM5.524%ileMicrosoft2023-01-10
CVE-2024-31584Pytorch before v2.2.0 has an Out-of-bounds Read vulnerability via the component torch/csrc/jit/mobile/flatbuffer_loader.MEDIUM5.531%ileMicrosoft2024-04-09
USN-8620-4USN-8620-4: Linux kernel (Intel IoTG) vulnerabilitiesMEDIUM5.5Ubuntu2026-07-31
USN-8620-3USN-8620-3: Linux kernel (Intel IoTG) vulnerabilitiesMEDIUM5.5Ubuntu2026-07-31
USN-8620-2USN-8620-2: Linux kernel (Azure FIPS) vulnerabilitiesMEDIUM5.5Ubuntu2026-07-29
CVE-2026-10773The DHCPv4 client helper net_dhcpv4_msg_type_name() in subsys/net/lib/dhcpv4/dhcpv4.c indexes a static 8-element const cMEDIUM5.47%ileNVD2026-08-01
CVE-2023-51592BlueZ Audio Profile AVRCP parse_media_folder Out-Of-Bounds Read Information Disclosure VulnerabilityMEDIUM5.453%ileMicrosoft2024-05-14
CVE-2023-51580BlueZ Audio Profile AVRCP avrcp_parse_attribute_list Out-Of-Bounds Read Information Disclosure VulnerabilityMEDIUM5.458%ileMicrosoft2024-05-14
CVE-2023-51589BlueZ Audio Profile AVRCP parse_media_element Out-Of-Bounds Read Information Disclosure VulnerabilityMEDIUM5.453%ileMicrosoft2024-05-14
CVE-2026-64685ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.MEDIUM5.310%ileNVD2026-07-30
CVE-2026-58216An out-of-bounds read flaw was found in Samba's Kerberos Key Distribution Center's (KDC) password change (kpasswd) serviMEDIUM5.341%ileNVD2026-07-30
CVE-2026-55777GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through the bMEDIUM5.318%ileNVD2026-07-30
CVE-2026-67306FreeRDP versions 3.28.0 and earlier contain an out-of-bounds read vulnerability in the RDP6 planar RLE bitmap decoder fuMEDIUM5.320%ileNVD2026-08-01
CVE-2026-16768Gdk-pixbuf: out-of-bounds read in ico parserMEDIUM5.315%ileMicrosoft2026-07-14
CVE-2026-12969Dnsmasq: dnsmasq: out-of-bounds read in find_soa() due to missing extrabytes validationMEDIUM5.315%ileMicrosoft2026-06-09
CVE-2026-57451Vim: Out-of-bounds Read in Text Property CountMEDIUM5.32%ileMicrosoft2026-06-09
CVE-2026-13379The Windows interactive service in OpenVPN 2.7_alpha1 through 2.7.4 allows remote attackers to cause persistent DNS statMEDIUM5.121%ileNVD2026-07-30
CVE-2023-53159The openssl crate before 0.10.55 for Rust allows an out-of-bounds read via an empty string to X509VerifyParamRef::set_hoMEDIUM4.526%ileMicrosoft2025-07-08
CVE-2026-20488In display, there is a possible information disclosure due to a missing bounds check. This could lead to local informatiMEDIUM4.42%ileNVD2026-08-03
CVE-2026-20489In display, there is a possible information disclosure due to an integer overflow. This could lead to local information MEDIUM4.42%ileNVD2026-08-03
CVE-2026-20490In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of servicMEDIUM4.41%ileNVD2026-08-03
CVE-2026-20496In geniezone, there is a possible out of bounds read due to a missing bounds check. This could lead to local informationMEDIUM4.41%ileNVD2026-08-03
CVE-2026-40026Sleuth Kit ISO9660 SUSP Extension Reference Out-of-Bounds ReadMEDIUM4.43%ileMicrosoft2026-04-14
CVE-2026-40025Sleuth Kit APFS Keybag Parser Out-of-Bounds ReadMEDIUM4.42%ileMicrosoft2026-04-14
CVE-2026-17772Out of bounds read in WebGL in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform an out of boundMEDIUM4.312%ileNVD2026-07-30
CVE-2026-41079OpenPrinting CUPS: Heap out-of-bounds read in SNMP supply-level polling leaks stack memory to authenticated usersMEDIUM4.334%ileMicrosoft2026-04-14
CVE-2026-47104libusb < 1.0.30 Out-of-Bounds Read in parse_iad_array()MEDIUM4.03%ileMicrosoft2026-05-12
CVE-2026-10684In subsys/debug/coredump/coredump_shell.c, print_coredump_hdr() used the 16-bit tgt_code field of a stored Zephyr coreduLOW3.01%ileNVD2026-07-29
CVE-2026-66401FreeRDP before 3.29.0 contains an out-of-bounds heap read vulnerability in the UVC H.264 extension-unit parser that failLOW2.45%ileNVD2026-08-01
CVE-2026-39979jq: Out-of-Bounds Read in jv_parse_sized() Error Formatting for Non-NUL-Terminated Counted BuffersUNKNOWN43%ileMicrosoft2026-04-14
CVE-2026-41677rust-openssl: Out-of-bounds read in PEM password callback when user callback returns an oversized lengthUNKNOWN22%ileMicrosoft2026-04-14
CVE-2026-7258Out-of-bounds read in urldecode() on NetBSDUNKNOWN26%ileMicrosoft2026-05-12
CVE-2026-52859Vim: Out-of-bounds Read in Terminal Screen SnapshotUNKNOWN23%ileMicrosoft2026-06-09