← Back
CWE-125

9,169 CVEs • Abstraction: Base

Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.

JSON object

Loading...

CVEs (9,169)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Microsoft
12Windows 10 1607
Windows 10 1809Windows 10 20h2+9 more
Jun 17, 2026
Apr 11, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
1Microsoft
12Windows 10 1607
Windows 10 1809Windows 10 20h2+9 more
Jun 17, 2026
Apr 11, 2023
N/A· v4
5.3 MEDIUM· v3
N/A· v2
Remote Procedure Call Runtime Information Disclosure Vulnerability
1Libjxl Project
1Libjxl
Jun 29, 2026
Apr 11, 2023
N/A· v4
9.1 CRITICAL· v3
N/A· v2
An out of bounds read exists in libjxl. An attacker using a specifically crafted file could cause an out of bounds read in the exif handler. We recommend upgrading to version 0.8.1 or past commit  https://github.com/libj...Show more
An out of bounds read exists in libjxl. An attacker using a specifically crafted file could cause an out of bounds read in the exif handler. We recommend upgrading to version 0.8.1 or past commit  https://github.com/libjxl/libjxl/pull/2101/commits/d95b050c1822a5b1ede9e0dc937e43fca1b10159 https://github.com/libjxl/libjxl/pull/2101/commits/d95b050c1822a5b1ede9e0dc937e43fca1b10159 Show less
1Siemens
2Jt Open Toolkit
Jt Utilities
Jun 17, 2026
Apr 11, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
A vulnerability has been identified in JT Open (All versions < V11.3.2.0), JT Utilities (All versions < V13.3.0.0). The affected applications contain an out of bounds read past the end of an allocated structure while par...Show more
A vulnerability has been identified in JT Open (All versions < V11.3.2.0), JT Utilities (All versions < V13.3.0.0). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current process.Show less
1Libtiff
1Libtiff
Jun 17, 2026
Apr 10, 2023
N/A· v4
6.1 MEDIUM· v3
N/A· v2
A flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to an out-of-bounds read in the extractImageSection function in tools/tiffcrop.c, resulting in a denial o...Show more
A flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to an out-of-bounds read in the extractImageSection function in tools/tiffcrop.c, resulting in a denial of service and limited information disclosure. This issue affects libtiff versions 4.x.Show less
1F5
1Njs
Jun 17, 2026
Apr 9, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Nginx NJS v0.7.10 was discovered to contain a segmentation violation via the function njs_lvlhsh_find at src/njs_lvlhsh.c.
1F5
1Njs
Jun 17, 2026
Apr 9, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Nginx NJS v0.7.10 was discovered to contain a segmentation violation via the function njs_dump_is_recursive at src/njs_vmcode.c.
1F5
1Njs
Jun 17, 2026
Apr 9, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Nginx NJS v0.7.10 was discovered to contain a segmentation violation via the function njs_function_frame at src/njs_function.h.
1Google
1Android
Jun 17, 2026
Apr 6, 2023
N/A· v4
4.4 MEDIUM· v3
N/A· v2
In power, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Pa...Show more
In power, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07441821; Issue ID: ALPS07441821.Show less
3Google
LinuxYoctoproject
3Android
Linux KernelYocto
Jun 17, 2026
Apr 6, 2023
N/A· v4
4.4 MEDIUM· v3
N/A· v2
In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Pa...Show more
In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588413; Issue ID: ALPS07588453.Show less
3Google
LinuxYoctoproject
3Android
Linux KernelYocto
Jun 17, 2026
Apr 6, 2023
N/A· v4
4.4 MEDIUM· v3
N/A· v2
In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Pat...Show more
In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588413; Issue ID: ALPS07588436.Show less
3Google
LinuxYoctoproject
3Android
Linux KernelYocto
Jun 17, 2026
Apr 6, 2023
N/A· v4
4.4 MEDIUM· v3
N/A· v2
In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Pat...Show more
In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588569; Issue ID: ALPS07628518.Show less
3Google
LinuxYoctoproject
3Android
Linux KernelYocto
Jun 17, 2026
Apr 6, 2023
N/A· v4
4.4 MEDIUM· v3
N/A· v2
In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Pat...Show more
In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588569; Issue ID: ALPS07588569.Show less
3Google
LinuxYoctoproject
3Android
Linux KernelYocto
Jun 17, 2026
Apr 6, 2023
N/A· v4
4.4 MEDIUM· v3
N/A· v2
In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Pat...Show more
In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588569; Issue ID: ALPS07588552.Show less
1Google
1Android
Jun 17, 2026
Apr 6, 2023
N/A· v4
4.4 MEDIUM· v3
N/A· v2
In ril, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patc...Show more
In ril, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628604; Issue ID: ALPS07628604.Show less
1Tailor Management System Project
1Tailor Management System
Jun 17, 2026
Apr 6, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
SQL injection vulnerability found in Tailor Mangement System v.1 allows a remote attacker to execute arbitrary code via the title parameter.
1Bzip3 Project
1Bzip3
Jun 17, 2026
Apr 6, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
An issue was discovered in libbzip3.a in bzip3 before 1.2.3. There is a bz3_decode_block out-of-bounds read.
1Bzip3 Project
1Bzip3
Jun 17, 2026
Apr 6, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
An issue was discovered in libbzip3.a in bzip3 before 1.2.3. There is an xwrite out-of-bounds read.
1Bzip3 Project
1Bzip3
Jun 17, 2026
Apr 6, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
An issue was discovered in libbzip3.a in bzip3 1.2.2. There is a bz3_decompress out-of-bounds read in certain situations where buffers passed to bzip3 do not contain enough space to be filled with decompressed data. NOTE...Show more
An issue was discovered in libbzip3.a in bzip3 1.2.2. There is a bz3_decompress out-of-bounds read in certain situations where buffers passed to bzip3 do not contain enough space to be filled with decompressed data. NOTE: the vendor's perspective is that the observed behavior can only occur for a contract violation, and thus the report is invalid.Show less
3Debian
FedoraprojectGoogle
3Chrome
Debian LinuxFedora
Jun 17, 2026
Apr 4, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Out of bounds read in Accessibility in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium)