CWE-126
519 CVEs • Abstraction: Variant
Buffer Over-read
The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.
CVEs (519)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 54Cologne Firmware Cq7790 FirmwareFastconnect 6900 Firmware+51 moreAug 6, 2026 Aug 4, 2026 N/A· v4 7.4 HIGH· v3 N/A· v2 Transient DOS when processing a short target wake time channel usage response frame with insufficient packet size. |
Buffer over-read in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network. |
Buffer Over-read vulnerability in Apache Thrift C++ bindings.
This issue affects Apache Thrift: before 0.24.0.
Users are recommended to upgrade to version 0.24.0, which fixes the issue. |
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the processing of RDP Confirm Active PDU, where during the capability negotiation phase, the parser did not perform sufficie...Show more |
ProFTPD before 1.3.9c and 1.3.10rc3 contains a signed integer overflow vulnerability in the mod_sftp module's SCP size-record parser that allows authenticated low-privilege attackers to bypass ASLR by sending a crafted f...Show more |
An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. There is heap exposure in nested MIME comment parsing. An authenticated IMAP user could craft an email message containing an RFC 822 comment ending wit...Show more |
Tornado is a Python web framework and asynchronous networking library. Prior to 6.5.6, the optional native extension tornado.speedups implemented websocket_mask without validating that the mask argument is exactly four b...Show more |
1Microsoft 1Windows Subsystem For Linux Jul 20, 2026 Jul 14, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Buffer over-read in Windows Subsystem for Linux allows an authorized attacker to elevate privileges locally. |
1Microsoft 7365 Apps ExcelMicrosoft 365+4 moreJul 16, 2026 Jul 14, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
1Microsoft 12Windows 10 1607 Windows 10 1809Windows 10 21h2+9 moreJul 22, 2026 Jul 14, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 Buffer over-read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network. |
1Microsoft 12Windows 10 1607 Windows 10 1809Windows 10 21h2+9 moreJul 21, 2026 Jul 14, 2026 N/A· v4 5.7 MEDIUM· v3 N/A· v2 Buffer over-read in Windows Hyper-V allows an authorized attacker to deny service over an adjacent network. |
1Microsoft 12Windows 10 1607 Windows 10 1809Windows 10 21h2+9 moreJul 22, 2026 Jul 14, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Buffer over-read in Windows Kernel allows an authorized attacker to disclose information locally. |
Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network. |
1Microsoft 12Windows 10 1607 Windows 10 1809Windows 10 21h2+9 moreJul 22, 2026 Jul 14, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 Buffer over-read in Windows RDP allows an unauthorized attacker to disclose information over a network. |
1Microsoft 12Windows 10 1607 Windows 10 1809Windows 10 21h2+9 moreJul 23, 2026 Jul 14, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. |
1Microsoft 12Windows 10 1607 Windows 10 1809Windows 10 21h2+9 moreJul 22, 2026 Jul 14, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Incorrect conversion between numeric types in Windows NTFS allows an authorized attacker to elevate privileges locally. |
1Microsoft 9Windows 10 1809 Windows 10 21h2Windows 10 22h2+6 moreJul 22, 2026 Jul 14, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Buffer over-read in Windows Print Spooler Components allows an authorized attacker to disclose information locally. |
1Microsoft 12Windows 10 1607 Windows 10 1809Windows 10 21h2+9 moreJul 22, 2026 Jul 14, 2026 N/A· v4 7.0 HIGH· v3 N/A· v2 Buffer over-read in Windows Redirected Drive Buffering allows an authorized attacker to elevate privileges locally. |
1Microsoft 12Windows 10 1607 Windows 10 1809Windows 10 21h2+9 moreJul 20, 2026 Jul 14, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally. |
A buffer over-read vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiProxy 7.6.0 through 7.6.5, FortiPr...Show more |