← Back
CWE-126

476 CVEs • Abstraction: Variant

Buffer Over-read

The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.

JSON object

Loading...

CVEs (476)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Google
1Android
Jun 17, 2026
Dec 6, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
In camera driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
1Google
1Android
Jun 17, 2026
Dec 6, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
In face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
1Google
1Android
Jun 17, 2026
Oct 14, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
In face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
1Google
1Android
Jun 17, 2026
Oct 14, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
In camera driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
1Gpac
1Gpac
Jun 17, 2026
Sep 12, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
Buffer Over-read in GitHub repository gpac/gpac prior to 2.1.0-DEV.
1Cisco
146Nexus 3016 Firmware
Nexus 3016q FirmwareNexus 3048 Firmware+143 more
Jun 17, 2026
Aug 25, 2022
N/A· v4
8.6 HIGH· v3
N/A· v2
A vulnerability in the OSPF version 3 (OSPFv3) feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due...Show more
A vulnerability in the OSPF version 3 (OSPFv3) feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to incomplete input validation of specific OSPFv3 packets. An attacker could exploit this vulnerability by sending a malicious OSPFv3 link-state advertisement (LSA) to an affected device. A successful exploit could allow the attacker to cause the OSPFv3 process to crash and restart multiple times, causing the affected device to reload and resulting in a DoS condition. Note: The OSPFv3 feature is disabled by default. To exploit this vulnerability, an attacker must be able to establish a full OSPFv3 neighbor state with an affected device. For more information about exploitation conditions, see the Details section of this advisory.Show less
2Debian
Libpng
2Debian Linux
Pngcheck
Jun 17, 2026
Aug 23, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A global buffer overflow was discovered in pngcheck function in pngcheck-2.4.0(5 patches applied) via a crafted png file.
1Chafa Project
1Chafa
Jun 17, 2026
Jul 4, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
Buffer Over-read in GitHub repository hpjansson/chafa prior to 1.10.3.
1Codesys
2Plcwinnt
Runtime Toolkit
Jun 17, 2026
Jun 24, 2022
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
Multiple CODESYS Products are prone to a buffer over read. A low privileged remote attacker may craft a request with an invalid offset, which can cause an internal buffer over-read, resulting in a denial-of-service condi...Show more
Multiple CODESYS Products are prone to a buffer over read. A low privileged remote attacker may craft a request with an invalid offset, which can cause an internal buffer over-read, resulting in a denial-of-service condition. User interaction is not required.Show less
2Fedoraproject
Vim
2Fedora
Vim
Jun 17, 2026
Jun 23, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Buffer Over-read in GitHub repository vim/vim prior to 8.2.
4Apple
DebianFedoraproject+1 more
4Debian Linux
FedoraMacos+1 more
Jun 17, 2026
Jun 20, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
4Apple
DebianFedoraproject+1 more
4Debian Linux
FedoraMacos+1 more
Jun 17, 2026
Jun 19, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Buffer Over-read in GitHub repository vim/vim prior to 8.2.
1Libmobi Project
1Libmobi
Jun 17, 2026
Jun 3, 2022
N/A· v4
8.1 HIGH· v3
5.8 MEDIUM· v2
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
3Apple
FedoraprojectVim
3Fedora
MacosVim
Jun 17, 2026
May 29, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Buffer Over-read in GitHub repository vim/vim prior to 8.2.
1Libmobi Project
1Libmobi
Jun 17, 2026
May 27, 2022
N/A· v4
8.1 HIGH· v3
5.8 MEDIUM· v2
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
1Libmobi Project
1Libmobi
Jun 17, 2026
May 27, 2022
N/A· v4
8.1 HIGH· v3
5.8 MEDIUM· v2
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
3Apple
FedoraprojectVim
3Fedora
MacosVim
Jun 17, 2026
May 17, 2022
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Buffer Over-read in GitHub repository vim/vim prior to 8.2.4974.
3Apple
FedoraprojectVim
3Fedora
MacosVim
Jun 17, 2026
May 10, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Buffer Over-read in function find_next_quote in GitHub repository vim/vim prior to 8.2.4925. This vulnerabilities are capable of crashing software, Modify Memory, and possible remote execution
1Libmobi Project
1Libmobi
Jun 17, 2026
Apr 29, 2022
N/A· v4
7.1 HIGH· v3
3.6 LOW· v2
Buffer Over-read at parse_rawml.c:1416 in GitHub repository bfabiszewski/libmobi prior to 0.11. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensi...Show more
Buffer Over-read at parse_rawml.c:1416 in GitHub repository bfabiszewski/libmobi prior to 0.11. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash.Show less
1Libmobi Project
1Libmobi
Jun 17, 2026
Apr 29, 2022
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. This vulnerability is capable of arbitrary code execution.