CWE-125: Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.

1,856
Total CVEs
198
Critical
1,110
High
7.2
Avg CVSS
2
In CISA KEV

Yearly Trend

2026
98
2025
598
2024
514
2023
198
2022
109

Top Affected Vendors

1 Linux 300
2 Adobe 172
3 Google 167
4 Microsoft 113
5 Apple 109
6 Debian 94
7 Siemens 63
8 Pdf Xchange 58
9 Samsung 51
10 Fedoraproject 50

All Out-of-bounds Read CVEs (1,856)

CVE-2020-5991
7.8

This vulnerability in NVIDIA's NVJPEG library allows attackers to perform out-of-bounds read/write operations, potentially leading to code execution, ...

Oct 30, 2020
CVE-2020-9973
7.8

This vulnerability allows attackers to cause out-of-bounds memory reads when processing malicious USD (Universal Scene Description) files. Successful ...

Oct 27, 2020
CVE-2020-9984
7.8

This vulnerability allows attackers to execute arbitrary code by tricking users into processing maliciously crafted images. It affects Apple iOS, iPad...

Oct 22, 2020
CVE-2020-9873
7.8

This vulnerability allows arbitrary code execution when processing maliciously crafted images due to an out-of-bounds read. It affects multiple Apple ...

Oct 22, 2020
CVE-2020-9877
7.8

CVE-2020-9877 is an out-of-bounds read vulnerability in Apple's image processing that could allow arbitrary code execution when processing malicious i...

Oct 22, 2020
CVE-2020-24418
7.8

CVE-2020-24418 is an out-of-bounds read vulnerability in Adobe After Effects that could allow an attacker to execute arbitrary code in the context of ...

Oct 21, 2020
CVE-2020-9749
7.8

CVE-2020-9749 is an out-of-bounds read vulnerability in Adobe Animate that could allow arbitrary code execution when a user opens a malicious .fla fil...

Oct 21, 2020
CVE-2020-24409
7.8

CVE-2020-24409 is an out-of-bounds read vulnerability in Adobe Illustrator that could allow arbitrary code execution when a user opens a malicious PDF...

Oct 20, 2020
CVE-2020-9890
7.8

This vulnerability allows attackers to execute arbitrary code by tricking users into opening malicious audio files. It affects Apple devices running o...

Oct 16, 2020
CVE-2020-9888
7.8

This vulnerability allows attackers to execute arbitrary code by tricking users into processing a malicious audio file. It affects Apple iOS, iPadOS, ...

Oct 16, 2020
CVE-2020-9799
7.8

CVE-2020-9799 is an out-of-bounds read vulnerability in macOS that allows malicious applications to execute arbitrary code with kernel privileges. Thi...

Oct 16, 2020
CVE-2020-25188
7.8

CVE-2020-25188 is an out-of-bounds read vulnerability in LAquis SCADA software that allows remote code execution. An attacker can exploit this by tric...

Oct 14, 2020
CVE-2020-8870
7.8

This vulnerability in Foxit Studio Photo allows remote attackers to execute arbitrary code by tricking users into opening malicious TIF files. The fla...

Aug 20, 2020
CVE-2020-0510
7.8

This vulnerability is an out-of-bounds read in certain Intel Graphics Drivers that could allow an authenticated local user to potentially escalate pri...

Aug 13, 2020
CVE-2020-9652
7.8

Adobe Premiere Pro versions 14.2 and earlier contain an out-of-bounds read vulnerability that could allow attackers to execute arbitrary code. This af...

Jun 25, 2020
CVE-2020-9815
7.8

CVE-2020-9815 is an out-of-bounds read vulnerability in Apple's audio file processing that could allow arbitrary code execution when processing a mali...

Jun 9, 2020
CVE-2020-9791
7.8

CVE-2020-9791 is an out-of-bounds read vulnerability in Apple's audio file processing that could allow arbitrary code execution when processing malici...

Jun 9, 2020
CVE-2020-10902
7.8

This vulnerability allows remote attackers to execute arbitrary code on Foxit PhantomPDF installations by tricking users into opening malicious PDF fi...

Apr 22, 2020
CVE-2020-10895
7.8

This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious PDF files containing specially crafted U...

Apr 22, 2020
CVE-2020-8835
7.8

This vulnerability in the Linux kernel's BPF verifier allows attackers to bypass memory bounds checks for 32-bit operations, leading to out-of-bounds ...

Apr 2, 2020
CVE-2026-20620
7.7

This CVE describes an out-of-bounds read vulnerability in macOS kernel memory that could allow an attacker to cause system crashes or read sensitive k...

Feb 11, 2026
CVE-2022-48651
7.7

A kernel memory corruption vulnerability in Linux ipvlan driver allows local attackers to trigger out-of-bounds memory access, potentially leading to ...

Apr 28, 2024
CVE-2021-47044
7.7

This CVE describes a shift-out-of-bounds vulnerability in the Linux kernel's scheduler load_balance() function. It could allow local attackers to caus...

Feb 28, 2024
CVE-2023-3487
7.7

An integer overflow vulnerability in Silicon Labs Gecko Bootloader versions 4.3.1 and earlier allows attackers to access memory beyond allocated bound...

Oct 20, 2023
CVE-2026-27831
7.5

CVE-2026-27831 is a heap-based out-of-bounds read vulnerability in rldns DNS server version 2.3 that can cause denial of service. The vulnerability al...

Feb 26, 2026
CVE-2026-25942
7.5

This vulnerability in FreeRDP allows a malicious RDP server to trigger an out-of-bounds read by sending an execResult value of 7 or greater. This coul...

Feb 25, 2026
CVE-2026-24481
7.5

ImageMagick versions before 7.1.2-15 and 6.9.13-40 have a heap information disclosure vulnerability in their PSD format handler. When processing speci...

Feb 24, 2026
CVE-2026-21863
7.5

This vulnerability in Valkey allows attackers with access to the clusterbus port to send specially crafted packets that cause out-of-bounds reads, pot...

Feb 23, 2026
CVE-2025-70121
7.5

A remote array index out-of-bounds vulnerability in free5GC's AMF component allows attackers to crash the AMF service via specially crafted 5GS Mobile...

Feb 13, 2026
CVE-2025-69806
7.5

CVE-2025-69806 is an out-of-bounds read vulnerability in p2r3 bareiron software that allows unauthenticated remote attackers to leak relative informat...

Feb 12, 2026
CVE-2025-62603
7.5

Fast DDS versions prior to 3.4.1, 3.3.1, and 2.6.11 contain a vulnerability where malicious ParticipantGenericMessage packets can trigger excessive me...

Feb 3, 2026
CVE-2025-62600
7.5

This vulnerability in Fast DDS allows remote attackers to cause a denial-of-service (DoS) by sending specially crafted SPDP packets with modified DATA...

Feb 3, 2026
CVE-2025-62599
7.5

This vulnerability in Fast DDS allows remote attackers to cause a denial of service by triggering an out-of-memory condition. When security mode is en...

Feb 3, 2026
CVE-2025-63656
7.5

An out-of-bounds read vulnerability in Monkey web server's HTTP parser allows attackers to cause denial of service by sending crafted HTTP requests. T...

Jan 29, 2026
CVE-2025-63657
7.5

An out-of-bounds read vulnerability in Monkey web server's mk_mimetype_find function allows attackers to cause denial of service by sending specially ...

Jan 29, 2026
CVE-2025-63649
7.5

This vulnerability allows attackers to cause a Denial of Service (DoS) by sending a specially crafted POST request to the Monkey web server. The out-o...

Jan 29, 2026
CVE-2025-63650
7.5

An out-of-bounds read vulnerability in Monkey web server's memory handling allows attackers to cause denial of service by sending crafted HTTP request...

Jan 29, 2026
CVE-2025-63653
7.5

An out-of-bounds read vulnerability in Monkey web server's mk_vhost_fdt_close function allows attackers to cause denial of service by sending crafted ...

Jan 29, 2026
CVE-2025-70308
7.5

An out-of-bounds read vulnerability in GPAC's GSF demuxer filter allows attackers to cause denial of service by processing a malicious .gsf file. This...

Jan 15, 2026
CVE-2025-14177
7.5

This CVE describes an information disclosure vulnerability in PHP's getimagesize() function where uninitialized heap memory can leak into image metada...

Dec 27, 2025
CVE-2025-65567
7.5

A denial-of-service vulnerability in the omec-project UPF's pfcpiface component allows attackers to crash the UPF process by sending specially crafted...

Dec 18, 2025
CVE-2025-65568
7.5

A denial-of-service vulnerability in the omec-project UPF's pfcpiface component allows attackers to crash the UPF by sending specially crafted PFCP Se...

Dec 18, 2025
CVE-2025-66628
7.5

ImageMagick's TIM image parser contains an integer overflow vulnerability that allows attackers to trigger out-of-bounds memory reads by providing spe...

Dec 10, 2025
CVE-2025-48592
7.5

This vulnerability allows remote attackers to read sensitive information from memory without authentication or user interaction. It affects Android de...

Dec 8, 2025
CVE-2025-66624
7.5

This vulnerability in the BACnet Protocol Stack library allows out-of-bounds memory reads when processing specially crafted BACnet network protocol da...

Dec 5, 2025
CVE-2025-11789
7.5

An out-of-bounds read vulnerability in Circutor SGE-PLC1000/SGE-PLC50 allows attackers to read memory beyond intended boundaries by providing a large ...

Dec 2, 2025
CVE-2025-13502
7.5

This vulnerability in WebKitGTK and WPE WebKit allows remote attackers to cause a denial-of-service (DoS) by crashing the UIProcess through a crafted ...

Nov 25, 2025
CVE-2025-63889
7.5

This vulnerability in ThinkPHP 5.0.24 allows attackers to read arbitrary files on the server through crafted template values. It affects any applicati...

Nov 20, 2025
CVE-2025-11211
7.5

This vulnerability allows a remote attacker to read memory outside the intended buffer in Chrome's media component by tricking users into visiting a m...

Nov 6, 2025
CVE-2025-58147
7.5

This vulnerability involves boundary checking bugs in Xen's handling of Viridian hypercalls, allowing out-of-bounds reads and writes. Attackers could ...

Oct 31, 2025

About Out-of-bounds Read (CWE-125)

The product reads data past the end, or before the beginning, of the intended buffer.

Our database tracks 1,856 CVEs classified as CWE-125, with 198 rated critical and 1,110 rated high severity. The average CVSS score for Out-of-bounds Read vulnerabilities is 7.2.

External reference: View CWE-125 on MITRE CWE →

Monitor Out-of-bounds Read Vulnerabilities

Get alerted when new Out-of-bounds Read CVEs affect your infrastructure.

Start Monitoring Free