CWE-125: Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.

1,950
Total CVEs
214
Critical
1,182
High
7.2
Avg CVSS
2
In CISA KEV

Yearly Trend

2026
109
2025
598
2024
514
2023
198
2022
109

Top Affected Vendors

1 Linux 303
2 Adobe 181
3 Google 169
4 Apple 126
5 Microsoft 113
6 Debian 113
7 Fedoraproject 67
8 Siemens 64
9 Pdf Xchange 58
10 Samsung 51

All Out-of-bounds Read CVEs (1,950)

CVE-2020-16855
5.5

This CVE describes an information disclosure vulnerability in Microsoft Office where uninitialized memory could be read when opening specially crafted...

Sep 11, 2020
CVE-2019-1153
5.5

This CVE-2019-1153 is an information disclosure vulnerability in Microsoft Windows Graphics Component that allows an attacker to read memory contents ...

Aug 14, 2019
CVE-2019-1148
5.5

CVE-2019-1148 is an information disclosure vulnerability in Microsoft Windows Graphics Component that allows authenticated attackers to read memory co...

Aug 14, 2019
CVE-2026-23568
5.4

An out-of-bounds read vulnerability in TeamViewer DEX Client's Content Distribution Service (NomadBranch.exe) allows adjacent network attackers to rea...

Jan 29, 2026
CVE-2025-53065
5.4

This vulnerability in Oracle PeopleSoft Enterprise PeopleTools allows unauthenticated attackers with network access via HTTP to compromise the system....

Oct 21, 2025
CVE-2025-53063
5.4

This vulnerability in Oracle PeopleSoft Enterprise PeopleTools allows authenticated attackers with low privileges to perform unauthorized data manipul...

Oct 21, 2025
CVE-2025-53048
5.4

This vulnerability in Oracle PeopleSoft Enterprise PeopleTools allows authenticated attackers with low privileges to manipulate data via the Rich Text...

Oct 21, 2025
CVE-2025-54647
5.4

An out-of-bounds read vulnerability in the SSAP module of the NearLink protocol stack could allow attackers to cause denial of service conditions. Thi...

Aug 6, 2025
CVE-2025-54648
5.4

An out-of-bounds read vulnerability in the SSAP module of the NearLink protocol stack could allow attackers to cause denial of service conditions. Thi...

Aug 6, 2025
CVE-2025-54609
5.4

This CVE describes an out-of-bounds access vulnerability in an audio codec module that could allow attackers to cause denial of service conditions. Th...

Aug 6, 2025
CVE-2026-25987
5.3

ImageMagick contains a heap buffer over-read vulnerability in its MAP image decoder that could allow attackers to cause crashes or leak memory by proc...

Feb 24, 2026
CVE-2026-2443
5.3

A memory disclosure vulnerability in libsoup's HTTP Range header processing allows remote attackers to read portions of server memory beyond intended ...

Feb 13, 2026
CVE-2025-41728
5.3

A low-privileged remote attacker can exploit an out-of-bounds read vulnerability in the Device Manager web service to leak memory contents from a priv...

Jan 27, 2026
CVE-2025-37179
5.3

Multiple out-of-bounds read vulnerabilities in a system component that handles data buffers. Insufficient validation of buffer size values allows read...

Jan 13, 2026
CVE-2025-37178
5.3

This CVE describes multiple out-of-bounds read vulnerabilities in a system component that handles data buffers. Insufficient validation of buffer size...

Jan 13, 2026
CVE-2026-20973
5.3

An out-of-bounds read vulnerability in libimagecodec.quram.so allows remote attackers to access memory beyond allocated boundaries. This affects Samsu...

Jan 9, 2026
CVE-2025-66496
5.3

A memory corruption vulnerability in Foxit PDF Reader's 3D annotation handling allows attackers to cause out-of-bounds memory access via specially cra...

Dec 19, 2025
CVE-2025-66497
5.3

A memory corruption vulnerability in Foxit PDF Reader allows attackers to execute arbitrary code by tricking users into opening malicious PDF files co...

Dec 19, 2025
CVE-2025-66498
5.3

A memory corruption vulnerability in Foxit PDF Reader's 3D annotation handling allows attackers to execute arbitrary code or cause denial of service b...

Dec 19, 2025
CVE-2025-47914
5.3

This vulnerability in SSH Agent servers allows attackers to cause a denial of service by sending specially crafted identity requests that trigger an o...

Nov 19, 2025
CVE-2025-55082
5.3

This vulnerability in NetX Duo's TLS implementation allows attackers to cause an out-of-bounds read by providing malformed PSK length in ClientHello m...

Oct 15, 2025
CVE-2025-6632
5.3

CVE-2025-6632 is an out-of-bounds read vulnerability in Autodesk 3ds Max that allows malicious PSD files to cause crashes, leak sensitive data, or pot...

Aug 6, 2025
CVE-2025-20234
5.3

A memory overread vulnerability in ClamAV's Universal Disk Format (UDF) processing allows unauthenticated remote attackers to cause denial of service ...

Jun 18, 2025
CVE-2025-23406
5.3

An out-of-bounds read vulnerability in Cente middleware TCP/IP Network Series allows attackers to crash affected systems by sending specially crafted ...

Feb 14, 2025
CVE-2024-24911
5.3

This vulnerability causes the cpca process on Check Point Security Management/Domain Management Servers to crash unexpectedly in rare scenarios, creat...

Feb 6, 2025
CVE-2025-20891
5.3

This vulnerability allows local attackers to read arbitrary memory by exploiting an out-of-bounds read in the libsthmbc.so library when processing mal...

Feb 4, 2025
CVE-2025-20887
5.3

This vulnerability allows local attackers to read arbitrary memory through an out-of-bounds read in the svp8t table handling of libsthmbc.so library. ...

Feb 4, 2025
CVE-2024-54518
5.3

This CVE describes an out-of-bounds memory access vulnerability in Apple's coprocessor handling that could allow a malicious app to corrupt coprocesso...

Jan 27, 2025
CVE-2025-0518
5.3

This CVE describes an unchecked return value and out-of-bounds read vulnerability in FFmpeg's pan audio filter that could allow reading sensitive cons...

Jan 16, 2025
CVE-2024-51471
5.3

This vulnerability in IBM MQ Appliance web console allows authenticated users to cause denial-of-service when trace functionality is enabled. It occur...

Dec 19, 2024
CVE-2024-54937
5.3

A directory listing vulnerability in Kashipara E-Learning Management System v1.0 allows remote attackers to browse sensitive files and directories via...

Dec 9, 2024
CVE-2024-51210
5.3

Firepad versions through 1.5.11 allow unauthorized access to document content and edit history when an attacker knows the pad ID. This affects users o...

Dec 4, 2024
CVE-2024-31198
5.3

An out-of-bounds read vulnerability in libfluid's libfluid_msg module allows attackers to read memory beyond intended boundaries when processing OpenF...

Sep 18, 2024
CVE-2024-42477
5.3

CVE-2024-42477 is a global buffer overflow vulnerability in llama.cpp's rpc_tensor structure that can lead to memory data leakage. This affects users ...

Aug 12, 2024
CVE-2024-21143
5.3

This vulnerability allows unauthenticated attackers with network access via HTTP to read sensitive data from Oracle iStore, part of Oracle E-Business ...

Jul 16, 2024
CVE-2024-5560
5.3

This CVE describes an out-of-bounds read vulnerability in Schneider Electric devices that allows attackers to cause denial of service of the web inter...

Jun 12, 2024
CVE-2024-36124
5.3

CVE-2024-36124 is an out-of-bounds read vulnerability in the iq80 Snappy compression library that occurs during decompression of certain data. This ca...

Jun 3, 2024
CVE-2023-43694
5.2

An out-of-bounds read vulnerability in Malwarebytes disassembling utilities can cause application crashes and denial of service. This affects Malwareb...

Aug 14, 2025
CVE-2023-20509
5.2

This vulnerability allows a privileged attacker to perform unauthorized DMA reads from invalid DRAM addresses to SRAM on AMD systems with affected PMF...

Aug 13, 2024
CVE-2024-56185
5.1

This CVE describes an out-of-bounds read vulnerability in Android's baseband firmware that could allow local information disclosure. Attackers could p...

Mar 10, 2025
CVE-2025-24097
5.0

A permissions vulnerability in Apple operating systems allows applications to read arbitrary file metadata without proper authorization. This affects ...

Mar 31, 2025
CVE-2025-54166
4.9

An out-of-bounds read vulnerability in QNAP operating systems allows remote attackers with administrator credentials to read sensitive memory data. Th...

Jan 2, 2026
CVE-2025-54164
4.9

An out-of-bounds read vulnerability in QNAP operating systems allows remote attackers with administrator credentials to read sensitive memory data. Th...

Jan 2, 2026
CVE-2025-54165
4.9

An out-of-bounds read vulnerability in QNAP operating systems allows remote attackers with administrator credentials to read sensitive memory contents...

Jan 2, 2026
CVE-2024-45829
4.9

Sharp and Toshiba Tec multifunction printers (MFPs) have a web interface vulnerability where specially crafted HTTP requests can trigger an out-of-bou...

Oct 25, 2024
CVE-2024-20102
4.9

This vulnerability in MediaTek wlan drivers allows remote attackers to read memory beyond intended boundaries due to improper input validation. It cou...

Oct 7, 2024
CVE-2024-0116
4.9

NVIDIA Triton Inference Server has an out-of-bounds read vulnerability where users can release shared memory regions while they're in use. This could ...

Oct 1, 2024
CVE-2026-24921
4.8

This CVE describes an address read vulnerability (out-of-bounds read) in the HDC module that could allow attackers to read sensitive memory contents. ...

Feb 6, 2026
CVE-2025-51602
4.8

This vulnerability in VLC media player allows an out-of-bounds read and denial of service when processing a specially crafted MMS server response. Att...

Jan 16, 2026
CVE-2025-4087
4.8

This vulnerability in Thunderbird and Firefox allows attackers to trigger undefined behavior through XPath parsing, potentially leading to out-of-boun...

Apr 29, 2025

About Out-of-bounds Read (CWE-125)

The product reads data past the end, or before the beginning, of the intended buffer.

Our database tracks 1,950 CVEs classified as CWE-125, with 214 rated critical and 1,182 rated high severity. The average CVSS score for Out-of-bounds Read vulnerabilities is 7.2.

External reference: View CWE-125 on MITRE CWE →

Monitor Out-of-bounds Read Vulnerabilities

Get alerted when new Out-of-bounds Read CVEs affect your infrastructure.

Start Monitoring Free