CWE-125: Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.

1,715
Total CVEs
150
Critical
1,017
High
7.1
Avg CVSS
2
In CISA KEV

Yearly Trend

2026
97
2025
598
2024
514
2023
198
2022
109

Top Affected Vendors

1 Linux 297
2 Adobe 159
3 Google 149
4 Microsoft 113
5 Apple 87
6 Debian 82
7 Siemens 62
8 Pdf Xchange 58
9 Samsung 51
10 Fedoraproject 38

All Out-of-bounds Read CVEs (1,715)

CVE-2023-50806
8.4

This vulnerability allows out-of-bounds heap buffer access in the SIM Proactive Command handler of affected Samsung processors and modems. Attackers c...

Jul 9, 2024
CVE-2024-28578
8.4

A buffer overflow vulnerability in FreeImage v3.19.0 allows local attackers to execute arbitrary code by exploiting the Load() function when processin...

Mar 20, 2024
CVE-2024-25988
8.4

This vulnerability allows remote attackers to read memory beyond intended boundaries in Android's SAEMM component, potentially exposing sensitive info...

Mar 11, 2024
CVE-2023-42537
8.4

This vulnerability in libsaped allows local attackers to trigger out-of-bounds read and write operations through improper input validation in the get_...

Nov 7, 2023
CVE-2021-30336
8.4

This vulnerability allows attackers to read memory outside the intended buffer bounds when processing APK close session requests in Qualcomm Snapdrago...

Jan 3, 2022
CVE-2021-1985
8.4

This vulnerability is a buffer over-read in Qualcomm's QVR Service configuration affecting multiple Snapdragon platforms. It allows attackers to read ...

Oct 20, 2021
CVE-2021-30257
8.4

This vulnerability allows attackers to read or write memory outside intended bounds in VR service due to insufficient validation of DSP selection valu...

Oct 20, 2021
CVE-2024-41125
8.3

CVE-2024-41125 is an out-of-bounds read vulnerability in Contiki-NG's SNMP module that could allow attackers to read one byte of memory beyond an allo...

Nov 27, 2024
CVE-2025-70298
8.2

CVE-2025-70298 is an out-of-bounds read vulnerability in GPAC's OGG demuxer that could allow attackers to read sensitive memory contents or cause appl...

Jan 15, 2026
CVE-2025-1675
8.2

CVE-2025-1675 is an out-of-bounds read vulnerability in the dns_copy_qname function of Zephyr RTOS's DNS implementation. This allows attackers to read...

Feb 25, 2025
CVE-2025-1674
8.2

CVE-2025-1674 is an out-of-bounds read vulnerability in Zephyr RTOS caused by insufficient input validation of network packets. Attackers can exploit ...

Feb 25, 2025
CVE-2025-1673
8.2

CVE-2025-1673 is an out-of-bounds read vulnerability in Zephyr RTOS DNS handling that allows a malicious DNS packet without payload to cause denial of...

Feb 25, 2025
CVE-2024-39720
8.2

This vulnerability allows attackers to crash Ollama servers by uploading a specially crafted GGUF file and triggering a segmentation fault through the...

Oct 31, 2024
CVE-2024-6606
8.2

This vulnerability in Firefox and Thunderbird involves improper bounds checking in clipboard code, allowing an out-of-bounds read. Attackers could exp...

Jul 9, 2024
CVE-2024-36243
8.2

This vulnerability in OpenHarmony allows remote attackers to execute arbitrary code in pre-installed applications through out-of-bounds memory operati...

Jul 2, 2024
CVE-2024-34974
8.2

A buffer overflow vulnerability in Tenda AC18 routers allows attackers to execute arbitrary code by sending specially crafted requests to the formSetP...

May 14, 2024
CVE-2022-34889
8.2

This vulnerability in Parallels Desktop allows local attackers with high-privileged code execution on a guest VM to escalate privileges to hypervisor ...

Jul 18, 2022
CVE-2021-35083
8.2

This vulnerability allows attackers to read memory beyond intended boundaries due to improper certificate chain validation in Qualcomm Snapdragon chip...

Jun 14, 2022
CVE-2021-35088
8.2

This vulnerability allows attackers to read memory beyond intended boundaries during Wi-Fi SSID information element parsing when using DFS channels on...

Apr 1, 2022
CVE-2021-43845
8.2

CVE-2021-43845 is an out-of-bounds read vulnerability in PJSIP multimedia communication library versions 2.11.1 and earlier. A malicious actor can sen...

Dec 27, 2021
CVE-2021-32468
8.2

This vulnerability in MediaTek Wi-Fi chips allows attackers to perform out-of-bounds reads via the WPS protocol, potentially leading to information di...

Dec 26, 2021
CVE-2021-37565
8.2

This vulnerability in MediaTek Wi-Fi chipsets allows attackers to perform out-of-bounds reads via IEEE 1905 protocol handling. It affects NETGEAR and ...

Dec 26, 2021
CVE-2021-37567
8.2

This vulnerability in MediaTek wireless chipsets allows attackers to perform out-of-bounds reads via mishandled IEEE 1905 protocol packets. It affects...

Dec 26, 2021
CVE-2021-21410
8.2

CVE-2021-21410 is an out-of-bounds read vulnerability in Contiki-NG's 6LoWPAN packet processing that allows attackers to read beyond allocated memory ...

Jun 18, 2021
CVE-2020-11251
8.2

CVE-2020-11251 is an out-of-bounds read vulnerability in Qualcomm Snapdragon chipsets that allows attackers to read memory beyond allocated buffers wh...

Apr 7, 2021
CVE-2026-26264
8.1

A length underflow vulnerability in the BACnet Stack library allows attackers to cause denial-of-service through malformed WriteProperty requests. Thi...

Feb 13, 2026
CVE-2025-15382
8.1

This heap buffer over-read vulnerability in wolfSSH's wolfSSH_CleanPath() function allows authenticated remote attackers to read one byte beyond alloc...

Jan 6, 2026
CVE-2025-14549
8.1

This vulnerability in Eclipse OMR's compiler component causes incorrect handling of NUL characters during charset translation on Z processors, leading...

Dec 15, 2025
CVE-2025-48530
8.1

CVE-2025-48530 is an out-of-bounds memory access vulnerability in Android that could allow remote code execution without user interaction. Attackers c...

Sep 4, 2025
CVE-2025-42976
8.1

CVE-2025-42976 is a memory corruption vulnerability in SAP NetWeaver Application Server ABAP's BIC Document component that allows authenticated attack...

Aug 12, 2025
CVE-2025-47219
8.1

This vulnerability in GStreamer's isomp4 plugin allows heap buffer over-read when parsing malicious MP4 files, potentially exposing sensitive memory c...

Aug 7, 2025
CVE-2025-5318
8.1

This vulnerability in libssh allows an authenticated remote attacker to trigger an out-of-bounds read in the sftp_handle function, potentially exposin...

Jun 24, 2025
CVE-2025-1932
8.1

A memory corruption vulnerability in Firefox and Thunderbird's XSLT processor could allow attackers to execute arbitrary code or cause denial of servi...

Mar 4, 2025
CVE-2024-41311
8.1

CVE-2024-41311 is an out-of-bounds read/write vulnerability in Libheif's ImageOverlay::parse() function when processing malicious HEIF files with forg...

Oct 15, 2024
CVE-2024-41721
8.1

This CVE describes a heap out-of-bounds read vulnerability in USB code that could lead to arbitrary write and remote code execution. It affects FreeBS...

Sep 20, 2024
CVE-2024-38240
8.1

This vulnerability allows an authenticated attacker to elevate privileges on Windows systems by exploiting a flaw in the Remote Access Connection Mana...

Sep 10, 2024
CVE-2023-52727
8.1

CVE-2023-52727 is an out-of-bounds read vulnerability in the parseAlignBits function of ONOS onos-lib-go library. This allows attackers to read sensit...

Apr 30, 2024
CVE-2023-48025
8.1

CVE-2023-48025 is an out-of-bounds read vulnerability in Liblisp's get_length function that could allow attackers to read sensitive memory contents. T...

Nov 17, 2023
CVE-2023-4427
8.1

This vulnerability allows a remote attacker to perform out-of-bounds memory reads in Chrome's V8 JavaScript engine by tricking users into visiting a m...

Aug 23, 2023
CVE-2023-4431
8.1

This vulnerability allows a remote attacker to read memory outside the intended bounds in Google Chrome's font processing component. Attackers can exp...

Aug 23, 2023
CVE-2023-32443
8.1

This vulnerability allows attackers to read memory outside the intended buffer when processing malicious files on macOS systems. It affects macOS Mont...

Jul 27, 2023
CVE-2023-33536
8.1

This vulnerability allows remote attackers to execute arbitrary code on affected TP-Link routers via a buffer overflow in the WLAN MAC filter manageme...

Jun 7, 2023
CVE-2022-34299
8.1

CVE-2022-34299 is a heap-based buffer over-read vulnerability in libdwarf 0.4.0's dwarf_global_formref_b function. This allows attackers to read sensi...

Jun 23, 2022
CVE-2022-0114
8.1

This vulnerability allows a remote attacker to perform out-of-bounds memory reads in Google Chrome's Blink Serial API. Attackers can exploit this via ...

Feb 12, 2022
CVE-2022-21728
8.1

This vulnerability in TensorFlow's ReverseSequence operation allows heap out-of-bounds reads when processing negative batch_dim values. Attackers coul...

Feb 3, 2022
CVE-2022-21726
8.1

This vulnerability in TensorFlow's Dequantize operation allows attackers to read past the end of memory arrays by providing invalid axis values, poten...

Feb 3, 2022
CVE-2020-18771
8.1

This vulnerability in Exiv2 image metadata library allows attackers to read beyond allocated memory boundaries when processing specially crafted Nikon...

Aug 23, 2021
CVE-2021-20024
8.1

CVE-2021-20024 is an out-of-bounds read vulnerability in SonicWall Switch LLDP protocol handling that allows attackers to cause system instability or ...

Jul 9, 2021
CVE-2021-29968
8.1

This vulnerability allows an attacker to read memory outside the bounds of a canvas buffer when Firefox renders text with WebRender disabled, potentia...

Jun 24, 2021
CVE-2020-16041
8.1

This vulnerability is an out-of-bounds read in Google Chrome's networking component that allows a remote attacker who has already compromised the rend...

Jan 8, 2021

About Out-of-bounds Read (CWE-125)

The product reads data past the end, or before the beginning, of the intended buffer.

Our database tracks 1,715 CVEs classified as CWE-125, with 150 rated critical and 1,017 rated high severity. The average CVSS score for Out-of-bounds Read vulnerabilities is 7.1.

External reference: View CWE-125 on MITRE CWE →

Monitor Out-of-bounds Read Vulnerabilities

Get alerted when new Out-of-bounds Read CVEs affect your infrastructure.

Start Monitoring Free