CWE-126— Buffer Over-read
The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.— MITRE CWE catalog
544 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-126page 3 of 11
- CVE-2025-62462HIGHCVSS 7.8EG 7.82025-12-09
Buffer over-read in Windows Projected File System allows an authorized attacker to elevate privileges locally.
- CVE-2025-62461HIGHCVSS 7.8EG 7.82025-12-09
Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges locally.
- CVE-2025-60720HIGHCVSS 7.8EG 7.82025-11-11
Buffer over-read in Windows TDX.sys allows an authorized attacker to elevate privileges locally.
- CVE-2025-47368HIGHCVSS 7.8EG 7.82025-11-04
Memory corruption when dereferencing an invalid userspace address in a user buffer during MCDM IOCTL processing.
- CVE-2025-59192HIGHCVSS 7.8EG 7.82025-10-14
Buffer over-read in Storport.sys Driver allows an authorized attacker to elevate privileges locally.
- CVE-2025-59933HIGHCVSS 7.8EG 7.82025-09-29
libvips is a demand-driven, horizontally threaded image processing library. For versions 8.17.1 and below, when libvips is compiled with support for PDF input via poppler, the pdfload operation is affected by a buffer read overflow when pa…
- CVE-2025-47317HIGHCVSS 7.8EG 7.82025-09-24
Memory corruption due to global buffer overflow when a test command uses an invalid payload type.
- CVE-2025-27068HIGHCVSS 7.8EG 7.82025-08-06
Memory corruption while processing an IOCTL command with an arbitrary address.
- CVE-2025-49659HIGHCVSS 7.8EG 7.82025-07-08
Buffer over-read in Windows TDX.sys allows an authorized attacker to elevate privileges locally.
- CVE-2025-47973HIGHCVSS 7.8EG 7.82025-07-08
Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
- CVE-2025-47971HIGHCVSS 7.8EG 7.82025-07-08
Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
- CVE-2025-27055HIGHCVSS 7.8EG 7.82025-07-08
Memory corruption during the image encoding process.
- CVE-2025-21475HIGHCVSS 7.8EG 7.82025-05-06
Memory corruption while processing escape code, when DisplayId is passed with large unsigned value.
- CVE-2025-21421HIGHCVSS 7.8EG 7.82025-04-07
Memory corruption while processing escape code in API.
- CVE-2024-45561HIGHCVSS 7.8EG 7.82025-02-03
Memory corruption while handling IOCTL call from user-space to set latency level.
- CVE-2025-21271HIGHCVSS 7.8EG 7.82025-01-14
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
- CVE-2024-45548HIGHCVSS 7.8EG 7.82025-01-06
Memory corruption while processing FIPS encryption or decryption validation functionality IOCTL call.
- CVE-2024-45546HIGHCVSS 7.8EG 7.82025-01-06
Memory corruption while processing FIPS encryption or decryption IOCTL call invoked from user-space.
- CVE-2024-49088HIGHCVSS 7.8EG 7.82024-12-12
Windows Common Log File System Driver Elevation of Privilege Vulnerability
- CVE-2024-49031HIGHCVSS 7.8EG 7.82024-11-12
Microsoft Office Graphics Remote Code Execution Vulnerability
- CVE-2024-38261HIGHCVSS 7.8EG 7.82024-10-08
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
- CVE-2024-38250HIGHCVSS 7.8EG 7.82024-09-10
Windows Graphics Component Elevation of Privilege Vulnerability
- CVE-2024-38135HIGHCVSS 7.8EG 7.82024-08-13
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
- CVE-2024-38127HIGHCVSS 7.8EG 7.82024-08-13
Windows Hyper-V Elevation of Privilege Vulnerability
- CVE-2024-30079HIGHCVSS 7.8EG 7.82024-07-09
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
- CVE-2024-21465HIGHCVSS 7.8EG 7.82024-07-01
Memory corruption while processing key blob passed by the user.
- CVE-2023-33115HIGHCVSS 7.8EG 7.82024-04-01
Memory corruption while processing buffer initialization, when trusted report for certain report types are generated.
- CVE-2024-26176HIGHCVSS 7.8EG 7.82024-03-12
Windows Kernel Elevation of Privilege Vulnerability
- CVE-2023-38144HIGHCVSS 7.8EG 7.82023-09-12
Windows Common Log File System Driver Elevation of Privilege Vulnerability
- CVE-2023-36773HIGHCVSS 7.8EG 7.82023-09-12
3D Builder Remote Code Execution Vulnerability
- CVE-2023-36904HIGHCVSS 7.8EG 7.82023-08-08
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
- CVE-2023-28542HIGHCVSS 7.8EG 7.82023-07-04
Memory Corruption in WLAN HOST while fetching TX status information.
- CVE-2023-28541HIGHCVSS 7.8EG 7.82023-07-04
Memory Corruption in Data Modem while processing DMA buffer release event about CFR data.
- CVE-2023-0817HIGHCVSS 7.8EG 7.82023-02-13
Buffer Over-read in GitHub repository gpac/gpac prior to v2.3.0-DEV.
- CVE-2022-3178HIGHCVSS 7.8EG 7.82022-09-12
Buffer Over-read in GitHub repository gpac/gpac prior to 2.1.0-DEV.
- CVE-2020-35511HIGHCVSS 7.8EG 7.82022-08-23
A global buffer overflow was discovered in pngcheck function in pngcheck-2.4.0(5 patches applied) via a crafted png file.
- CVE-2022-2845HIGHCVSS 7.8EG 7.82022-08-17
Improper Validation of Specified Quantity in Input in GitHub repository vim/vim prior to 9.0.0218.
- CVE-2022-1720HIGHCVSS 7.8EG 7.82022-06-20
Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
- CVE-2022-2124HIGHCVSS 7.8EG 7.82022-06-19
Buffer Over-read in GitHub repository vim/vim prior to 8.2.
- CVE-2022-1769HIGHCVSS 7.8EG 7.82022-05-17
Buffer Over-read in GitHub repository vim/vim prior to 8.2.4974.
- CVE-2022-1629HIGHCVSS 7.8EG 7.82022-05-10
Buffer Over-read in function find_next_quote in GitHub repository vim/vim prior to 8.2.4925. This vulnerabilities are capable of crashing software, Modify Memory, and possible remote execution
- CVE-2022-1533HIGHCVSS 7.8EG 7.82022-04-29
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. This vulnerability is capable of arbitrary code execution.
- CVE-2026-24075HIGHCVSS 7.0EG 7.82026-09-17
Memory Corruption when multiple threads issue concurrent IOCTL requests to the device control handler due to improper synchronization and race conditions.
- CVE-2006-7197HIGHCVSS v2 7.8EG 7.82007-04-25
The AJP connector in Apache Tomcat 5.5.15 uses an incorrect length for chunks, which can cause a buffer over-read in the ajp_process_callback in mod_jk, which allows remote attackers to read portions of sensitive memory.
- CVE-2025-21277HIGHCVSS 7.5EG 7.72025-01-14
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
- CVE-2024-38071HIGHCVSS 7.5EG 7.72024-07-09
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
- CVE-2026-21381HIGHCVSS 7.6EG 7.62026-04-06
Transient DOS when receiving a service data frame with excessive length during device matching over a neighborhood awareness network protocol connection.
- CVE-2026-21367HIGHCVSS 7.6EG 7.62026-04-06
Transient DOS when processing nonstandard FILS Discovery Frames with out-of-range action sizes during initial scans.
- CVE-2024-12011HIGHCVSS 7.6EG 7.62025-02-13
A CWE-126 “Buffer Over-read” was discovered affecting the 130.8005 TCP/IP Gateway running firmware version 12h. The information disclosure can be triggered by leveraging a memory leak affecting the web server. A remote unauthenticated …
- CVE-2024-20290HIGHCVSS 7.5EG 7.62024-02-07
A vulnerability in the OLE2 file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an incorrect check for end-of-stri…
Map vulnerabilities like CWE-126 to your infrastructure
EchelonGraph correlates every CVE — across CWE-126 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →