CWE-126— Buffer Over-read
The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.— MITRE CWE catalog
544 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-126page 8 of 11
- CVE-2024-21457MEDIUMCVSS 6.5EG 6.52024-07-01
INformation disclosure while handling Multi-link IE in beacon frame.
- CVE-2024-21456MEDIUMCVSS 6.5EG 6.52024-07-01
Information Disclosure while parsing beacon frame in STA.
- CVE-2023-43537MEDIUMCVSS 6.5EG 6.52024-06-03
Information disclosure while handling T2LM Action Frame in WLAN Host.
- CVE-2023-21667MEDIUMCVSS 6.5EG 6.52023-09-05
Transient DOS in Bluetooth HOST while passing descriptor to validate the blacklisted BT keyboard.
- CVE-2023-33173MEDIUMCVSS 6.5EG 6.52023-07-11
Remote Procedure Call Runtime Denial of Service Vulnerability
- CVE-2023-33172MEDIUMCVSS 6.5EG 6.52023-07-11
Remote Procedure Call Runtime Denial of Service Vulnerability
- CVE-2023-33169MEDIUMCVSS 6.5EG 6.52023-07-11
Remote Procedure Call Runtime Denial of Service Vulnerability
- CVE-2023-33168MEDIUMCVSS 6.5EG 6.52023-07-11
Remote Procedure Call Runtime Denial of Service Vulnerability
- CVE-2023-33167MEDIUMCVSS 6.5EG 6.52023-07-11
Remote Procedure Call Runtime Denial of Service Vulnerability
- CVE-2023-33166MEDIUMCVSS 6.5EG 6.52023-07-11
Remote Procedure Call Runtime Denial of Service Vulnerability
- CVE-2023-28267MEDIUMCVSS 6.5EG 6.52023-04-11
Remote Desktop Protocol Client Information Disclosure Vulnerability
- CVE-2023-24883MEDIUMCVSS 6.5EG 6.52023-04-11
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
- CVE-2023-24870MEDIUMCVSS 6.5EG 6.52023-03-14
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
- CVE-2023-24857MEDIUMCVSS 6.5EG 6.52023-03-14
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
- CVE-2022-32141MEDIUMCVSS 6.5EG 6.52022-06-24
Multiple CODESYS Products are prone to a buffer over read. A low privileged remote attacker may craft a request with an invalid offset, which can cause an internal buffer over-read, resulting in a denial-of-service condition. User interact…
- CVE-2020-8244MEDIUMCVSS 6.5EG 6.52020-08-30
A buffer over-read vulnerability exists in bl <4.0.3, <3.0.1, <2.2.1, and <1.2.3 which could allow an attacker to supply user input (even typed) that if it ends up in consume() argument and can become negative, the BufferList state can be …
- CVE-2026-20311MEDIUMCVSS 6.3EG 6.32026-08-05
A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote attacker with low privileges to cause a denial of service (DoS) condition on an affected device. This vulnerability is d…
- CVE-2026-11787MEDIUMCVSS 6.3EG 6.32026-06-09
A flaw was found in 389 Directory Server. The ldap_utf8prev() function reads bytes before the start of a buffer without bounds checking, causing a heap buffer over-read in string filter parsing that may influence internal filter processing…
- CVE-2023-21697MEDIUMCVSS 5.5EG 6.22023-02-14
Windows Internet Storage Name Service (iSNS) Server Information Disclosure Vulnerability
- CVE-2026-26169MEDIUMCVSS 6.1EG 6.12026-04-14
Buffer over-read in Windows Kernel Memory allows an authorized attacker to disclose information locally.
- CVE-2025-47331MEDIUMCVSS 6.1EG 6.12026-01-07
Information disclosure while processing a firmware event.
- CVE-2025-47362MEDIUMCVSS 6.1EG 6.12025-11-04
Information disclosure while processing message from client with invalid payload.
- CVE-2025-27064MEDIUMCVSS 6.1EG 6.12025-11-04
Information disclosure while registering commands from clients with diag through diagHal.
- CVE-2025-27045MEDIUMCVSS 6.1EG 6.12025-10-09
Information disclosure while processing batch command execution in Video driver.
- CVE-2025-27036MEDIUMCVSS 6.1EG 6.12025-09-24
Information disclosure when Video engine escape input data is less than expected minimum size.
- CVE-2025-27033MEDIUMCVSS 6.1EG 6.12025-09-24
Information disclosure while running video usecase having rogue firmware.
- CVE-2025-27030MEDIUMCVSS 6.1EG 6.12025-09-24
information disclosure while invoking calibration data from user space to update firmware size.
- CVE-2025-21457MEDIUMCVSS 6.1EG 6.12025-08-06
Information disclosure while opening a fastrpc session when domain is not sanitized.
- CVE-2024-38417MEDIUMCVSS 6.1EG 6.12025-02-03
Information disclosure while processing IO control commands.
- CVE-2024-38416MEDIUMCVSS 6.1EG 6.12025-02-03
Information disclosure during audio playback.
- CVE-2024-38414MEDIUMCVSS 6.1EG 6.12025-02-03
Information disclosure while processing information on firmware image during core initialization.
- CVE-2024-43063MEDIUMCVSS 6.1EG 6.12025-01-06
information disclosure while invoking the mailbox read API.
- CVE-2024-33067MEDIUMCVSS 6.1EG 6.12025-01-06
Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.
- CVE-2024-33037MEDIUMCVSS 6.1EG 6.12024-12-02
Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware.
- CVE-2023-43528MEDIUMCVSS 6.1EG 6.12024-05-06
Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size.
- CVE-2023-33065MEDIUMCVSS 6.1EG 6.12024-02-06
Information disclosure in Audio while accessing AVCS services from ADSP payload.
- CVE-2023-28569MEDIUMCVSS 6.1EG 6.12023-11-07
Information disclosure in WLAN HAL while handling command through WMI interfaces.
- CVE-2023-28568MEDIUMCVSS 6.1EG 6.12023-11-07
Information disclosure in WLAN HAL when reception status handler is called.
- CVE-2023-28566MEDIUMCVSS 6.1EG 6.12023-11-07
Information disclosure in WLAN HAL while handling the WMI state info command.
- CVE-2023-28563MEDIUMCVSS 6.1EG 6.12023-11-07
Information disclosure in IOE Firmware while handling WMI command.
- CVE-2023-28554MEDIUMCVSS 6.1EG 6.12023-11-07
Information Disclosure in Qualcomm IPC while reading values from shared memory in VM.
- CVE-2023-28553MEDIUMCVSS 6.1EG 6.12023-11-07
Information Disclosure in WLAN Host when processing WMI event command.
- CVE-2023-28571MEDIUMCVSS 6.1EG 6.12023-10-03
Information disclosure in WLAN HOST while processing the WLAN scan descriptor list during roaming scan.
- CVE-2026-50383MEDIUMCVSS 5.5EG 6.12026-07-14
Buffer over-read in Windows Print Spooler Components allows an authorized attacker to disclose information locally.
- CVE-2026-50813MEDIUMCVSS 5.5EG 6.12026-07-08
An issue in SQLite before Fossil check-in 869a51ae84df allows a local attacker to obtain sensitive information via the Session Extension changeset concat/changegroup merge path
- CVE-2025-47406MEDIUMCVSS 5.5EG 6.12026-05-04
Information Disclosure while processing IOCTL handler callbacks without verifying buffer size.
- CVE-2025-4207MEDIUMCVSS 5.9EG 5.92025-05-08
Buffer over-read in PostgreSQL GB18030 encoding validation allows a database input provider to achieve temporary denial of service on platforms where a 1-byte over-read can elicit process termination. This affects the database server and …
- CVE-2023-39541MEDIUMCVSS 5.9EG 5.92024-02-20
A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted network packet can lead to an out-of-bounds read. An attacker can send a malicious packet to t…
- CVE-2023-39540MEDIUMCVSS 5.9EG 5.92024-02-20
A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted network packet can lead to an out-of-bounds read. An attacker can send a malicious packet to t…
- CVE-2022-23130MEDIUMCVSS 5.9EG 5.92022-01-21
Buffer Over-read vulnerability in Mitsubishi Electric MC Works64 versions 4.00A to 4.04E, Mitsubishi Electric GENESIS64 versions 10.97 and prior, Mitsubishi Electric Iconics Digital Solutions GENESIS64 versions 10.97 and prior, Mitsubishi …
Map vulnerabilities like CWE-126 to your infrastructure
EchelonGraph correlates every CVE — across CWE-126 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →