CWE-126
AllowedBuffer Over-read
Abstraction: Variant · Status: Draft
The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.
978 vulnerabilities reference this CWE, most recent first.
GHSA-JXGM-6GW2-5XW5
Vulnerability from github – Published: 2026-08-04 00:34 – Updated: 2026-08-04 00:34Buffer over-read in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network.
{
"affected": [],
"aliases": [
"CVE-2026-66312"
],
"database_specific": {
"cwe_ids": [
"CWE-126"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2026-08-04T00:17:38Z",
"severity": "MODERATE"
},
"details": "Buffer over-read in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network.",
"id": "GHSA-jxgm-6gw2-5xw5",
"modified": "2026-08-04T00:34:54Z",
"published": "2026-08-04T00:34:54Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2026-66312"
},
{
"type": "WEB",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-66312"
}
],
"schema_version": "1.4.0",
"severity": [
{
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
"type": "CVSS_V3"
}
]
}
GHSA-M35F-PF48-R38Q
Vulnerability from github – Published: 2026-05-04 15:31 – Updated: 2026-05-04 18:30Buffer Over-read vulnerability in Apache HTTP Server.
This issue affects Apache HTTP Server: through 2.4.66.
Users are recommended to upgrade to version 2.4.67, which fixes the issue.
{
"affected": [],
"aliases": [
"CVE-2026-34059"
],
"database_specific": {
"cwe_ids": [
"CWE-126"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2026-05-04T13:16:00Z",
"severity": "HIGH"
},
"details": "Buffer Over-read vulnerability in Apache HTTP Server.\n\nThis issue affects Apache HTTP Server: through 2.4.66.\n\nUsers are recommended to upgrade to version 2.4.67, which fixes the issue.",
"id": "GHSA-m35f-pf48-r38q",
"modified": "2026-05-04T18:30:28Z",
"published": "2026-05-04T15:31:14Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2026-34059"
},
{
"type": "WEB",
"url": "https://httpd.apache.org/security/vulnerabilities_24.html"
},
{
"type": "WEB",
"url": "http://www.openwall.com/lists/oss-security/2026/05/04/17"
}
],
"schema_version": "1.4.0",
"severity": [
{
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
"type": "CVSS_V3"
}
]
}
GHSA-M57G-7H85-RCHP
Vulnerability from github – Published: 2024-12-02 12:38 – Updated: 2024-12-02 12:38Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware.
{
"affected": [],
"aliases": [
"CVE-2024-33037"
],
"database_specific": {
"cwe_ids": [
"CWE-126"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-12-02T11:15:07Z",
"severity": "MODERATE"
},
"details": "Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware.",
"id": "GHSA-m57g-7h85-rchp",
"modified": "2024-12-02T12:38:27Z",
"published": "2024-12-02T12:38:27Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-33037"
},
{
"type": "WEB",
"url": "https://docs.qualcomm.com/product/publicresources/securitybulletin/december-2024-bulletin.html"
}
],
"schema_version": "1.4.0",
"severity": [
{
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L",
"type": "CVSS_V3"
}
]
}
GHSA-M57V-FHQQ-H74X
Vulnerability from github – Published: 2023-10-03 06:30 – Updated: 2024-04-04 08:02Information Disclosure in data Modem while parsing an FMTP line in an SDP message.
{
"affected": [],
"aliases": [
"CVE-2023-24849"
],
"database_specific": {
"cwe_ids": [
"CWE-126"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-10-03T06:15:23Z",
"severity": "HIGH"
},
"details": "Information Disclosure in data Modem while parsing an FMTP line in an SDP message.",
"id": "GHSA-m57v-fhqq-h74x",
"modified": "2024-04-04T08:02:44Z",
"published": "2023-10-03T06:30:26Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-24849"
},
{
"type": "WEB",
"url": "https://www.qualcomm.com/company/product-security/bulletins/october-2023-bulletin"
}
],
"schema_version": "1.4.0",
"severity": [
{
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:L",
"type": "CVSS_V3"
}
]
}
GHSA-M5GQ-92JX-FXCV
Vulnerability from github – Published: 2026-07-14 18:32 – Updated: 2026-07-14 18:32Buffer over-read in Windows Hyper-V allows an authorized attacker to deny service over an adjacent network.
{
"affected": [],
"aliases": [
"CVE-2026-50485"
],
"database_specific": {
"cwe_ids": [
"CWE-126"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2026-07-14T18:17:54Z",
"severity": "MODERATE"
},
"details": "Buffer over-read in Windows Hyper-V allows an authorized attacker to deny service over an adjacent network.",
"id": "GHSA-m5gq-92jx-fxcv",
"modified": "2026-07-14T18:32:27Z",
"published": "2026-07-14T18:32:27Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2026-50485"
},
{
"type": "WEB",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50485"
}
],
"schema_version": "1.4.0",
"severity": [
{
"score": "CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H",
"type": "CVSS_V3"
}
]
}
GHSA-M5XF-4VHF-X33M
Vulnerability from github – Published: 2025-12-09 18:30 – Updated: 2025-12-09 18:30Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges locally.
{
"affected": [],
"aliases": [
"CVE-2025-62461"
],
"database_specific": {
"cwe_ids": [
"CWE-126"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2025-12-09T18:15:57Z",
"severity": "HIGH"
},
"details": "Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges locally.",
"id": "GHSA-m5xf-4vhf-x33m",
"modified": "2025-12-09T18:30:46Z",
"published": "2025-12-09T18:30:46Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-62461"
},
{
"type": "WEB",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-62461"
}
],
"schema_version": "1.4.0",
"severity": [
{
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
"type": "CVSS_V3"
}
]
}
GHSA-M6MR-P6RR-QVH3
Vulnerability from github – Published: 2026-04-06 18:33 – Updated: 2026-04-06 18:33Cryptographic issue while copying data to a destination buffer without validating its size.
{
"affected": [],
"aliases": [
"CVE-2025-47400"
],
"database_specific": {
"cwe_ids": [
"CWE-126"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2026-04-06T16:16:28Z",
"severity": "HIGH"
},
"details": "Cryptographic issue while copying data to a destination buffer without validating its size.",
"id": "GHSA-m6mr-p6rr-qvh3",
"modified": "2026-04-06T18:33:05Z",
"published": "2026-04-06T18:33:05Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-47400"
},
{
"type": "WEB",
"url": "https://docs.qualcomm.com/product/publicresources/securitybulletin/april-2026-bulletin.html"
}
],
"schema_version": "1.4.0",
"severity": [
{
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N",
"type": "CVSS_V3"
}
]
}
GHSA-M76J-8HW5-PQGJ
Vulnerability from github – Published: 2025-10-24 18:31 – Updated: 2025-10-24 21:31PerfreeBlog v4.0.11 has an arbitrary file read vulnerability in the validThemeFilePath function
{
"affected": [],
"aliases": [
"CVE-2025-60729"
],
"database_specific": {
"cwe_ids": [
"CWE-126"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2025-10-24T18:15:40Z",
"severity": "MODERATE"
},
"details": "PerfreeBlog v4.0.11 has an arbitrary file read vulnerability in the validThemeFilePath function",
"id": "GHSA-m76j-8hw5-pqgj",
"modified": "2025-10-24T21:31:11Z",
"published": "2025-10-24T18:31:02Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-60729"
},
{
"type": "WEB",
"url": "https://github.com/dengxmenglihua/cve/blob/main/PerfreeBlog/File%20Read/Arbitrary%20File%20Read%20Vulnerability%20in%20PerfreeBlog%20System.md"
},
{
"type": "WEB",
"url": "https://perfree.org.cn"
},
{
"type": "WEB",
"url": "http://perfreeblog.com"
}
],
"schema_version": "1.4.0",
"severity": [
{
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N",
"type": "CVSS_V3"
}
]
}
GHSA-M786-8G3Q-V594
Vulnerability from github – Published: 2026-08-20 00:35 – Updated: 2026-08-20 00:35Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
{
"affected": [],
"aliases": [
"CVE-2026-76885"
],
"database_specific": {
"cwe_ids": [
"CWE-126"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2026-08-19T23:16:19Z",
"severity": "LOW"
},
"details": "Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service",
"id": "GHSA-m786-8g3q-v594",
"modified": "2026-08-20T00:35:09Z",
"published": "2026-08-20T00:35:09Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2026-76885"
},
{
"type": "WEB",
"url": "https://gitlab.com/wireshark/wireshark/-/work_items/21414"
},
{
"type": "WEB",
"url": "https://www.wireshark.org/security/wnpa-sec-2026-71.html"
}
],
"schema_version": "1.4.0",
"severity": [
{
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L",
"type": "CVSS_V3"
}
]
}
GHSA-M7RP-473C-296X
Vulnerability from github – Published: 2026-06-30 15:30 – Updated: 2026-10-06 03:31A flaw was found in GLib. An off-by-one error can occur in the gvs_tuple_is_normal function in the glib/gvariant-serialiser.c file when doing an alignment padding check because the bounds check uses > instead of >=, causing an out-of-bounds read of only 1 byte. This issue can cause a minor information disclosure of 1 byte and a denial of service when the out-of-bounds read crosses a page boundary.
{
"affected": [],
"aliases": [
"CVE-2026-58010"
],
"database_specific": {
"cwe_ids": [
"CWE-126"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2026-06-30T13:19:17Z",
"severity": "MODERATE"
},
"details": "A flaw was found in GLib. An off-by-one error can occur in the gvs_tuple_is_normal function in the glib/gvariant-serialiser.c file when doing an alignment padding check because the bounds check uses \u003e instead of \u003e=, causing an out-of-bounds read of only 1 byte. This issue can cause a minor information disclosure of 1 byte and a denial of service when the out-of-bounds read crosses a page boundary.",
"id": "GHSA-m7rp-473c-296x",
"modified": "2026-10-06T03:31:13Z",
"published": "2026-06-30T15:30:44Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2026-58010"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:49512"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:73961"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:73962"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74458"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74459"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74460"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74461"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74462"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74463"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74674"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74677"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74678"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74679"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74681"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74683"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74685"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74687"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74688"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:74771"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:75652"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:75654"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:75655"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:75657"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:75658"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:75659"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:75660"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:76042"
},
{
"type": "WEB",
"url": "https://access.redhat.com/security/cve/CVE-2026-58010"
},
{
"type": "WEB",
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=2492243"
},
{
"type": "WEB",
"url": "https://gitlab.gnome.org/GNOME/glib/-/issues/3915"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:55440"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:57015"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:58981"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:61766"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:61783"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:63135"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:63138"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:63140"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:65762"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:65763"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:65767"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:65768"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:65769"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:65770"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:65771"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:65773"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:66018"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:72394"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:72395"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:72399"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:72470"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:72475"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:72476"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:72502"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:73859"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:73909"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:73929"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:73930"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:73959"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2026:73960"
}
],
"schema_version": "1.4.0",
"severity": [
{
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L",
"type": "CVSS_V3"
}
]
}
No mitigation information available for this CWE.
No CAPEC attack patterns related to this CWE.