CWE-127 · 8 records
Buffer Under-read
CVEs in this class
8 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2025-20359No exploit | Multiple Cisco Products Snort 3 MIME Information Disclosure or Denial of Service Vulnerabilitycisco · snort · CWE-127 | Critical9.1 | — | 0.5% | Oct 15, 2025 |
31Monitor | CVE-2020-5360No exploit | Dell BSAFE Micro Edition Suite, versions prior to 4.5, are vulnerable to a Buffer Under-Read Vulnerability.dell · bsafe micro-edition-suite · CWE-127 | High7.5 | — | 2.2% | Dec 16, 2020 |
30Monitor | CVE-2020-1918No exploit | In-memory file operations (ie: using fopen on a data URI) did not properly restrict negative seeking, allowing for the reading of memory prifacebook · hhvm · CWE-127 | High7.5 | — | 1.2% | Mar 10, 2021 |
30Monitor | CVE-2026-5928No exploit | Potential buffer under-read in ungetwcgnu · glibc · CWE-127 | High7.5 | — | 0.5% | Apr 20, 2026 |
30Monitor | CVE-2024-10395No exploit | net: lib: http_server: Buffer Under-readzephyrproject · zephyr · CWE-127 | High7.5 | — | 0.3% | Feb 3, 2025 |
23Monitor | CVE-2025-32050No exploit | Libsoup: integer overflow in append_param_quotedred hat · red hat enterprise linux 8 · CWE-127 | Medium5.9 | — | 0.8% | Apr 3, 2025 |
22Monitor | CVE-2024-25629No exploit | c-ares out of bounds read in ares__read_line()c-ares · c-ares · CWE-127 | Medium5.5 | — | 0.4% | Feb 23, 2024 |
15Monitor | CVE-2026-45683No exploit | OpenTelemetry eBPF Instrumentation: Java TLS ioctl kprobe allows kernel memory disclosureopentelemetry · ebpf instrumentation · CWE-127 | Low3.8 | — | 0.2% | Jun 2, 2026 |
- CVE-2025-2035936Monitor
Multiple Cisco Products Snort 3 MIME Information Disclosure or Denial of Service Vulnerability
CriticalCVSS 9.1No exploitEPSS 0%cisco · snortOct 15, 2025
- CVE-2020-536031Monitor
Dell BSAFE Micro Edition Suite, versions prior to 4.5, are vulnerable to a Buffer Under-Read Vulnerability.
HighCVSS 7.5No exploitEPSS 2%dell · bsafe micro-edition-suiteDec 16, 2020
- CVE-2020-191830Monitor
In-memory file operations (ie: using fopen on a data URI) did not properly restrict negative seeking, allowing for the reading of memory pri
HighCVSS 7.5No exploitEPSS 1%facebook · hhvmMar 10, 2021
- CVE-2026-592830Monitor
Potential buffer under-read in ungetwc
HighCVSS 7.5No exploitEPSS 0%gnu · glibcApr 20, 2026
- CVE-2024-1039530Monitor
net: lib: http_server: Buffer Under-read
HighCVSS 7.5No exploitEPSS 0%zephyrproject · zephyrFeb 3, 2025
- CVE-2025-3205023Monitor
Libsoup: integer overflow in append_param_quoted
MediumCVSS 5.9No exploitEPSS 1%red hat · red hat enterprise linux 8Apr 3, 2025
- CVE-2024-2562922Monitor
c-ares out of bounds read in ares__read_line()
MediumCVSS 5.5No exploitEPSS 0%c-ares · c-aresFeb 23, 2024
- CVE-2026-4568315Monitor
OpenTelemetry eBPF Instrumentation: Java TLS ioctl kprobe allows kernel memory disclosure
LowCVSS 3.8No exploitEPSS 0%opentelemetry · ebpf instrumentationJun 2, 2026