Contiki-NG is an open-source, cross-platform operating system for IoT devices. Because of insufficient validation of IPv
Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. The 6LoWPAN implementatio
Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. The low-power IPv6 networ
An out-of-bounds read issue was addressed with improved bounds checking. This issue is fixed in Security Update 2022-005
FreeRDP is a free remote desktop protocol library and clients. All FreeRDP based clients when using the `/video` command
Wasmtime is a standalone runtime for WebAssembly. Prior to version 2.0.2, there is a bug in Wasmtime's implementation of
An information disclosure vulnerability exists in the DPXOutput::close() functionality of OpenImageIO Project OpenImageI
An information disclosure vulnerability exists in the IFFOutput channel interleaving functionality of OpenImageIO Projec
A missing input validation before memory copy in TIMA trustlet prior to SMR Jan-2022 Release 1 allows attackers to copy
LibTIFF 4.3.0 has an out-of-bounds read in _TIFFmemcpy in tif_unix.c in certain situations involving a custom tag and 0x
An issue has been found in libde265 v1.0.8 due to incorrect access control. A SEGV caused by a READ memory access in fun
radare2 is vulnerable to Out-of-bounds Read
Win32k Information Disclosure Vulnerability
Storage Spaces Controller Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley Contex
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley Contex
Adobe Illustrator versions 25.4.2 (and earlier) and 26.0.1 (and earlier) are affected by an out-of-bounds read vulnerabi
Out-of-bounds Read in vim/vim prior to 8.2.
A CWE-125:Out-of-Bounds Read vulnerability exists that could cause unintended data disclosure when a malicious *.gd1 con
Out-of-bounds read in some Intel(R) Core(TM) processors with Radeon(TM) RX Vega M GL integrated graphics before version
A vulnerability was found in htmldoc version 1.9.15 where the stack out-of-bounds read takes place in gif_get_code() and
Out-of-bounds read in the Intel(R) Trace Analyzer and Collector before version 2021.5 may allow an authenticated user to
Out-of-bounds read in the Intel(R) Trace Analyzer and Collector before version 2021.5 may allow an authenticated user to
In LoadedPackage::Load of LoadedArsc.cpp, there is a possible out of bounds read due to a missing bounds check. This cou
In extract of MediaMetricsItem.h, there is a possible out of bounds read due to improper input validation. This could le
In HandleTransactionIoEvent of actuator_driver.cc, there is a possible out of bounds read due to a heap buffer overflow.
In TBD of TBD, there is a possible out of bounds read due to TBD. This could lead to local information disclosure with n
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by an out-of-bounds read vulnerabi
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by an out-of-bounds read vulnerabi
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by an out-of-bounds read vulnerabi
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by an out-of-bounds read vulnerabi
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by an out-of-bounds read vulnerabi
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by an out-of-bounds read vulnerabi
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by an out-of-bounds read vulnerabi
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by an out-of-bounds read vulnerabi
Adobe Premiere Rush versions 2.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to disc
A stack-buffer-overflow was found in QEMU in the NVME component. The flaw lies in nvme_changed_nslist() where a maliciou
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley View 1
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley View 1
Frequently Asked Questions
What is CWE-125?
CWE-125 (Out-of-bounds Read) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-125?
There are 10,972 CVE records associated with CWE-125 in our database. Of these, 717 are critical severity, 3828 are high severity, and 4120 are medium severity.
How can I protect against CWE-125 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-125 using AI-powered security agents.
Detect CWE-125 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds read vulnerabilities across your infrastructure.
Get Started