In camera isp, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio
In camera isp, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio
In emi mpu, there is a possible out of bounds read due to a missing bounds check. This could lead to local information d
A missing input validation before memory read in SEM TA prior to SMR Aug-2022 Release 1 allows local attackers to read o
Out of bounds read for some Intel(R) PROSet/Wireless WiFi products may allow a privileged user to potentially enable inf
In vow, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information di
In vow, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information di
OpenRazer is an open source driver and user-space daemon to control Razer device lighting and other features on GNU/Linu
In fdt_path_offset_namelen of fdt_ro.c, there is a possible out of bounds read due to an incorrect bounds check. This co
In ufdt_get_node_by_path_len of ufdt_convert.c, there is a possible out of bounds read due to a missing bounds check. Th
In pop_descriptor_string of BufferDescriptor.h, there is a possible out of bounds read due to a missing bounds check. Th
In getWpcAuthChallengeResponse of WirelessCharger.cpp, there is a possible out of bounds read due to a missing bounds ch
In VsimOperationDataExt::encode of vsimdata.cpp, there is a possible out of bounds read due to a missing bounds check. T
In ProtocolImsBuilder::BuildSetConfig of protocolimsbuilder.cpp, there is a possible out of bounds read due to a missing
In MiscService::DoOemSetRtpPktlossThreshold of miscservice.cpp, there is a possible out of bounds read due to a missing
In ProtocolSimBuilderLegacy::BuildSimGetGbaAuth of protocolsimbuilderlegacy.cpp, there is a possible out of bounds read
In MiscService::DoOemSetTcsFci of miscservice.cpp, there is a possible out of bounds read due to a missing bounds check.
In DoSetCarrierConfig of miscservice.cpp, there is a possible out of bounds read due to an incorrect bounds check. This
In Pixel firmware, there is a possible out of bounds read due to a missing bounds check. This could lead to local inform
In Pixel firmware, there is a possible out of bounds read due to a missing bounds check. This could lead to local inform
In fdt_path_offset_namelen of fdt_ro.c, there is a possible out of bounds read due to an incorrect bounds check. This co
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an out-of-bound
Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 106.0.5249.119 allowed a remote attacke
Heap overflow vulnerability in parse_pce function in libsavsaudio.so in Editor Lite prior to version 4.0.41.3 allows att
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. Versions prior to 4.9 are
In phNxpNciHal_ioctl of phNxpNciHal.cc, there is a possible out of bounds read due to a missing bounds check. This could
Improper boundary check in Quram Agif library prior to SMR Apr-2022 Release 1 allows attackers to cause denial of servic
Improper size check in sapefd_parse_meta_HEADER_old function of libsapeextractor library prior to SMR Apr-2022 Release 1
Improper size check of in sapefd_parse_meta_DESCRIPTION function of libsapeextractor library prior to SMR Apr-2022 Relea
Improper size check in sapefd_parse_meta_HEADER function of libsapeextractor library prior to SMR Apr-2022 Release 1 all
Improper boundary check in media.extractor library prior to SMR Apr-2022 Release 1 allows attackers to cause denial of s
Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leadi
Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leadi
Improper buffer size check logic in wmfextractor library prior to SMR May-2022 Release 1 allows out of bounds read leadi
Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leadi
Out of bound read in libapexjni.media.samsung.so prior to SMR Sep-2022 Release 1 allows attacker access unauthorized inf
In versions prior to 0.8.1, the linux-loader crate uses the offsets and sizes provided in the ELF headers to determine t
GNU SASL libgsasl server-side read-out-of-bounds with malicious authenticated GSS-API client
In BIG-IP Versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and a
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted appli
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted appli
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted appli
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted appli
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted appli
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted appli
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted appli
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted appli
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted appli
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted appli
Frequently Asked Questions
What is CWE-125?
CWE-125 (Out-of-bounds Read) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-125?
There are 10,972 CVE records associated with CWE-125 in our database. Of these, 717 are critical severity, 3828 are high severity, and 4120 are medium severity.
How can I protect against CWE-125 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-125 using AI-powered security agents.
Detect CWE-125 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds read vulnerabilities across your infrastructure.
Get Started