TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation for `tf.r
TensorFlow is an end-to-end open source platform for machine learning. In affected versions it is possible to nest a `tf
An out-of-bounds array read in the apr_time_exp*() functions was fixed in the Apache Portable Runtime 1.6.3 release (CVE
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.0.1, Securit
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.0.1, Securit
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.0.1, Securit
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.0.1, Securit
A local user may be able to cause unexpected system termination or read kernel memory. This issue is fixed in macOS Big
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP
An Out Of Bounds (OOB) access vulnerability in the handling of responses by a Juniper Agile License (JAL) Client in Juni
A component of the HarmonyOS has a Out-of-bounds Read vulnerability. Local attackers may exploit this vulnerability to c
TensorFlow is an open source platform for machine learning. In affected versions the shape inference functions for `Spar
TensorFlow is an open source platform for machine learning. In affected versions the shape inference functions for the `
TensorFlow is an open source platform for machine learning. In affected versions the shape inference code for `QuantizeV
TensorFlow is an open source platform for machine learning. In affected versions the shape inference code for `tf.ragged
TensorFlow is an open source platform for machine learning. In affected versions the implementation of `FusedBatchNorm`
TensorFlow is an open source platform for machine learning. In affected versions the implementation of `SparseFillEmptyR
TensorFlow is an open source platform for machine learning. In affected versions the implementation of `SparseBinCount`
A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital Embedded AR Classic R
OpenSource Moddable v10.5.0 was discovered to contain buffer over-read in the fxDebugThrow function at /moddable/xs/sour
vim is vulnerable to Out-of-bounds Read
Arbitrary read and write to kernel addresses by temporarily overwriting ring buffer pointer and creating a race conditio
Certain NETGEAR devices are affected by out-of-bounds reads and writes. This affects R6400 before 1.0.1.70, RAX75 before
A flaw was found in samba. The Samba smbd file server must map Windows group identities (SIDs) into unix group ids (gids
In kisd, there is a possible out of bounds read due to improper input validation. This could lead to local escalation of
In nci_proc_rf_management_ntf of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This
Bootloader contains a vulnerability in the NV3P server where any user with physical access through USB can trigger an in
In bpf_skb_change_head of filter.c, there is a possible out of bounds read due to a use after free. This could lead to l
TensorFlow is an open source platform for machine learning. In affected versions the `ImmutableConst` operation in Tenso
There is an out-of-bounds read vulnerability in Huawei CloudEngine products. The software reads data past the end of the
There is an out-of-bounds read vulnerability in several products. The software reads data past the end of the intended b
Incorrect handling of input data in loudness function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overfl
Acrobat Reader DC versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) a
An out-of-bounds read vulnerability exists in the AMF File AMFParserContext::endElement() functionality of Slic3r libsli
In oggpack_look of bitwise.c, there is a possible out of bounds read due to a missing bounds check. This could lead to r
In getNbits of pvmp3_getbits.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead
In getUpTo17bits of pvmp3_getbits.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt
An out-of-bounds read vulnerability exists in the Obj File TriangleMesh::TriangleMesh() functionality of Slic3r libslic3
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tencent WeChat
An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_parse_str() performs incorrect memory handling
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ether
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ether
A malformed input file can lead to a segfault due to an out of bounds array access in raptor_xml_writer_start_element_co
VMware Workstation (16.x prior to 16.1.2) and Horizon Client for Windows (5.x prior to 5.5.2) contain out-of-bounds read
VMware Workstation (16.x prior to 16.1.2) and Horizon Client for Windows (5.x prior to 5.5.2) contain out-of-bounds read
VMware Workstation (16.x prior to 16.1.2) and Horizon Client for Windows (5.x prior to 5.5.2) contain out-of-bounds read
In avrc_pars_browse_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. This c
In fillMainDataBuf of pvmp3_framedecoder.cpp, there is a possible out of bounds read due to a heap buffer overflow. This
In Lag_max of p_ol_wgh.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to rem
Frequently Asked Questions
What is CWE-125?
CWE-125 (Out-of-bounds Read) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-125?
There are 10,972 CVE records associated with CWE-125 in our database. Of these, 717 are critical severity, 3828 are high severity, and 4120 are medium severity.
How can I protect against CWE-125 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-125 using AI-powered security agents.
Detect CWE-125 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds read vulnerabilities across your infrastructure.
Get Started