Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image file
There is an out-of-bound read vulnerability in Mate 30 10.0.0.182(C00E180R6P2). A module does not verify the some input
Possible Buffer Over-read due to lack of validation of boundary checks when loading splash image in Snapdragon Consumer
Possible buffer over-read due to incorrect overflow check when loading splash image in Snapdragon Consumer IOT, Snapdrag
Possible buffer over read due to lack of length check while flashing meta images in Snapdragon Consumer IOT, Snapdragon
Possible buffer over-read due to lack of length check while flashing meta images in Snapdragon Consumer IOT, Snapdragon
Buffer over read could occur due to incorrect check of buffer size while flashing emmc devices in Snapdragon Connectivit
Invalid JPEG XL images using libjxl can cause an out of bounds access on a std::vector<std::vector<T>> when rendering sp
In nfaHciCallback of HciEventManager.cpp, there is a possible out of bounds read due to a missing bounds check. This cou
In ccu, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl
An issue was discovered in the _send_secure_msg() function of Yubico yubihsm-shell through 2.0.3. The function does not
In BnAudioPolicyService::onTransact of IAudioPolicyService.cpp, there is a possible out of bounds read due to a missing
In fts_driver_test_write of fts_proc.c, there is a possible out of bounds read due to a missing bounds check. This could
A flaw was found in the Linux kernel's implementation of string matching within a packet. A privileged user (with root o
Out of bound read in a subsystem in the Intel(R) CSME versions before 12.0.81, 13.0.47, 13.30.17, 14.1.53 and 14.5.32 ma
In accessAudioHalPidscpp of TimeCheck.cpp, there is a possible out of bounds read due to a missing bounds check. This co
In phNxpNciHal_ext_process_nfc_init_rsp of phNxpNciHal_ext.cc, there is a possible out of bounds read due to a missing b
In pfkey_dump of af_key.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to loca
In set_default_passthru_cfg of passthru.c, there is a possible out of bounds read due to a missing bounds check. This co
In apusys, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information
In apusys, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information
In apusys, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information
In btu_hcif_process_event of btu_hcif.cc, there is a possible out of bounds read due to an incorrect bounds check. This
In lwis_dpm_update_clock of lwis_device_dpm.c, there is a possible out of bounds read due to an incorrect bounds check.
In CreateDeviceInfo of trusty_remote_provisioning_context.cpp, there is a possible out of bounds read due to a missing b
In ufshcd_eh_device_reset_handler of ufshcd.c, there is a possible out of bounds read due to a missing bounds check. Thi
In geniezone driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local i
In apusys, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information
In apusys, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information
Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and e
Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially c
Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially c
Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially c
Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially c
Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and e
Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and e
Adobe Media Encoder version 15.1 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a special
Lack of boundary checking of a buffer in livfivextractor library prior to SMR Oct-2021 Release 1 allows OOB read.
Lack of boundary checking of a buffer in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 al
A possible buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61
ide_atapi_cmd_reply_end in hw/ide/atapi.c in QEMU 5.1.0 allows out-of-bounds read access because a buffer index is not v
Squid through 4.14 and 5.x through 5.0.5, in some configurations, allows information disclosure because of an out-of-bou
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio P
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio P
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio P
A flaw was found in the src/list.c of tar 1.33 and earlier. This flaw allows an attacker who can submit a crafted input
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP
Frequently Asked Questions
What is CWE-125?
CWE-125 (Out-of-bounds Read) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-125?
There are 10,972 CVE records associated with CWE-125 in our database. Of these, 717 are critical severity, 3828 are high severity, and 4120 are medium severity.
How can I protect against CWE-125 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-125 using AI-powered security agents.
Detect CWE-125 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds read vulnerabilities across your infrastructure.
Get Started