When CX-Supervisor (Versions 3.42 and prior) processes project files and tampers with the value of an offset, an attacke
An out of bounds read flaw was discovered in libssh2 before 1.8.1 when a specially crafted SFTP packet is received from
An out of bounds read flaw was discovered in libssh2 before 1.8.1 in the way SFTP packets with empty payloads are parsed
An out of bounds read flaw was discovered in libssh2 before 1.8.1 in the way SSH packets with a padding length value gre
In rw_i93_sm_detect_ndef of rw_i93.cc, there is a possible out-of-bound read due to a missing bounds check. This could l
In rw_i93_process_ext_sys_info of rw_i93.cc, there is a possible out-of-bound read due to a missing bounds check. This c
In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl
In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl
In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl
In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl
In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl
In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl
In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl
In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl
In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl
In NFC server, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio
In NFC server, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio
In NFC server, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio
In libandroidfw, there is a possible OOB read due to an integer overflow. This could lead to local information disclosur
In Bluetooth, there is a possible out of bounds read due to a use after free. This could lead to remote information disc
In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informatio
A vulnerability in the HostScan component of Cisco AnyConnect Secure Mobility Client for Linux could allow an unauthenti
When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7
When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7
A flaw was found in the Linux kernel that allows the userspace to call memcpy_fromiovecend() and similar functions with
The function hso_get_config_data in drivers/net/usb/hso.c in the Linux kernel through 4.19.8 reads if_num from the USB d
do_core_note in readelf.c in libmagic.a in file 5.35 has a stack-based buffer over-read, related to file_printable, a di
do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is misused.
QEMU, through version 2.10 and through version 3.1.0, is vulnerable to an out-of-bounds read of up to 128 bytes in the h
An out of bound read in KMD module for Intel(R) Graphics Driver before version 10.18.14.5067 (aka 15.36.x.5067) and 10.1
An issue was discovered in the Linux kernel before 5.0.19. There is an out-of-bounds array access in __xfrm_policy_unlin
In the Android kernel in the f2fs driver there is a possible out of bounds read due to a missing bounds check. This coul
In the Android kernel in F2FS driver there is a possible out of bounds read due to a missing bounds check. This could le
In the Android kernel in FingerTipS touchscreen driver there is a possible out of bounds read due to a missing bounds ch
In the Android kernel in SEC_TS touch driver there is a possible out of bounds read due to a missing bounds check. This
In the TEE, there's a possible out of bounds read due to a missing bounds check. This could lead to local information di
libcurl versions from 7.34.0 to before 7.64.0 are vulnerable to a heap out-of-bounds read in the code handling the end-o
Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20
Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20
Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20
Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier,
Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier,
Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier,
Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier,
Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier,
Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier,
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio P
Adobe Media Encoder versions 13.1 and earlier have an out-of-bounds read vulnerability. Successful exploitation could le
Adobe Media Encoder versions 13.1 and earlier have an out-of-bounds read vulnerability. Successful exploitation could le
Adobe Media Encoder versions 13.1 and earlier have an out-of-bounds read vulnerability. Successful exploitation could le
Frequently Asked Questions
What is CWE-125?
CWE-125 (Out-of-bounds Read) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-125?
There are 10,972 CVE records associated with CWE-125 in our database. Of these, 717 are critical severity, 3828 are high severity, and 4120 are medium severity.
How can I protect against CWE-125 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-125 using AI-powered security agents.
Detect CWE-125 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds read vulnerabilities across your infrastructure.
Get Started