This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation C
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation C
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. Us
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. Us
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. Us
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. Us
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. Us
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.2.
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Corel CorelDRAW Graphi
A vulnerability has been identified in JT Open (All versions < V11.3.2.0), JT Utilities (All versions < V13.3.0.0). The
Adobe Dimension version 3.4.8 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted fi
Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by an out-of-bounds
Adobe Substance 3D Stager version 2.0.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a
Adobe Substance 3D Stager version 2.0.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a
Adobe Substance 3D Stager version 2.0.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a
Adobe Substance 3D Stager version 2.0.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a
Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing
Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing
Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing
A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can force an Out-of-Bound Read. A malicious a
A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 could lead to memory corruption vulnerability
A malicious actor may convince a victim to open a malicious USD file that may trigger an out-of-bounds read vulnerabilit
A vulnerability was found in compare_netdev_and_ip in drivers/infiniband/core/cma.c in RDMA in the Linux Kernel. The imp
An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in GarageBand for macOS 10
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Ventura 13.3, iOS 15.7.4
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, macOS Mon
An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that
An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that
Win32k Elevation of Privilege Vulnerability
Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing
Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing
Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing
Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing
Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing
A malicious actor may convince a user to open a malicious USD file that may trigger an out-of-bounds read vulnerability
The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CS
The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP).
The affected application lacks proper validation of user-supplied data when parsing project files (e.g.., CSP
The affected application lacks proper validation of user-supplied data when parsing font files (e.g., FNT
Horner Automation Cscape lacks proper validation of user-supplied data when parsing project files (e.g., HMI). This coul
A vulnerability has been identified in JT2Go (All versions < V14.2.0.3), Teamcenter Visualization V13.2 (All versions <
Out-of-bound reads vulnerability exists in FRENIC RHC Loader v1.1.0.3. If a user opens a specially crafted FNE file, sen
Microsoft PostScript Printer Driver Remote Code Execution Vulnerability
Microsoft Excel Remote Code Execution Vulnerability
Stack-based buffer overflow vulnerability in V-Server v4.0.15.0 and V-Server Lite v4.0.15.0 and earlier allows an attack
Access of memory location after end of buffer issue exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a spec
Out-of-bounds read vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted SIM f
Out-of-bounds read vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted V8 fi
A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigger out-of-bound read
A possible out-of-bounds read and write (due to an improper length check of shared memory) was discovered in Arm NN Andr
Frequently Asked Questions
What is CWE-125?
CWE-125 (Out-of-bounds Read) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-125?
There are 10,972 CVE records associated with CWE-125 in our database. Of these, 717 are critical severity, 3828 are high severity, and 4120 are medium severity.
How can I protect against CWE-125 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-125 using AI-powered security agents.
Detect CWE-125 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds read vulnerabilities across your infrastructure.
Get Started