An out-of-bound read could have led to a crash in the RLBox Expat driver. This vulnerability affects Firefox < 113, Fire
Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and
libcoap 4.3.1 contains a buffer over-read via the function coap_parse_oscore_conf_mem at coap_oscore.c.
An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS
An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS
Remote Procedure Call Runtime Denial of Service Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
Remote Procedure Call Runtime Information Disclosure Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
Out-of-bounds read issue in M-Files Server versions below 23.8.12892.6 and LTS Service Release Versions before 23.2 LTS
In imgsys, there is a possible out of bounds read and write due to a missing valid range checking. This could lead to lo
In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local e
Transient DOS in Bluetooth HOST while passing descriptor to validate the blacklisted BT keyboard.
A flaw was found in glibc. When the getaddrinfo function is called with the AF_UNSPEC address family and the system is c
A flaw was found in the IPv4 Resource Reservation Protocol (RSVP) classifier in the Linux kernel. The xprt pointer may g
A vulnerability was found in libX11 due to a boundary condition within the _XkbReadKeySyms() function. This flaw allows
stb_image is a single file MIT licensed library for processing images. A crafted image file may trigger out of bounds me
stb_image is a single file MIT licensed library for processing images. When `stbi_set_flip_vertically_on_load` is set to
In Bluetooth, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote (proximal/
Out-of-bounds read in the firmware for some Intel(R) E810 Ethernet Controllers and Adapters before version 1.7.1 may all
In International Color Consortium DemoIccMAX 3e7948b, CIccCLUT::Interp2d in IccTagLut.cpp in libSampleICC.a has an out-o
On some systems—depending on the graphics settings and drivers—it was possible to force an out-of-bounds read and leak m
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2,
This issue was addressed with improved entitlements. This issue is fixed in Xcode 14.3, macOS Big Sur 11.7.7, macOS Mont
In stc, there is a possible out of bounds read due to a race condition. This could lead to local escalation of privilege
An out-of-bounds read flaw was found in the parse_module function in bfd/vms-alpha.c in Binutils.
SSH dissector crash in Wireshark 4.0.0 to 4.0.10 allows denial of service via packet injection or crafted capture file
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler, where an out-
A flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to an
Information disclosure in WLAN HOST while processing the WLAN scan descriptor list during roaming scan.
A flaw was found in the Netfilter subsystem in the Linux kernel. The sctp_mt_check did not validate the flag_count field
Out-of-bounds read in firmware for the Intel(R) Integrated Sensor Solution before versions 5.4.2.4579v3, 5.4.1.4479 and
A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device. This flaw allows a crafted guest driver
VMware Workstation and Fusion contain an out-of-bounds read vulnerability that exists in the functionality for sharing h
Out of bounds read in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to enable
A heap out-of-bounds memory read flaw was found in the virtual nvme device in QEMU. The QEMU process does not validate a
Some Honor products are affected by out of bounds read vulnerability, successful exploitation could cause information l
GSS-NTLMSSP is a mechglue plugin for the GSSAPI library that implements NTLM authentication. Prior to version 1.2.0, mul
GNU libmicrohttpd before 0.9.76 allows remote DoS (Denial of Service) due to improper parsing of a multipart/form-data b
Issue summary: The AES-XTS cipher decryption implementation for 64 bit ARM platform contains a bug that could cause it t
Windows NTLM Security Support Provider Information Disclosure Vulnerability
The VMware vCenter Server contains an out-of-bounds read vulnerability in the implementation of the DCERPC protocol. A m
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. Wh
Buffer overflow vulnerability in c-ares before 1_16_1 thru 1_17_0 via function ares_parse_soa_reply in ares_parse_soa_re
On affected platforms running Arista EOS with mirroring to multiple destinations configured, an internal system error ma
FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versi
Frequently Asked Questions
What is CWE-125?
CWE-125 (Out-of-bounds Read) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-125?
There are 10,972 CVE records associated with CWE-125 in our database. Of these, 717 are critical severity, 3828 are high severity, and 4120 are medium severity.
How can I protect against CWE-125 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-125 using AI-powered security agents.
Detect CWE-125 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds read vulnerabilities across your infrastructure.
Get Started