Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-125

MITRE ↗

Out-of-bounds Read

717
CRITICAL
3,828
HIGH
4,120
MEDIUM
505
LOW
9,243 CVEs · Page 83/185
5.9
CVE-2023-42538

An improper input validation in saped_rec_silence in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to

5.7
CVE-2023-21693

Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability

5.7
CVE-2023-28448

Versionize is a framework for version tolerant serializion/deserialization of Rust data structures, designed for usecase

5.6
CVE-2022-21239

Out-of-bounds read in software for the Intel QAT Driver for Windows before version 1.9.0-0008 may allow an authenticated

5.5
CVE-2022-44440

In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.

5.5
CVE-2022-44441

In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.

5.5
CVE-2022-44442

In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

5.5
CVE-2022-44443

In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.

5.5
CVE-2022-44445

In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.

5.5
CVE-2022-44446

In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.

5.5
CVE-2022-46457

NASM v2.16 was discovered to contain a segmentation violation in the component ieee_write_file at /output/outieee.c.

5.5
CVE-2023-21776

Windows Kernel Information Disclosure Vulnerability

5.5
CVE-2021-46768

Insufficient input validation in SEV firmware may allow an attacker to perform out-of-bounds memory reads within the ASP

5.5
CVE-2023-21591

Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that c

5.5
CVE-2023-21592

Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that c

5.5
CVE-2023-21599

Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that co

5.5
CVE-2023-21603

Adobe Dimension version 3.4.6 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-21581

Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are

5.5
CVE-2023-21585

Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are

5.5
CVE-2023-21613

Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are

5.5
CVE-2023-21614

Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are

5.5
CVE-2022-41145

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-41146

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-41153

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42369

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42375

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42376

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42383

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42384

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42385

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42386

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42387

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42388

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42389

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42390

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42391

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42392

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42393

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42397

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42398

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42401

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42404

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42406

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42407

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42409

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42411

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42412

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-42413

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-48303

GNU Tar through 1.34 has a one-byte out-of-bounds read that results in use of uninitialized memory for a conditional jum

5.5
CVE-2022-47323

In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.

Frequently Asked Questions

What is CWE-125?

CWE-125 (Out-of-bounds Read) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-125?

There are 10,972 CVE records associated with CWE-125 in our database. Of these, 717 are critical severity, 3828 are high severity, and 4120 are medium severity.

How can I protect against CWE-125 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-125 using AI-powered security agents.

Detect CWE-125 Vulnerabilities

CyberStrike's AI agents automatically detect out-of-bounds read vulnerabilities across your infrastructure.

Get Started