An improper input validation in saped_rec_silence in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
Versionize is a framework for version tolerant serializion/deserialization of Rust data structures, designed for usecase
Out-of-bounds read in software for the Intel QAT Driver for Windows before version 1.9.0-0008 may allow an authenticated
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
NASM v2.16 was discovered to contain a segmentation violation in the component ieee_write_file at /output/outieee.c.
Windows Kernel Information Disclosure Vulnerability
Insufficient input validation in SEV firmware may allow an attacker to perform out-of-bounds memory reads within the ASP
Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that c
Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that c
Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that co
Adobe Dimension version 3.4.6 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to discl
Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are
Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are
Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are
Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed
GNU Tar through 1.34 has a one-byte out-of-bounds read that results in use of uninitialized memory for a conditional jum
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.
Frequently Asked Questions
What is CWE-125?
CWE-125 (Out-of-bounds Read) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-125?
There are 10,972 CVE records associated with CWE-125 in our database. Of these, 717 are critical severity, 3828 are high severity, and 4120 are medium severity.
How can I protect against CWE-125 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-125 using AI-powered security agents.
Detect CWE-125 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds read vulnerabilities across your infrastructure.
Get Started