Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-125

MITRE ↗

Out-of-bounds Read

717
CRITICAL
3,828
HIGH
4,120
MEDIUM
505
LOW
9,243 CVEs · Page 84/185
5.5
CVE-2022-47363

In wlan driver, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of

5.5
CVE-2023-21687

HTTP.sys Information Disclosure Vulnerability

5.5
CVE-2023-21714

Microsoft Office Information Disclosure Vulnerability

5.5
CVE-2023-21577

Photoshop version 23.5.3 (and earlier), 24.1 (and earlier) are affected by an out-of-bounds read vulnerability that coul

5.5
CVE-2023-21578

Photoshop version 23.5.3 (and earlier), 24.1 (and earlier) are affected by an out-of-bounds read vulnerability that coul

5.5
CVE-2023-21583

Adobe Bridge versions 12.0.3 (and earlier) and 13.0.1 (and earlier) are affected by an out-of-bounds read vulnerability

5.5
CVE-2023-21620

FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by an out-of-bounds read vulnerability that coul

5.5
CVE-2023-22231

Adobe Bridge versions 12.0.3 (and earlier) and 13.0.1 (and earlier) are affected by an out-of-bounds read vulnerability

5.5
CVE-2023-22233

After Affects versions 23.1 (and earlier), 22.6.3 (and earlier) are affected by an out-of-bounds read vulnerability that

5.5
CVE-2021-33367

Buffer Overflow vulnerability in Freeimage v3.18.0 allows attacker to cause a denial of service via a crafted JXR file.

5.5
CVE-2022-46440

ttftool v0.9.2 was discovered to contain a segmentation violation via the readU16 function at ttf.c.

5.5
CVE-2023-23502

An information disclosure issue was addressed by removing the vulnerable code. This issue is fixed in macOS Monterey 12.

5.5
CVE-2023-1018

An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 co

5.5
CVE-2022-47455

In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.

5.5
CVE-2022-47456

In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.

5.5
CVE-2022-47458

In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.

5.5
CVE-2023-24862

Windows Secure Channel Denial of Service Vulnerability

5.5
CVE-2023-25862

Illustrator version 26.5.2 (and earlier) and 27.2.0 (and earlier) are affected by an out-of-bounds read vulnerability th

5.5
CVE-2023-20973

In btm_create_conn_cancel_complete of btm_sec.cc, there is a possible out of bounds read due to a missing bounds check.

5.5
CVE-2023-20974

In btm_ble_add_resolving_list_entry_complete of btm_ble_privacy.cc, there is a possible out of bounds read due to a miss

5.5
CVE-2023-20979

In GetNextSourceDataPacket of bta_av_co.cc, there is a possible out of bounds read due to a missing bounds check. This c

5.5
CVE-2023-20980

In btu_ble_ll_conn_param_upd_evt of btu_hcif.cc, there is a possible out of bounds read due to a missing bounds check. T

5.5
CVE-2023-21019

In ih264e_init_proc_ctxt of ih264e_process.c, there is a possible out of bounds read due to a heap buffer overflow. This

5.5
CVE-2023-25875

Adobe Substance 3D Stager versions 2.0.0 (and earlier) are affected by an out-of-bounds read vulnerability that could le

5.5
CVE-2023-25876

Adobe Substance 3D Stager versions 2.0.0 (and earlier) are affected by an out-of-bounds read vulnerability that could le

5.5
CVE-2023-25877

Adobe Substance 3D Stager versions 2.0.0 (and earlier) are affected by an out-of-bounds read vulnerability that could le

5.5
CVE-2023-25878

Adobe Substance 3D Stager versions 2.0.0 (and earlier) are affected by an out-of-bounds read vulnerability that could le

5.5
CVE-2023-26338

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26339

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26340

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26341

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26342

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26343

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26345

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26346

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26348

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26350

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26351

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26352

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26353

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26354

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26355

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2023-26356

Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl

5.5
CVE-2022-28308

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley View 1

5.5
CVE-2022-28309

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley View 1

5.5
CVE-2022-28312

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS

5.5
CVE-2022-28313

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS

5.5
CVE-2022-28645

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS

5.5
CVE-2022-37351

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

5.5
CVE-2022-37352

This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Ed

Frequently Asked Questions

What is CWE-125?

CWE-125 (Out-of-bounds Read) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-125?

There are 10,972 CVE records associated with CWE-125 in our database. Of these, 717 are critical severity, 3828 are high severity, and 4120 are medium severity.

How can I protect against CWE-125 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-125 using AI-powered security agents.

Detect CWE-125 Vulnerabilities

CyberStrike's AI agents automatically detect out-of-bounds read vulnerabilities across your infrastructure.

Get Started