Possible buffer overflow due to improper input validation in PDM DIAG command in FTM in Snapdragon Auto, Snapdragon Comp
In x/text in Go 1.15.4, an "index out of range" panic occurs in language.ParseAcceptLanguage while parsing the -u- exten
In x/text in Go before v0.3.5, a "slice bounds out of range" panic occurs in language.ParseAcceptLanguage while processi
GJSON <=v1.6.5 allows attackers to cause a denial of service (panic: runtime error: slice bounds out of range) via a cra
A vulnerability has been identified in SIMATIC MV400 family (All Versions < V7.0.6). The underlying TCP stack of the aff
Out of bound memory read in Data modem while unpacking data due to lack of offset length check in Snapdragon Auto, Snapd
There is an Improper Validation of Array Index Vulnerability in Huawei Smartphone. Successful exploitation of this vulne
tinyexr commit 0.9.5 was discovered to contain an array index error in the tinyexr::SaveEXR component, which can lead to
tinyexr 0.9.5 was discovered to contain an array index error in the tinyexr::DecodeEXRImage component, which can lead to
There is a Improper Validation of Array Index vulnerability in Huawei Smartphone.Successful exploitation of this vulnera
Buffer overflow occurs when trying to convert ASCII string to Unicode string if the actual size is more than required in
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are af
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are af
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are af
Out of bound write in logger due to prefix size is not validated while prepended to logging string in Snapdragon Auto, S
Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where an attacker th
Garmin Forerunner 235 before 8.20 is affected by: Array index error. The component is: ConnectIQ TVM. The attack vector
Garmin Forerunner 235 before 8.20 is affected by: Array index error. The component is: ConnectIQ TVM. The attack vector
Array index error in smal_decode_segment function in LibRaw before 0.17.1 allows context-dependent attackers to cause me
Buffer overflow can occur while processing clip due to lack of check of object size before parsing in Snapdragon Auto, S
Out of bound access while parsing dts atom, which is non-standard as it does not have valid number of tracks in Snapdrag
Stack overflow can occur when SDP is received with multiple payload types in the FMTP attribute of a video M line in Sna
Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. An improper validation vulnerability exists that could
Array out of bound may occur while playing mp3 file as no check is there on offset if it is greater than the buffer allo
Out of bound write can happen due to lack of check of array index value while parsing SDP attribute for SAR in Snapdrago
Possible null-pointer dereference can occur while parsing mp4 clip with corrupted sample table atoms in Snapdragon Auto,
u'Buffer overflow occurs while processing SIP message packet due to lack of check of index validation before copying int
u'Buffer overflow can happen as part of SIP message packet processing while storing values in array due to lack of check
u'When a non standard SIP sigcomp message is received from the network, then there may be chances of using more UDVM cyc
The Zephyr MQTT parsing code performs insufficient checking of the length field on publish messages, allowing a buffer o
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-4
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.4.
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.4.
Possible buffer overflow issue in error processing due to improper validation of array index value in Snapdragon Auto, S
Out of bound access due to access of uninitialized memory segment in an array of pointers while normal camera open close
Out of bound access while allocating memory for an array in camera due to improper validation of elements parameters in
Possible out of bound array access as there is no check on carrier index passed in Snapdragon Auto, Snapdragon Compute,
Possibility of out of bound access while processing the responses from video firmware in Snapdragon Auto, Snapdragon Com
A possible buffer overflow would occur while processing command from firmware due to the group_id obtained from the firm
Array out of bound access can occur in display module due to lack of bound check on input parcel received in Snapdragon
u'SMEM partition can be manipulated in case of any compromise on HLOS, thus resulting in access to memory outside of SME
u'Memory can be potentially corrupted if random index is allowed to manipulate TLB entries in Kernel from user library'
u'User Process can potentially corrupt kernel virtual page by passing a crafted page in API' in Snapdragon Auto, Snapdra
u'Possible out of bound access while copying the mask file content into the buffer without checking the buffer size' in
u'Array index underflow issue in adsp driver due to improper check of channel id before used as array index.' in Snapdra
u'Incorrect validation of ring context fetched from host memory can lead to memory overflow' in Snapdragon Compute, Snap
A Denial of Service vulnerability exists in the WRITE_C function in the msg_server.exe module in SAP NetWeaver 2004s, 7.
Dell EMC Unity, Dell EMC Unity XT, and Dell EMC UnityVSA versions prior to 5.0.2.0.5.009 contain a Denial of Service vul
An array index error in MikroTik RouterOS 6.41.3 through 6.46.5, and 7.x through 7.0 Beta5, allows an unauthenticated re
An issue was discovered in the sized-chunks crate through 0.6.2 for Rust. In the Chunk implementation, the array size is
Frequently Asked Questions
What is CWE-129?
CWE-129 (CWE-129) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-129?
There are 751 CVE records associated with CWE-129 in our database. Of these, 62 are critical severity, 418 are high severity, and 118 are medium severity.
How can I protect against CWE-129 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-129 using AI-powered security agents.
Detect CWE-129 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-129 vulnerabilities across your infrastructure.
Get Started