Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-129

MITRE ↗

CWE-129

62
CRITICAL
418
HIGH
118
MEDIUM
7
LOW
612 CVEs · Page 3/13
CVE-2026-25068

alsa-lib versions 1.2.2 up to and including 1.2.15.2, prior to commit 5f7fe33, contain a heap-based buffer overflow in t

CVE-2023-20601

Improper input validation within RAS TA Driver can allow a local attacker to access out-of-bounds memory, potentially re

CVE-2023-31309

Improper validation in Power Management Firmware (PMFW) may allow an attacker with privileges to pass malformed workload

CVE-2026-73564

frp is a fast reverse proxy. From 0.53.0 until 0.70.1, frp's optional SSH Tunnel Gateway in pkg/ssh/server.go parses an

CVE-2026-19318

A stack-based buffer overflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated a

9.8
CVE-2024-45569

Memory corruption while parsing the ML IE due to invalid frame content.

9.8
CVE-2025-3357

IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 19 could allow a remote attacker to execute arbitrary code du

9.8
CVE-2025-57052

cJSON 1.5.0 through 1.7.18 allows out-of-bounds access via the decode_array_index_from_pointer function in cJSON_Utils.c

9.8
CVE-2023-53192

In the Linux kernel, the following vulnerability has been resolved: vxlan: Fix nexthop hash size The nexthop code expe

9.8
CVE-2025-27034

Memory corruption while selecting the PLMN from SOR failed list.

9.4
CVE-2025-38146

In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: Fix the dead loop of MPLS parse

8.8
CVE-2022-49471

In the Linux kernel, the following vulnerability has been resolved: rtw89: cfo: check mac_id to avoid out-of-bounds So

8.8
CVE-2025-38367

In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Avoid overflow with array index Th

8.8
CVE-2025-15270

FontForge SFD File Parsing Improper Validation of Array Index Remote Code Execution Vulnerability. This vulnerability al

8.8
CVE-2025-15271

FontForge SFD File Parsing Improper Validation of Array Index Remote Code Execution Vulnerability. This vulnerability al

8.0
CVE-2025-5866

A vulnerability classified as critical has been found in RT-Thread 5.1.0. This affects the function sys_sigprocmask of t

8.0
CVE-2025-5868

A vulnerability, which was classified as critical, has been found in RT-Thread 5.1.0. This issue affects the function sy

7.8
CVE-2024-45550

Memory corruption occurs when invoking any IOCTL-calling application that executes all MCDM driver IOCTL calls.

7.8
CVE-2025-21680

In the Linux kernel, the following vulnerability has been resolved: pktgen: Avoid out-of-bounds access in get_imix_entr

7.8
CVE-2024-45582

Memory corruption while validating number of devices in Camera kernel .

7.8
CVE-2024-49832

Memory corruption in Camera due to unusually high number of nodes passed to AXI port.

7.8
CVE-2024-49833

Memory corruption can occur in the camera when an invalid CID is used.

7.8
CVE-2024-49834

Memory corruption while power-up or power-down sequence of the camera sensor.

7.8
CVE-2024-49837

Memory corruption while reading CPU state data during guest VM suspend.

7.8
CVE-2024-49843

Memory corruption while processing IOCTL from user space to handle GPU AHB bus error.

7.8
CVE-2025-21692

In the Linux kernel, the following vulnerability has been resolved: net: sched: fix ets qdisc OOB Indexing Haowei Yan

7.8
CVE-2022-49170

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on curseg->alloc_type

7.8
CVE-2022-49186

In the Linux kernel, the following vulnerability has been resolved: clk: visconti: prevent array overflow in visconti_c

7.8
CVE-2022-49478

In the Linux kernel, the following vulnerability has been resolved: media: pvrusb2: fix array-index-out-of-bounds in pv

7.8
CVE-2022-49548

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix potential array overflow in bpf_trampoline

7.8
CVE-2022-49720

In the Linux kernel, the following vulnerability has been resolved: block: Fix handling of offline queues in blk_mq_all

7.8
CVE-2024-57996

In the Linux kernel, the following vulnerability has been resolved: net_sched: sch_sfq: don't allow 1 packet limit The

7.8
CVE-2024-49836

Memory corruption may occur during the synchronization of the camera`s frame processing pipeline.

7.8
CVE-2024-53014

Memory corruption may occur while validating ports and channels in Audio driver.

7.8
CVE-2023-52987

In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc4-mtrace: prevent underflow in sof_ip

7.8
CVE-2023-52988

In the Linux kernel, the following vulnerability has been resolved: ALSA: hda/via: Avoid potential array out-of-bound i

7.8
CVE-2023-53000

In the Linux kernel, the following vulnerability has been resolved: netlink: prevent potential spectre v1 gadgets Most

7.8
CVE-2023-53019

In the Linux kernel, the following vulnerability has been resolved: net: mdio: validate parameter addr in mdiobus_get_p

7.8
CVE-2025-21991

In the Linux kernel, the following vulnerability has been resolved: x86/microcode/AMD: Fix out-of-bounds on systems wit

7.8
CVE-2025-21423

Memory corruption occurs when handling client calls to EnableTestMode through an Escape call.

7.8
CVE-2025-21447

Memory corruption may occur while processing device IO control call for session control.

7.8
CVE-2025-22067

In the Linux kernel, the following vulnerability has been resolved: spi: cadence: Fix out-of-bounds array access in cdn

7.8
CVE-2025-40014

In the Linux kernel, the following vulnerability has been resolved: objtool, spi: amd: Fix out-of-bounds stack access i

7.8
CVE-2025-40114

In the Linux kernel, the following vulnerability has been resolved: iio: light: Add check for array bounds in veml6075_

7.8
CVE-2025-37752

In the Linux kernel, the following vulnerability has been resolved: net_sched: sch_sfq: move the limit validation It i

7.8
CVE-2024-45574

Memory corruption during array access in Camera kernel due to invalid index from invalid command data.

7.8
CVE-2024-45576

Memory corruption while prociesing command buffer buffer in OPE module.

7.8
CVE-2024-45578

Memory corruption while acquire and update IOCTLs during IFE output resource ID validation.

7.8
CVE-2025-38013

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: Set n_channels after allocating str

7.8
CVE-2022-50066

In the Linux kernel, the following vulnerability has been resolved: net: atlantic: fix aq_vec index out of range error

Frequently Asked Questions

What is CWE-129?

CWE-129 (CWE-129) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-129?

There are 751 CVE records associated with CWE-129 in our database. Of these, 62 are critical severity, 418 are high severity, and 118 are medium severity.

How can I protect against CWE-129 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-129 using AI-powered security agents.

Detect CWE-129 Vulnerabilities

CyberStrike's AI agents automatically detect cwe-129 vulnerabilities across your infrastructure.

Get Started