alsa-lib versions 1.2.2 up to and including 1.2.15.2, prior to commit 5f7fe33, contain a heap-based buffer overflow in t
Improper input validation within RAS TA Driver can allow a local attacker to access out-of-bounds memory, potentially re
Improper validation in Power Management Firmware (PMFW) may allow an attacker with privileges to pass malformed workload
frp is a fast reverse proxy. From 0.53.0 until 0.70.1, frp's optional SSH Tunnel Gateway in pkg/ssh/server.go parses an
A stack-based buffer overflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated a
Memory corruption while parsing the ML IE due to invalid frame content.
IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 19 could allow a remote attacker to execute arbitrary code du
cJSON 1.5.0 through 1.7.18 allows out-of-bounds access via the decode_array_index_from_pointer function in cJSON_Utils.c
In the Linux kernel, the following vulnerability has been resolved: vxlan: Fix nexthop hash size The nexthop code expe
Memory corruption while selecting the PLMN from SOR failed list.
In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: Fix the dead loop of MPLS parse
In the Linux kernel, the following vulnerability has been resolved: rtw89: cfo: check mac_id to avoid out-of-bounds So
In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Avoid overflow with array index Th
FontForge SFD File Parsing Improper Validation of Array Index Remote Code Execution Vulnerability. This vulnerability al
FontForge SFD File Parsing Improper Validation of Array Index Remote Code Execution Vulnerability. This vulnerability al
A vulnerability classified as critical has been found in RT-Thread 5.1.0. This affects the function sys_sigprocmask of t
A vulnerability, which was classified as critical, has been found in RT-Thread 5.1.0. This issue affects the function sy
Memory corruption occurs when invoking any IOCTL-calling application that executes all MCDM driver IOCTL calls.
In the Linux kernel, the following vulnerability has been resolved: pktgen: Avoid out-of-bounds access in get_imix_entr
Memory corruption while validating number of devices in Camera kernel .
Memory corruption in Camera due to unusually high number of nodes passed to AXI port.
Memory corruption can occur in the camera when an invalid CID is used.
Memory corruption while power-up or power-down sequence of the camera sensor.
Memory corruption while reading CPU state data during guest VM suspend.
Memory corruption while processing IOCTL from user space to handle GPU AHB bus error.
In the Linux kernel, the following vulnerability has been resolved: net: sched: fix ets qdisc OOB Indexing Haowei Yan
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on curseg->alloc_type
In the Linux kernel, the following vulnerability has been resolved: clk: visconti: prevent array overflow in visconti_c
In the Linux kernel, the following vulnerability has been resolved: media: pvrusb2: fix array-index-out-of-bounds in pv
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix potential array overflow in bpf_trampoline
In the Linux kernel, the following vulnerability has been resolved: block: Fix handling of offline queues in blk_mq_all
In the Linux kernel, the following vulnerability has been resolved: net_sched: sch_sfq: don't allow 1 packet limit The
Memory corruption may occur during the synchronization of the camera`s frame processing pipeline.
Memory corruption may occur while validating ports and channels in Audio driver.
In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc4-mtrace: prevent underflow in sof_ip
In the Linux kernel, the following vulnerability has been resolved: ALSA: hda/via: Avoid potential array out-of-bound i
In the Linux kernel, the following vulnerability has been resolved: netlink: prevent potential spectre v1 gadgets Most
In the Linux kernel, the following vulnerability has been resolved: net: mdio: validate parameter addr in mdiobus_get_p
In the Linux kernel, the following vulnerability has been resolved: x86/microcode/AMD: Fix out-of-bounds on systems wit
Memory corruption occurs when handling client calls to EnableTestMode through an Escape call.
Memory corruption may occur while processing device IO control call for session control.
In the Linux kernel, the following vulnerability has been resolved: spi: cadence: Fix out-of-bounds array access in cdn
In the Linux kernel, the following vulnerability has been resolved: objtool, spi: amd: Fix out-of-bounds stack access i
In the Linux kernel, the following vulnerability has been resolved: iio: light: Add check for array bounds in veml6075_
In the Linux kernel, the following vulnerability has been resolved: net_sched: sch_sfq: move the limit validation It i
Memory corruption during array access in Camera kernel due to invalid index from invalid command data.
Memory corruption while prociesing command buffer buffer in OPE module.
Memory corruption while acquire and update IOCTLs during IFE output resource ID validation.
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: Set n_channels after allocating str
In the Linux kernel, the following vulnerability has been resolved: net: atlantic: fix aq_vec index out of range error
Frequently Asked Questions
What is CWE-129?
CWE-129 (CWE-129) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-129?
There are 751 CVE records associated with CWE-129 in our database. Of these, 62 are critical severity, 418 are high severity, and 118 are medium severity.
How can I protect against CWE-129 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-129 using AI-powered security agents.
Detect CWE-129 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-129 vulnerabilities across your infrastructure.
Get Started