A heap use-after-free existed when importing the blank-width characters of an ODF number format. A position value read f
In the Linux kernel, the following vulnerability has been resolved: smb: client: reject userspace cifs.spnego descripti
In Zephyr's kernel pipe implementation, the userspace syscall verifier z_vrfy_k_pipe_init() in kernel/pipe.c used K_SYSC
A flaw was found in virtio-win, specifically within the VirtIO Block (BLK) device. When the device undergoes a reset, it
A flaw was found in GnuTLS. The `gnutls_pkcs11_token_set_pin` function, used for changing the Security Officer PIN, can
A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup
PDFio before 1.6.5 contains a dangling pointer vulnerability in the dictionary string-formatting function that stores a
A flaw was found in sssd. When authenticating with a YubiKey, the SSSD PAM responder can crash due to a use-after-free v
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.2
CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1,
Giflib contains a double-free vulnerability that is the result of a shallow copy in GifMakeSavedImage and incorrect erro
A flaw was found in libinput. An attacker capable of deploying a Lua plugin file in specific system directories can expl
Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Frequently Asked Questions
What is CWE-825?
CWE-825 (CWE-825) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-825?
There are 65 CVE records associated with CWE-825 in our database. Of these, 11 are critical severity, 42 are high severity, and 8 are medium severity.
How can I protect against CWE-825 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-825 using AI-powered security agents.
Detect CWE-825 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-825 vulnerabilities across your infrastructure.
Get Started