Weaknesses of type CWE-125

5,178 results

Leitura fora dos limites de memória

Quando o código tenta ler dados além do tamanho alocado de um buffer, array ou estrutura de dados. O programa acessa memória que não deveria, podendo vazar informações sensíveis, causar travamento ou ser explorado para executar código arbitrário.

Example

Um validador de imagem PNG que lê o tamanho do chunk do header mas não verifica se esse tamanho é compatível com o arquivo; ao processar, lê bytes da memória adjacente, expondo dados de outras estruturas ou causando crash.

How to mitigate

Sempre validar comprimentos e índices antes de acessar buffers; usar funções seguras (strncpy em vez de strcpy, bounds checking em loops); compilar com sanitizadores (AddressSanitizer, Valgrind) para detectar em tempo de teste.

CVE-2026-93544MEDIUMOut-of-bounds read in libXi's XI2 XIQueryDevice reply parsingEPSS 0.2%CVE-2024-31412HIGHOut-of-bounds read vulnerability exists in CX-Programmer included in CX-One CXONE-AL[][]D-V4 Ver. 9.81 or lower. Opening a specially craftedEPSS 0.2%CVE-2024-34135MEDIUMAdobe Illustrator CC 2023 v27.9 Vulnerability IIEPSS 0.2%CVE-2024-20790MEDIUMAdobe Dimension Memory Corruption Out-of-Bounds-READ Vulnerability I, when parsing FBX fileEPSS 0.2%CVE-2024-20798MEDIUMIllustrator 2024 CDR File parsing Out of Bound Read Information disclosure vulnerabilityEPSS 0.2%CVE-2025-30308MEDIUMXMPWorker | Out-of-bounds Read (CWE-125)EPSS 0.2%CVE-2023-27945MEDIUMThis issue was addressed with improved entitlements. This issue is fixed in Xcode 14.3, macOS Big Sur 11.7.7, macOS Monterey 12.6.6. A sandbEPSS 0.2%CVE-2024-50115HIGHKVM: nSVM: Ignore nCR3[4:0] when loading PDPTEs from memoryEPSS 0.2%CVE-2026-93541MEDIUMOut-of-bounds read in libXi's XQueryDeviceState()EPSS 0.2%CVE-2024-20793MEDIUMIllustrator 2024 TIF file parsing Out Of Bound Read Information disclosure vulnerabilityEPSS 0.2%CVE-2022-27825MEDIUMImproper size check in sapefd_parse_meta_HEADER function of libsapeextractor library prior to SMR Apr-2022 Release 1 allows out of bounds reEPSS 0.2%CVE-2025-6648LOWPDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.2%CVE-2026-18278LOWSony XAV-9500ES prh_l2_decode_packet Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.2%CVE-2024-49536MEDIUMAudition | Out-of-bounds Read (CWE-125)EPSS 0.2%CVE-2025-68118MEDIUMPotential Heap Out-of-Bounds Read in freerdp_certificate_data_hash_ via Unsafe _snprintf UsageEPSS 0.2%CVE-2024-30308MEDIUMAdobe Substance 3D Painter PSD File Parsing Acces Violation Read VulnerabilityEPSS 0.2%CVE-2025-6662LOWPDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.2%CVE-2025-6658LOWPDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.2%CVE-2025-6641LOWPDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.2%CVE-2024-41928HIGHbhyve(8) privileged guest escape via TPM device passthroughEPSS 0.2%