Weaknesses of type CWE-125

5,222 results

Leitura fora dos limites de memória

Quando o código tenta ler dados além do tamanho alocado de um buffer, array ou estrutura de dados. O programa acessa memória que não deveria, podendo vazar informações sensíveis, causar travamento ou ser explorado para executar código arbitrário.

Example

Um validador de imagem PNG que lê o tamanho do chunk do header mas não verifica se esse tamanho é compatível com o arquivo; ao processar, lê bytes da memória adjacente, expondo dados de outras estruturas ou causando crash.

How to mitigate

Sempre validar comprimentos e índices antes de acessar buffers; usar funções seguras (strncpy em vez de strcpy, bounds checking em loops); compilar com sanitizadores (AddressSanitizer, Valgrind) para detectar em tempo de teste.

CVE-2026-14256MEDIUMELAN reported a potential out-of-bounds write vulnerability in the ELAN TrackPoint driver that, under certain circumstances, could allow a lEPSS 0.1%CVE-2026-42494MEDIUMbuffer overruns in libfsimage iso9660 handlingEPSS 0.1%CVE-2026-75900MEDIUMSwtpm: swtpm: out-of-bounds read in swtpm_nvram_checkheader due to sizeof(pointer) vs sizeof(struct) mismatchEPSS 0.1%CVE-2026-94285MEDIUMOut-of-bounds read in libX11's byte-oriented codeset parserEPSS 0.1%CVE-2025-48622MEDIUMIn ProcessArea of dng_misc_opcodes.cpp, there is a possible out of bounds read due to a buffer overflow. This could lead to local informatioEPSS 0.1%CVE-2023-32863MEDIUMIn display drm, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with EPSS 0.1%CVE-2022-22271MEDIUMA missing input validation before memory copy in TIMA trustlet prior to SMR Jan-2022 Release 1 allows attackers to copy data from arbitrary EPSS 0.1%CVE-2022-25821LOWImproper use of SMS buffer pointer in Shannon baseband prior to SMR Mar-2022 Release 1 allows OOB read.EPSS 0.1%CVE-2018-9486MEDIUMIn hidh_l2cif_data_ind of hidh_conn.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local inforEPSS 0.1%CVE-2026-87525LOWOut of bounds read in Chromoting in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to read memory outside the sEPSS 0.1%CVE-2023-20711MEDIUMIn keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with SyEPSS 0.1%CVE-2026-58004HIGHCrafted oversized firmware image causes EL3 stack overflow during VAB authentication on Trusted Firmware.EPSS 0.1%CVE-2026-43820HIGHNIOSSLCertificate._subjectAlternativeNames provides access to the raw bytes for a cert's SANs. NIOSSL provides access to a buffer assumed toEPSS 0.1%CVE-2026-17007MEDIUMVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.1%CVE-2025-15038MEDIUMAn Out-of-Bounds Read vulnerability exists in the ASUS Business System Control Interface driver. This vulnerability can be triggered by an uEPSS 0.1%CVE-2021-25488MEDIUMLack of boundary checking of a buffer in recv_data() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read.EPSS 0.1%CVE-2022-25819MEDIUMOOB read vulnerability in hdcp2 device node prior to SMR Mar-2022 Release 1 allow an attacker to view Kernel stack memory.EPSS 0.1%CVE-2026-0799HIGHOOBR and OOBW in libpcap before 1.10.7EPSS 0.1%CVE-2026-104042MEDIUMSssd: sssd: denial of service via out-of-bounds read in pam responderEPSS 0.1%CVE-2025-21438HIGHOut-of-bounds Read in Windows WLAN HostEPSS 0.1%