Weaknesses of type CWE-125
5,226 resultsLeitura fora dos limites de memória
Quando o código tenta ler dados além do tamanho alocado de um buffer, array ou estrutura de dados. O programa acessa memória que não deveria, podendo vazar informações sensíveis, causar travamento ou ser explorado para executar código arbitrário.
Example
Um validador de imagem PNG que lê o tamanho do chunk do header mas não verifica se esse tamanho é compatível com o arquivo; ao processar, lê bytes da memória adjacente, expondo dados de outras estruturas ou causando crash.
How to mitigate
Sempre validar comprimentos e índices antes de acessar buffers; usar funções seguras (strncpy em vez de strcpy, bounds checking em loops); compilar com sanitizadores (AddressSanitizer, Valgrind) para detectar em tempo de teste.
CVE-2023-20742MEDIUMIn ril, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System exEPSS 0.1%CVE-2023-21013MEDIUMIn forceStaDisconnection of hostapd.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local infoEPSS 0.1%CVE-2023-20727MEDIUMIn wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System eEPSS 0.1%CVE-2023-35657MEDIUMIn bta_av_config_ind of bta_av_aact.cc, there is a possible out of bounds read due to type confusion. This could lead to local information dEPSS 0.1%CVE-2024-29754MEDIUMIn TMU_IPC_GET_TABLE, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure EPSS 0.1%CVE-2025-54637MEDIUMOut-of-bounds array access issue due to insufficient data verification in the kernel ambient light module.
Impact: Successful exploitation oEPSS 0.1%CVE-2018-9371HIGHIn the Mediatek Preloader, there are out of bounds reads and writes due to an exposed interface that allows arbitrary peripheral memory mappEPSS 0.1%CVE-2023-21200—In on_remove_iso_data_path of btm_iso_impl.h, there is a possible out of bounds read due to improper input validation. This could lead to loEPSS 0.1%CVE-2025-54644MEDIUMOut-of-bounds array access issue due to insufficient data verification in the kernel ambient light module.
Impact: Successful exploitation oEPSS 0.1%CVE-2023-20698MEDIUMIn keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with SyEPSS 0.1%CVE-2023-32875MEDIUMIn keyInstall, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure witEPSS 0.1%CVE-2023-20697MEDIUMIn keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with SyEPSS 0.1%CVE-2022-47363MEDIUMIn wlan driver, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service in wlan serEPSS 0.1%CVE-2023-20979MEDIUMIn GetNextSourceDataPacket of bta_av_co.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local iEPSS 0.1%CVE-2023-20706MEDIUMIn apu, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additiEPSS 0.1%CVE-2023-20703MEDIUMIn apu, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additiEPSS 0.1%CVE-2025-58314MEDIUMVulnerability of accessing invalid memory in the component driver module.
Impact: Successful exploitation of this vulnerability will affect EPSS 0.1%CVE-2026-56958MEDIUMIn gf_algo_get_cached_dump_data of gf_algo.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to localEPSS 0.1%CVE-2023-32876MEDIUMIn keyInstall, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure witEPSS 0.1%CVE-2023-40085LOWIn convertSubgraphFromHAL of ShimConverter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to locEPSS 0.1%