Weaknesses of type CWE-125
5,226 resultsLeitura fora dos limites de memória
Quando o código tenta ler dados além do tamanho alocado de um buffer, array ou estrutura de dados. O programa acessa memória que não deveria, podendo vazar informações sensíveis, causar travamento ou ser explorado para executar código arbitrário.
Example
Um validador de imagem PNG que lê o tamanho do chunk do header mas não verifica se esse tamanho é compatível com o arquivo; ao processar, lê bytes da memória adjacente, expondo dados de outras estruturas ou causando crash.
How to mitigate
Sempre validar comprimentos e índices antes de acessar buffers; usar funções seguras (strncpy em vez de strcpy, bounds checking em loops); compilar com sanitizadores (AddressSanitizer, Valgrind) para detectar em tempo de teste.
CVE-2023-32876MEDIUMIn keyInstall, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure witEPSS 0.1%CVE-2024-27231MEDIUMIn tmu_get_tr_stats of tmu.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disEPSS 0.1%CVE-2023-40124MEDIUMIn multiple locations, there is a possible cross-user read due to a confused deputy. This could lead to local information disclosure of photEPSS 0.1%CVE-2024-29744MEDIUMIn tmu_get_gov_time_windows, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discEPSS 0.1%CVE-2022-47458MEDIUMIn wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2026-81645MEDIUMOut-of-bounds read vulnerability in the graphics module. Successful exploitation of this vulnerability may affect availability.EPSS 0.1%CVE-2025-20651MEDIUMIn da, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure, if an attackerEPSS 0.1%CVE-2018-9390MEDIUMIn procfile_write of gl_proc.c, there is a possible out of bounds read of a
function pointer due to an incorrect bounds check. This couEPSS 0.1%CVE-2023-32880MEDIUMIn battery, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with SEPSS 0.1%CVE-2023-21080MEDIUMIn register_notification_rsp of btif_rc.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local iEPSS 0.1%CVE-2024-27225MEDIUMIn sendHciCommand of bluetooth_hci.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local informEPSS 0.1%CVE-2023-20935MEDIUMIn deserialize of multiple files, there is a possible out of bounds read due to a missing bounds check. This could lead to local informationEPSS 0.1%CVE-2023-21112MEDIUMIn AnalyzeMfcResp of NxpMfcReader.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local informaEPSS 0.1%CVE-2024-20045LOWIn audio, there is a possible out of bounds read due to an incorrect calculation of buffer size. This could lead to local information discloEPSS 0.1%CVE-2018-9407MEDIUMIn emmc_rpmb_ioctl of emmc_rpmb.c, there is an Information Disclosure due to a Missing Bounds Check. This could lead to Information DisclosEPSS 0.1%CVE-2024-29755MEDIUMIn tmu_get_pi of tmu.c, there is a possible out of bounds read due to improper input validation. This could lead to local information discloEPSS 0.1%CVE-2024-29747MEDIUMIn _dvfs_get_lv of dvfs.c, there is a possible out of bounds read due to a missing null check. This could lead to local information disclosuEPSS 0.1%CVE-2018-9482MEDIUMIn intr_data_copy_cb of btif_hd.cc, there is a possible out of bounds read due to an integer overflow. This could lead to local information EPSS 0.1%CVE-2025-20768HIGHIn display, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a maliEPSS 0.1%CVE-2025-21464MEDIUMOut-of-bounds Read in CoreEPSS 0.1%