Weaknesses of type CWE-125
5,226 resultsLeitura fora dos limites de memória
Quando o código tenta ler dados além do tamanho alocado de um buffer, array ou estrutura de dados. O programa acessa memória que não deveria, podendo vazar informações sensíveis, causar travamento ou ser explorado para executar código arbitrário.
Example
Um validador de imagem PNG que lê o tamanho do chunk do header mas não verifica se esse tamanho é compatível com o arquivo; ao processar, lê bytes da memória adjacente, expondo dados de outras estruturas ou causando crash.
How to mitigate
Sempre validar comprimentos e índices antes de acessar buffers; usar funções seguras (strncpy em vez de strcpy, bounds checking em loops); compilar com sanitizadores (AddressSanitizer, Valgrind) para detectar em tempo de teste.
CVE-2024-20124MEDIUMIn vdec, there is a possible out of bounds read due to improper structure design. This could lead to local information disclosure with SysteEPSS 0.1%CVE-2024-47018MEDIUMIn pmucal_rae_handle_seq_int of flexpmu_cal_rae.c, there is a possible out of bounds read due to a buffer overflow. This could lead to localEPSS 0.1%CVE-2025-20655MEDIUMIn keymaster, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malEPSS 0.1%CVE-2024-47019MEDIUMIn ProtocolEmbmsSaiListAdapter::Init() of protocolembmsadapter.cpp, there is a possible out of bounds read due to a missing bounds check. ThEPSS 0.1%CVE-2025-20648MEDIUMIn apu, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additiEPSS 0.1%CVE-2024-20112MEDIUMIn isp, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with System executiEPSS 0.1%CVE-2024-32898MEDIUMIn ProtocolCellIdentityParserV4::Parse() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. ThEPSS 0.1%CVE-2024-47015MEDIUMIn ProtocolMiscHwConfigChangeAdapter::GetData() of protocolmiscadapter.cpp, there is a possible out-of-bounds read due to a missing bounds cEPSS 0.1%CVE-2024-32914MEDIUMIn tpu_get_int_state of tpu.c, there is a possible information disclosure due to uninitialized data. This could lead to local information diEPSS 0.1%CVE-2026-20429MEDIUMIn display, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicEPSS 0.1%CVE-2026-20424MEDIUMIn display, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicEPSS 0.1%CVE-2018-9410MEDIUMIn analyzeAxes of FontUtils.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information EPSS 0.1%CVE-2024-32904MEDIUMIn ProtocolVsimOperationAdapter() of protocolvsimadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This couEPSS 0.1%CVE-2024-53839MEDIUMIn GetCellInfoList() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to locEPSS 0.1%CVE-2024-29778MEDIUMIn ProtocolPsDedicatedBearInfoAdapter::processQosSession of protocolpsadapter.cpp, there is a possible out of bounds read due to a missing bEPSS 0.1%CVE-2024-47041HIGHIn valid_address of syscall.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local escalation EPSS 0.1%CVE-2026-102711MEDIUMTwo issues in the ThreadX loadable-module loader, reached when a device loads an attacker-controlled module object via `_txm_module_manager_EPSS 0.1%CVE-2026-106399LOWOut of bounds read in Skia in Google Chrome prior to 155.0.8059.39 allowed a local attacker leveraging social engineering to potentially reaEPSS 0.1%CVE-2026-0142MEDIUMIn iavb_parse_key_data of avb_rsa.c, there is a possible out of bounds read due to improper input validation. This could lead to local inforEPSS 0.1%CVE-2024-47028MEDIUMIn ffu_flash_pack of ffu.c, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosuEPSS 0.1%