Fallos del tipo CWE-125

5159 resultados

Leitura fora dos limites do buffer

Ocorre quando o código tenta acessar dados além das fronteiras válidas de um buffer (array, string, estrutura), lendo memória que não deveria. O risco é expor informações sensíveis da memória adjacente ou causar crash da aplicação.

Ejemplo

Uma função que processa strings sem validar o tamanho da entrada pode ler bytes além do final da string alocada, vazando dados de memória ou causando segmentation fault. Exemplo: strcpy() copiando para buffer menor sem checagem.

Cómo mitigar

Use funções seguras com limite explícito (strlen com buffer_size, strncpy, snprintf), valide índices antes de acessar arrays, e ative verificações de limite em tempo de compilação ou execução (-ftrapv, ASAN, bounds checking).

CVE-2026-27287HIGHInCopy | Out-of-bounds Read (CWE-125)EPSS 0.3%CVE-2024-49511MEDIUMInDesign Desktop | Out-of-bounds Read (CWE-125)EPSS 0.3%CVE-2024-49510MEDIUMInDesign Desktop | Out-of-bounds Read (CWE-125)EPSS 0.3%CVE-2024-57822MEDIUMIn Raptor RDF Syntax Library through 2.0.16, there is a heap-based buffer over-read when parsing triples with the nquads parser in raptor_ntEPSS 0.3%CVE-2025-70101MEDIUMAn out-of-bounds read in the ext4_ext_binsearch_idx function in src/ext4_extent.c of the lwext4 1.0.0 library allows attackers to cause a deEPSS 0.3%CVE-2026-47222MEDIUMNanaZip: Heap out-of-bounds read in NanaZip AVB property descriptor parser via unsigned integer underflowEPSS 0.3%CVE-2024-28579MEDIUMBuffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the FEPSS 0.3%CVE-2021-25494MEDIUMA possible buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary coEPSS 0.3%CVE-2023-29576MEDIUMBento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_TrunAtom::SetDataOffset(int) function in Ap4TrunAtom.h.EPSS 0.3%CVE-2022-49560HIGHexfat: check if cluster num is validEPSS 0.3%CVE-2026-5856HIGHContiki-NG DNS/mDNS Resolver Out-of-Bounds Read via Unchecked skip_name Traversal Before Transaction-ID ValidationEPSS 0.3%CVE-2026-11279HIGHOut of bounds read in DevTools in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox EPSS 0.3%CVE-2022-49395HIGHum: Fix out-of-bounds read in LDT setupEPSS 0.3%CVE-2026-24852MEDIUMiccDEV has a heap-buffer-overflow in icXmlParseTextString()EPSS 0.3%CVE-2026-86930CRITICALAn out-of-bounds read vulnerability in FileMaker Server for Linux allowed an attacker uploading a specially crafted image file to a containeEPSS 0.3%CVE-2026-5282HIGHOut of bounds read in WebCodecs in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to perform an out of bounds memory read vEPSS 0.3%CVE-2025-24182MEDIUMAn out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.EPSS 0.3%CVE-2024-20713MEDIUMAdobe Substance 3D Stager v2.1.1 Vulnerability IVEPSS 0.3%CVE-2024-20712MEDIUMAdobe Substance 3D Stager v2.1.1 Vulnerability IIIEPSS 0.3%CVE-2022-27823MEDIUMImproper size check in sapefd_parse_meta_HEADER_old function of libsapeextractor library prior to SMR Apr-2022 Release 1 allows out of boundEPSS 0.3%