Falhas do tipo CWE-125

5.159 resultados

Leitura fora dos limites de memória

Ocorre quando o código tenta ler dados de uma posição de memória fora do intervalo alocado para um buffer ou array. O programa não valida o índice ou tamanho antes de acessar, causando leitura de dados inválidos, corrupção de informações ou revelação de dados sensíveis da memória adjacente.

Exemplo

Um processador de imagem PNG lê 4 bytes de um buffer de 2 bytes para validar uma assinatura, ou uma função copia uma string sem verificar se o índice fornecido pelo usuário extrapola o tamanho real do array. Em ambos os casos, dados fora do escopo pretendido são lidos.

Como mitigar

Sempre validar índices e comprimentos contra os limites reais do buffer antes de qualquer leitura. Usar funções seguras (ex: `strncpy` em vez de `strcpy`, bounds-checking em loops) e implementar testes com entradas extremas (size zero, índices negativos, valores muito grandes).

CVE-2024-49512MEDIUMInDesign Desktop | Out-of-bounds Read (CWE-125)EPSS 0.3%CVE-2026-27294HIGHAdobe Framemaker | Out-of-bounds Read (CWE-125)EPSS 0.3%CVE-2025-54325MEDIUMAn issue was discovered in VTS in Samsung Mobile Processor and Wearable Processor Exynos 1080, 1280, 2200, 1380, 1480, 2400, 1580, 2500, W92EPSS 0.3%CVE-2025-70101MEDIUMAn out-of-bounds read in the ext4_ext_binsearch_idx function in src/ext4_extent.c of the lwext4 1.0.0 library allows attackers to cause a deEPSS 0.3%CVE-2024-57822MEDIUMIn Raptor RDF Syntax Library through 2.0.16, there is a heap-based buffer over-read when parsing triples with the nquads parser in raptor_ntEPSS 0.3%CVE-2026-47222MEDIUMNanaZip: Heap out-of-bounds read in NanaZip AVB property descriptor parser via unsigned integer underflowEPSS 0.3%CVE-2022-49395HIGHum: Fix out-of-bounds read in LDT setupEPSS 0.3%CVE-2024-28579MEDIUMBuffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the FEPSS 0.3%CVE-2026-11279HIGHOut of bounds read in DevTools in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox EPSS 0.3%CVE-2021-25494MEDIUMA possible buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary coEPSS 0.3%CVE-2026-5856HIGHContiki-NG DNS/mDNS Resolver Out-of-Bounds Read via Unchecked skip_name Traversal Before Transaction-ID ValidationEPSS 0.3%CVE-2022-49560HIGHexfat: check if cluster num is validEPSS 0.3%CVE-2023-29576MEDIUMBento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_TrunAtom::SetDataOffset(int) function in Ap4TrunAtom.h.EPSS 0.3%CVE-2026-24852MEDIUMiccDEV has a heap-buffer-overflow in icXmlParseTextString()EPSS 0.3%CVE-2026-5282HIGHOut of bounds read in WebCodecs in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to perform an out of bounds memory read vEPSS 0.3%CVE-2026-86930CRITICALAn out-of-bounds read vulnerability in FileMaker Server for Linux allowed an attacker uploading a specially crafted image file to a containeEPSS 0.3%CVE-2022-26369MEDIUMOut-of-bounds read in some Intel(R) XMM(TM) 7560 Modem software before version M2_7560_R_01.2146.00 may allow a privileged user to potentialEPSS 0.3%CVE-2024-20712MEDIUMAdobe Substance 3D Stager v2.1.1 Vulnerability IIIEPSS 0.3%CVE-2024-20711MEDIUMAdobe Substance 3D Stager v2.1.1 Vulnerability VIIEPSS 0.3%CVE-2022-27823MEDIUMImproper size check in sapefd_parse_meta_HEADER_old function of libsapeextractor library prior to SMR Apr-2022 Release 1 allows out of boundEPSS 0.3%