Falhas do tipo CWE-125

5.184 resultados

Leitura fora dos limites de memória

Ocorre quando o código tenta ler dados de uma posição de memória fora do intervalo alocado para um buffer ou array. O programa não valida o índice ou tamanho antes de acessar, causando leitura de dados inválidos, corrupção de informações ou revelação de dados sensíveis da memória adjacente.

Exemplo

Um processador de imagem PNG lê 4 bytes de um buffer de 2 bytes para validar uma assinatura, ou uma função copia uma string sem verificar se o índice fornecido pelo usuário extrapola o tamanho real do array. Em ambos os casos, dados fora do escopo pretendido são lidos.

Como mitigar

Sempre validar índices e comprimentos contra os limites reais do buffer antes de qualquer leitura. Usar funções seguras (ex: `strncpy` em vez de `strcpy`, bounds-checking em loops) e implementar testes com entradas extremas (size zero, índices negativos, valores muito grandes).

CVE-2024-47015MEDIUMIn ProtocolMiscHwConfigChangeAdapter::GetData() of protocolmiscadapter.cpp, there is a possible out-of-bounds read due to a missing bounds cEPSS 0.1%CVE-2026-20429MEDIUMIn display, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicEPSS 0.1%CVE-2024-32904MEDIUMIn ProtocolVsimOperationAdapter() of protocolvsimadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This couEPSS 0.1%CVE-2024-32898MEDIUMIn ProtocolCellIdentityParserV4::Parse() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. ThEPSS 0.1%CVE-2026-20424MEDIUMIn display, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicEPSS 0.1%CVE-2025-20648MEDIUMIn apu, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additiEPSS 0.1%CVE-2018-9410MEDIUMIn analyzeAxes of FontUtils.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information EPSS 0.1%CVE-2024-47041HIGHIn valid_address of syscall.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local escalation EPSS 0.1%CVE-2026-102711MEDIUMTwo issues in the ThreadX loadable-module loader, reached when a device loads an attacker-controlled module object via `_txm_module_manager_EPSS 0.1%CVE-2024-29778MEDIUMIn ProtocolPsDedicatedBearInfoAdapter::processQosSession of protocolpsadapter.cpp, there is a possible out of bounds read due to a missing bEPSS 0.1%CVE-2026-0142MEDIUMIn iavb_parse_key_data of avb_rsa.c, there is a possible out of bounds read due to improper input validation. This could lead to local inforEPSS 0.1%CVE-2026-0177MEDIUMIn do_sss_aes_gcm_256_op of crypto-aes.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local infEPSS 0.1%CVE-2025-36921MEDIUMIn ProtocolPsUnthrottleApn() of protocolpsadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could leadEPSS 0.1%CVE-2024-47028MEDIUMIn ffu_flash_pack of ffu.c, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosuEPSS 0.1%CVE-2024-47029MEDIUMIn TrustySharedMemoryManager::GetSharedMemory of ondevice/trusty/trusty_shared_memory_manager.cc, there is a possible out of bounds read dueEPSS 0.1%CVE-2024-47026MEDIUMIn gsc_gsa_rescue of gsc_gsa.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local informatioEPSS 0.1%CVE-2026-0131HIGHIn RtpPacket::decodePacket, there is a possible out of bounds access due to an integer overflow. This could lead to local escalation of privEPSS 0.1%CVE-2024-47034MEDIUMthere is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional exeEPSS 0.1%CVE-2026-25258HIGHOut-of-bounds Read in DSP ServiceEPSS 0.1%CVE-2026-25282HIGHOut-of-bounds Read in OOBMEPSS 0.1%