CWE-125— Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.— MITRE CWE catalog
9,162 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-125page 11 of 184
- CVE-2017-13022CRITICALCVSS 9.8EG 9.82017-09-14
The IP parser in tcpdump before 4.9.2 has a buffer over-read in print-ip.c:ip_printroute().
- CVE-2017-13023CRITICALCVSS 9.8EG 9.82017-09-14
The IPv6 mobility parser in tcpdump before 4.9.2 has a buffer over-read in print-mobility.c:mobility_opt_print().
- CVE-2017-13024CRITICALCVSS 9.8EG 9.82017-09-14
The IPv6 mobility parser in tcpdump before 4.9.2 has a buffer over-read in print-mobility.c:mobility_opt_print().
- CVE-2017-13025CRITICALCVSS 9.8EG 9.82017-09-14
The IPv6 mobility parser in tcpdump before 4.9.2 has a buffer over-read in print-mobility.c:mobility_opt_print().
- CVE-2017-13026CRITICALCVSS 9.8EG 9.82017-09-14
The ISO IS-IS parser in tcpdump before 4.9.2 has a buffer over-read in print-isoclns.c, several functions.
- CVE-2017-13027CRITICALCVSS 9.8EG 9.82017-09-14
The LLDP parser in tcpdump before 4.9.2 has a buffer over-read in print-lldp.c:lldp_mgmt_addr_tlv_print().
- CVE-2017-13028CRITICALCVSS 9.8EG 9.82017-09-14
The BOOTP parser in tcpdump before 4.9.2 has a buffer over-read in print-bootp.c:bootp_print().
- CVE-2017-13029CRITICALCVSS 9.8EG 9.82017-09-14
The PPP parser in tcpdump before 4.9.2 has a buffer over-read in print-ppp.c:print_ccp_config_options().
- CVE-2017-13030CRITICALCVSS 9.8EG 9.82017-09-14
The PIM parser in tcpdump before 4.9.2 has a buffer over-read in print-pim.c, several functions.
- CVE-2017-13031CRITICALCVSS 9.8EG 9.82017-09-14
The IPv6 fragmentation header parser in tcpdump before 4.9.2 has a buffer over-read in print-frag6.c:frag6_print().
- CVE-2017-13032CRITICALCVSS 9.8EG 9.82017-09-14
The RADIUS parser in tcpdump before 4.9.2 has a buffer over-read in print-radius.c:print_attr_string().
- CVE-2017-13033CRITICALCVSS 9.8EG 9.82017-09-14
The VTP parser in tcpdump before 4.9.2 has a buffer over-read in print-vtp.c:vtp_print().
- CVE-2017-13034CRITICALCVSS 9.8EG 9.82017-09-14
The PGM parser in tcpdump before 4.9.2 has a buffer over-read in print-pgm.c:pgm_print().
- CVE-2017-13035CRITICALCVSS 9.8EG 9.82017-09-14
The ISO IS-IS parser in tcpdump before 4.9.2 has a buffer over-read in print-isoclns.c:isis_print_id().
- CVE-2017-13036CRITICALCVSS 9.8EG 9.82017-09-14
The OSPFv3 parser in tcpdump before 4.9.2 has a buffer over-read in print-ospf6.c:ospf6_decode_v3().
- CVE-2017-13037CRITICALCVSS 9.8EG 9.82017-09-14
The IP parser in tcpdump before 4.9.2 has a buffer over-read in print-ip.c:ip_printts().
- CVE-2017-13038CRITICALCVSS 9.8EG 9.82017-09-14
The PPP parser in tcpdump before 4.9.2 has a buffer over-read in print-ppp.c:handle_mlppp().
- CVE-2017-13039CRITICALCVSS 9.8EG 9.82017-09-14
The ISAKMP parser in tcpdump before 4.9.2 has a buffer over-read in print-isakmp.c, several functions.
- CVE-2017-13040CRITICALCVSS 9.8EG 9.82017-09-14
The MPTCP parser in tcpdump before 4.9.2 has a buffer over-read in print-mptcp.c, several functions.
- CVE-2017-13041CRITICALCVSS 9.8EG 9.82017-09-14
The ICMPv6 parser in tcpdump before 4.9.2 has a buffer over-read in print-icmp6.c:icmp6_nodeinfo_print().
- CVE-2017-13042CRITICALCVSS 9.8EG 9.82017-09-14
The HNCP parser in tcpdump before 4.9.2 has a buffer over-read in print-hncp.c:dhcpv6_print().
- CVE-2017-13043CRITICALCVSS 9.8EG 9.82017-09-14
The BGP parser in tcpdump before 4.9.2 has a buffer over-read in print-bgp.c:decode_multicast_vpn().
- CVE-2017-13044CRITICALCVSS 9.8EG 9.82017-09-14
The HNCP parser in tcpdump before 4.9.2 has a buffer over-read in print-hncp.c:dhcpv4_print().
- CVE-2017-13045CRITICALCVSS 9.8EG 9.82017-09-14
The VQP parser in tcpdump before 4.9.2 has a buffer over-read in print-vqp.c:vqp_print().
- CVE-2017-13046CRITICALCVSS 9.8EG 9.82017-09-14
The BGP parser in tcpdump before 4.9.2 has a buffer over-read in print-bgp.c:bgp_attr_print().
- CVE-2017-13047CRITICALCVSS 9.8EG 9.82017-09-14
The ISO ES-IS parser in tcpdump before 4.9.2 has a buffer over-read in print-isoclns.c:esis_print().
- CVE-2017-13048CRITICALCVSS 9.8EG 9.82017-09-14
The RSVP parser in tcpdump before 4.9.2 has a buffer over-read in print-rsvp.c:rsvp_obj_print().
- CVE-2017-13049CRITICALCVSS 9.8EG 9.82017-09-14
The Rx protocol parser in tcpdump before 4.9.2 has a buffer over-read in print-rx.c:ubik_print().
- CVE-2017-13050CRITICALCVSS 9.8EG 9.82017-09-14
The RPKI-Router parser in tcpdump before 4.9.2 has a buffer over-read in print-rpki-rtr.c:rpki_rtr_pdu_print().
- CVE-2017-13051CRITICALCVSS 9.8EG 9.82017-09-14
The RSVP parser in tcpdump before 4.9.2 has a buffer over-read in print-rsvp.c:rsvp_obj_print().
- CVE-2017-13052CRITICALCVSS 9.8EG 9.82017-09-14
The CFM parser in tcpdump before 4.9.2 has a buffer over-read in print-cfm.c:cfm_print().
- CVE-2017-13053CRITICALCVSS 9.8EG 9.82017-09-14
The BGP parser in tcpdump before 4.9.2 has a buffer over-read in print-bgp.c:decode_rt_routing_info().
- CVE-2017-13054CRITICALCVSS 9.8EG 9.82017-09-14
The LLDP parser in tcpdump before 4.9.2 has a buffer over-read in print-lldp.c:lldp_private_8023_print().
- CVE-2017-13055CRITICALCVSS 9.8EG 9.82017-09-14
The ISO IS-IS parser in tcpdump before 4.9.2 has a buffer over-read in print-isoclns.c:isis_print_is_reach_subtlv().
- CVE-2017-13134MEDIUMCVSS 6.5EG 6.52017-08-23
In ImageMagick 7.0.6-6 and GraphicsMagick 1.3.26, a heap-based buffer over-read was found in the function SFWScan in coders/sfw.c, which allows attackers to cause a denial of service via a crafted file.
- CVE-2017-13139CRITICALCVSS 9.8EG 9.82017-08-23
In ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1, the ReadOneMNGImage function in coders/png.c has an out-of-bounds read with the MNG CLIP chunk.
- CVE-2017-13160CRITICALCVSS 9.8EG 9.82017-12-06
A remote code execution vulnerability in the Android system (bluetooth). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID A-37160362.
- CVE-2017-13258HIGHCVSS 7.5EG 7.52018-04-04
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exp…
- CVE-2017-13259HIGHCVSS 7.5EG 7.52018-04-04
In functionality implemented in sdp_discovery.cc, there are possible out of bounds reads due to missing bounds checks. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not…
- CVE-2017-13260HIGHCVSS 7.5EG 7.52018-04-04
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exp…
- CVE-2017-13261HIGHCVSS 7.5EG 7.52018-04-04
In bnep_process_control_packet of bnep_utils.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not…
- CVE-2017-13262MEDIUMCVSS 6.5EG 6.52018-04-04
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing length decrement operation. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not …
- CVE-2017-13275MEDIUMCVSS 5.5EG 5.52018-04-04
In getVSCoverage of CmapCoverage.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional privileges needed. User interaction is needed for exploitatio…
- CVE-2017-13280HIGHCVSS 7.5EG 7.52018-04-04
In the FrameSequence_gif::FrameSequence_gif function of libframesequence, there is a out of bounds read due to a missing bounds check. This could lead to a remote denial of service with no additional execution privileges needed. User inter…
- CVE-2017-13290MEDIUMCVSS 6.2EG 6.22018-04-04
In sdp_server_handle_client_req of sdp_server.cc, there is an out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed …
- CVE-2017-13305HIGHCVSS 7.1EG 7.12018-04-04
A information disclosure vulnerability in the Upstream kernel encrypted-keys. Product: Android. Versions: Android kernel. Android ID: A-70526974.
- CVE-2017-13317MEDIUMCVSS 5.7EG 5.72025-01-28
In HeifDecoderImpl::getScanline of HeifDecoderImpl.cpp, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure with no additional execution privileges needed. User interact…
- CVE-2017-13318MEDIUMCVSS 5.7EG 5.72025-01-28
In HeifDataSource::readAt of HeifDecoderImpl.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is neede…
- CVE-2017-13320MEDIUMCVSS 6.5EG 6.52024-11-27
In impeg2d_bit_stream_flush() of libmpeg2dec there is a possible OOB read due to a missing bounds check. This could lead to Remote DoS with no additional execution privileges needed. User interaction is needed for exploitation.
- CVE-2017-13321MEDIUMCVSS 5.5EG 6.22024-11-27
In SensorService::isDataInjectionEnabled of frameworks/native/services/sensorservice/SensorService.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additi…
Map vulnerabilities like CWE-125 to your infrastructure
EchelonGraph correlates every CVE — across CWE-125 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →