CWE-125— Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.— MITRE CWE catalog
9,162 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-125page 6 of 184
- CVE-2016-7502HIGHCVSS 7.8EG 7.82016-12-23
The cavs_idct8_add_c function in libavcodec/cavsdsp.c in FFmpeg before 3.1.4 is vulnerable to reading out-of-bounds memory when decoding with cavs_decode.
- CVE-2016-7506HIGHCVSS 7.5EG 7.52016-10-29
An out-of-bounds read vulnerability was observed in Sp_replace_regexp function of Artifex Software, Inc. MuJS before 5000749f5afe3b956fc916e407309de840997f4a. A successful exploitation of this issue can lead to code execution or denial of …
- CVE-2016-7510MEDIUMCVSS 6.5EG 6.52017-02-17
The read_line_table_program function in dwarf_line_table_reader_common.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via crafted input.
- CVE-2016-7514MEDIUMCVSS 6.5EG 6.52017-04-20
The ReadPSDChannelPixels function in coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.
- CVE-2016-7515MEDIUMCVSS 6.5EG 6.52017-04-19
The ReadRLEImage function in coders/rle.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via vectors related to the number of pixels.
- CVE-2016-7516MEDIUMCVSS 6.5EG 6.52017-04-20
The ReadVIFFImage function in coders/viff.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted VIFF file.
- CVE-2016-7517MEDIUMCVSS 6.5EG 6.52017-04-20
The EncodeImage function in coders/pict.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PICT file.
- CVE-2016-7518MEDIUMCVSS 6.5EG 6.52017-04-20
The ReadSUNImage function in coders/sun.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted SUN file.
- CVE-2016-7519MEDIUMCVSS 6.5EG 6.52017-04-19
The ReadRLEImage function in coders/rle.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
- CVE-2016-7520MEDIUMCVSS 6.5EG 6.52017-04-20
Heap-based buffer overflow in coders/hdr.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted HDR file.
- CVE-2016-7521MEDIUMCVSS 6.5EG 6.52017-04-20
Heap-based buffer overflow in coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.
- CVE-2016-7522MEDIUMCVSS 6.5EG 6.52017-04-19
The ReadPSDImage function in MagickCore/locale.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.
- CVE-2016-7523MEDIUMCVSS 6.5EG 6.52020-02-06
coders/meta.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
- CVE-2016-7524MEDIUMCVSS 6.5EG 6.52020-02-06
coders/meta.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
- CVE-2016-7525MEDIUMCVSS 6.5EG 6.52017-04-20
Heap-based buffer overflow in coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.
- CVE-2016-7527MEDIUMCVSS 6.5EG 6.52017-04-20
coders/wpg.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
- CVE-2016-7528MEDIUMCVSS 6.5EG 6.52017-04-19
The ReadVIFFImage function in coders/viff.c in ImageMagick allows remote attackers to cause a denial of service (segmentation fault) via a crafted VIFF file.
- CVE-2016-7529MEDIUMCVSS 6.5EG 6.52017-04-19
coders/xcf.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted XCF file.
- CVE-2016-7532MEDIUMCVSS 6.5EG 6.52017-04-20
coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.
- CVE-2016-7533MEDIUMCVSS 6.5EG 6.52017-04-19
The ReadWPGImage function in coders/wpg.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WPG file.
- CVE-2016-7534MEDIUMCVSS 6.5EG 6.52017-04-20
The generic decoder in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted file.
- CVE-2016-7537MEDIUMCVSS 6.5EG 6.52017-04-19
MagickCore/memory.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted PDB file.
- CVE-2016-7563HIGHCVSS 7.5EG 7.52017-01-18
The chartorune function in Artifex Software MuJS allows attackers to cause a denial of service (out-of-bounds read) via a * (asterisk) at the end of the input.
- CVE-2016-7643HIGHCVSS 8.1EG 8.12017-02-20
An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchOS before 3.1.3 is affected. The issue involves the "ImageIO" component. It allows remote attackers to obtain sensitive …
- CVE-2016-7799MEDIUMCVSS 6.5EG 6.52017-01-18
MagickCore/profile.c in ImageMagick before 7.0.3-2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
- CVE-2016-7914MEDIUMCVSS 5.5EG 5.52016-11-16
The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.5.3 does not check whether a slot is a leaf, which allows local users to obtain sensitive information from kernel memory or cause a denial…
- CVE-2016-7915MEDIUMCVSS 5.5EG 5.52016-11-16
The hid_input_field function in drivers/hid/hid-core.c in the Linux kernel before 4.6 allows physically proximate attackers to obtain sensitive information from kernel memory or cause a denial of service (out-of-bounds read) by connecting …
- CVE-2016-7917MEDIUMCVSS 5.0EG 5.02016-11-16
The nfnetlink_rcv_batch function in net/netfilter/nfnetlink.c in the Linux kernel before 4.5 does not check whether a batch message's length field is large enough, which allows local users to obtain sensitive information from kernel memory…
- CVE-2016-7945HIGHCVSS 7.5EG 7.52016-12-13
Multiple integer overflows in X.org libXi before 1.7.7 allow remote X servers to cause a denial of service (out-of-bounds memory access or infinite loop) via vectors involving length fields.
- CVE-2016-7951CRITICALCVSS 9.8EG 9.82016-12-13
Multiple integer overflows in X.org libXtst before 1.2.3 allow remote X servers to trigger out-of-bounds memory access operations by leveraging the lack of range checks.
- CVE-2016-7969HIGHCVSS 7.5EG 7.52017-03-03
The wrap_lines_smart function in ass_render.c in libass before 0.13.4 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors, related to "0/3 line wrapping equalization."
- CVE-2016-8334MEDIUMCVSS 3.3EG 6.82017-01-06
A large out-of-bounds read on the heap vulnerability in Foxit PDF Reader can potentially be abused for information disclosure. Combined with another vulnerability, it can be used to leak heap memory layout and in bypassing ASLR.
- CVE-2016-8388HIGHCVSS 7.8EG 7.82017-02-28
An exploitable arbitrary heap-overwrite vulnerability exists within Iceni Argus. When it attempts to convert a malformed PDF to XML, it will explicitly trust an index within the specific font object and use it to write the font's name to a…
- CVE-2016-8568MEDIUMCVSS 5.5EG 5.52017-02-03
The git_commit_message function in oid.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (out-of-bounds read) via a cat-file command with a crafted object file.
- CVE-2016-8620CRITICALCVSS 6.5EG 9.82018-08-01
The 'globbing' feature in curl before version 7.51.0 has a flaw that leads to integer overflow and out-of-bounds read via user controlled input.
- CVE-2016-8621HIGHCVSS 5.3EG 7.52018-07-31
The `curl_getdate` function in curl before version 7.51.0 is vulnerable to an out of bounds read if it receives an input with one digit short.
- CVE-2016-8678MEDIUMCVSS 5.5EG 5.52017-02-15
The IsPixelMonochrome function in MagickCore/pixel-accessor.h in ImageMagick 7.0.3.0 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted file. NOTE: the vendor says "This is a Q64 issue and we…
- CVE-2016-8679MEDIUMCVSS 6.5EG 6.52017-02-15
The _dwarf_get_size_of_val function in libdwarf/dwarf_util.c in Libdwarf before 20161124 allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file.
- CVE-2016-8680MEDIUMCVSS 6.5EG 6.52017-02-15
The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file.
- CVE-2016-8681MEDIUMCVSS 5.5EG 5.52017-02-15
The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file.
- CVE-2016-8682HIGHCVSS 7.5EG 7.52017-02-15
The ReadSCTImage function in coders/sct.c in GraphicsMagick 1.3.25 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted SCT header.
- CVE-2016-8688MEDIUMCVSS 5.5EG 5.52017-02-15
The mtree bidder in libarchive 3.2.1 does not keep track of line sizes when extending the read-ahead, which allows remote attackers to cause a denial of service (crash) via a crafted file, which triggers an invalid read in the (1) detect_f…
- CVE-2016-8689HIGHCVSS 7.5EG 7.52017-02-15
The read_Header function in archive_read_support_format_7zip.c in libarchive 3.2.1 allows remote attackers to cause a denial of service (out-of-bounds read) via multiple EmptyStream attributes in a header in a 7zip archive.
- CVE-2016-8875MEDIUMCVSS 5.3EG 5.32016-10-31
The ConvertToPDF plugin in Foxit Reader and PhantomPDF before 8.1 on Windows, when the gflags app is enabled, allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted TIFF image, aka "Da…
- CVE-2016-8876HIGHCVSS 7.5EG 7.52016-10-31
Out-of-Bounds read vulnerability in Foxit Reader and PhantomPDF before 8.1 on Windows, when the gflags app is enabled, allows remote attackers to execute arbitrary code via a crafted TIFF image embedded in the XFA stream in a PDF document,…
- CVE-2016-8878HIGHCVSS 8.8EG 8.82016-10-31
Out-of-Bounds read vulnerability in Foxit Reader and PhantomPDF before 8.1 on Windows, when the gflags app is enabled, allows remote attackers to execute arbitrary code via a crafted BMP image embedded in the XFA stream in a PDF document, …
- CVE-2016-9017HIGHCVSS 7.5EG 7.52016-10-28
Artifex Software, Inc. MuJS before a5c747f1d40e8d6659a37a8d25f13fb5acf8e767 allows context-dependent attackers to obtain sensitive information by using the "opname in crafted JavaScript file" approach, related to an "Out-of-Bounds read" is…
- CVE-2016-9036HIGHCVSS 7.5EG 7.52016-12-23
An exploitable incorrect return value vulnerability exists in the mp_check function of Tarantool's Msgpuck library 1.0.3. A specially crafted packet can cause the mp_check function to incorrectly return success when trying to check if deco…
- CVE-2016-9037HIGHCVSS 7.5EG 7.52016-12-23
An exploitable out-of-bounds array access vulnerability exists in the xrow_header_decode function of Tarantool 1.7.2.0-g8e92715. A specially crafted packet can cause the function to access an element outside the bounds of a global array th…
- CVE-2016-9050HIGHCVSS 8.2EG 8.22017-01-26
An exploitable out-of-bounds read vulnerability exists in the client message-parsing functionality of Aerospike Database Server 3.10.0.3. A specially crafted packet can cause an out-of-bounds read resulting in disclosure of memory within t…
Map vulnerabilities like CWE-125 to your infrastructure
EchelonGraph correlates every CVE — across CWE-125 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →