CWE-125— Out-of-bounds Read
7,811 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-125page 76 of 157
- CVE-2022-23574HIGHCVSS 8.8EG 8.82022-02-04
Tensorflow is an Open Source Machine Learning Framework. There is a typo in TensorFlow's `SpecializeType` which results in heap OOB read/write. Due to a typo, `arg` is initialized to the `i`th mutable argument in a loop where the loop inde…
- CVE-2022-23592HIGHCVSS 8.1EG 8.12022-02-04
Tensorflow is an Open Source Machine Learning Framework. TensorFlow's type inference can cause a heap out of bounds read as the bounds checking is done in a `DCHECK` (which is a no-op during production). An attacker can control the `input_…
- CVE-2022-23594HIGHCVSS 8.8EG 8.82022-02-04
Tensorflow is an Open Source Machine Learning Framework. The TFG dialect of TensorFlow (MLIR) makes several assumptions about the incoming `GraphDef` before converting it to the MLIR-based dialect. If an attacker changes the `SavedModel` f…
- CVE-2022-23645MEDIUMCVSS 6.2EG 6.22022-02-18
swtpm is a libtpms-based TPM emulator with socket, character device, and Linux CUSE interface. Versions prior to 0.5.3, 0.6.2, and 0.7.1 are vulnerable to out-of-bounds read. A specially crafted header of swtpm's state, where the blobheade…
- CVE-2022-2380MEDIUMCVSS 5.5EG 5.52022-07-13
The Linux kernel was found vulnerable out of bounds memory access in the drivers/video/fbdev/sm712fb.c:smtcfb_read() function. The vulnerability could result in local attackers being able to crash the kernel.
- CVE-2022-23805HIGHCVSS 7.1EG 7.12022-02-04
A security out-of-bounds read information disclosure vulnerability in Trend Micro Worry-Free Business Security Server could allow a local attacker to send garbage data to a specific named pipe and crash the server. Please note: an attacker…
- CVE-2022-23937MEDIUMCVSS 5.3EG 7.52022-03-29
In Wind River VxWorks 6.9 and 7, a specific crafted packet may lead to an out-of-bounds read during an IKE initial exchange scenario.
- CVE-2022-24055MEDIUMCVSS 5.5EG 5.52022-02-18
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Sante DICOM Viewer Pro 11.8.7.0. User interaction is required to exploit this vulnerability in that the target must visit a malicious…
- CVE-2022-24060MEDIUMCVSS 5.5EG 5.52022-02-18
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Sante DICOM Viewer Pro 11.8.7.0. User interaction is required to exploit this vulnerability in that the target must visit a malicious…
- CVE-2022-24090MEDIUMCVSS 5.5EG 5.52022-03-11
Adobe Photoshop versions 23.1.1 (and earlier) and 22.5.5 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigatio…
- CVE-2022-24099LOWCVSS 3.3EG 3.32022-05-06
Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigation…
- CVE-2022-24198MEDIUMCVSS 6.5EG 6.52022-02-01
iText v7.1.17 was discovered to contain an out-of-bounds exception via the component ARCFOUREncryption.encryptARCFOUR, which allows attackers to cause a Denial of Service (DoS) via a crafted PDF file. NOTE: Vendor does not view this as a v…
- CVE-2022-24314HIGHCVSS 7.5EG 7.52022-02-09
A CWE-125: Out-of-bounds Read vulnerability exists that could cause memory leaks potentially resulting in denial of service when an attacker repeatedly sends a specially crafted message. Affected Product: Interactive Graphical SCADA System…
- CVE-2022-24315HIGHCVSS 7.5EG 7.52022-02-09
A CWE-125: Out-of-bounds Read vulnerability exists that could cause denial of service when an attacker repeatedly sends a specially crafted message. Affected Product: Interactive Graphical SCADA System Data Server (V15.0.0.22020 and prior)
- CVE-2022-24352HIGHCVSS 8.8EG 8.82023-03-28
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link AC1750 prior to 211210 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists with…
- CVE-2022-24353HIGHCVSS 8.8EG 8.82023-03-28
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link AC1750 1.1.4 Build 20211022 rel.59103(5553) routers. Authentication is not required to exploit this vulnerability. The spec…
- CVE-2022-24356HIGHCVSS 8.8EG 8.82022-02-18
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader Foxit reader 11.0.1.0719 macOS. User interaction is required to exploit this vulnerability in that the target must visit a m…
- CVE-2022-24358HIGHCVSS 8.8EG 8.82022-02-18
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.1.0.52543. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or o…
- CVE-2022-24370MEDIUMCVSS 6.5EG 6.52022-02-18
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader Foxit reader 11.0.1.0719 macOS. User interaction is required to exploit this vulnerability in that the target must v…
- CVE-2022-24383HIGHCVSS 7.8EG 7.82022-04-12
The affected product is vulnerable to an out-of-bounds read, which may result in code execution
- CVE-2022-2469LOWCVSS 3.8EG 8.12022-07-19
GNU SASL libgsasl server-side read-out-of-bounds with malicious authenticated GSS-API client
- CVE-2022-24786CRITICALCVSS 9.8EG 9.82022-04-06
PJSIP is a free and open source multimedia communication library written in C. PJSIP versions 2.12 and prior do not parse incoming RTCP feedback RPSI (Reference Picture Selection Indication) packet, but any app that directly uses pjmedia_r…
- CVE-2022-24907HIGHCVSS 7.8EG 7.82023-03-28
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.1.0.52543. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or o…
- CVE-2022-24908HIGHCVSS 7.8EG 7.82023-03-28
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.1.0.52543. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or o…
- CVE-2022-24971HIGHCVSS 8.8EG 8.82022-02-18
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.1.0.52543. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or o…
- CVE-2022-25653MEDIUMCVSS 6.8EG 5.52022-09-16
Information disclosure in video due to buffer over-read while processing avi file in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
- CVE-2022-25663MEDIUMCVSS 5.5EG 5.52022-10-19
Possible buffer overflow due to lack of buffer length check during management frame Rx handling lead to denial of service in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity
- CVE-2022-25665MEDIUMCVSS 6.8EG 7.12022-10-19
Information disclosure due to buffer over read in kernel in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Mobile
- CVE-2022-25669HIGHCVSS 7.5EG 7.52022-09-16
Denial of service in video due to buffer over read while parsing MP4 clip in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Sna…
- CVE-2022-25670HIGHCVSS 7.5EG 7.52022-09-16
Denial of service in WLAN HOST due to buffer over read while unpacking frames in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT…
- CVE-2022-25676MEDIUMCVSS 6.8EG 5.52022-11-15
Information disclosure in video due to buffer over-read while parsing avi files in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
- CVE-2022-25706HIGHCVSS 8.2EG 7.52022-09-16
Information disclosure in Bluetooth driver due to buffer over-read while reading l2cap length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdrago…
- CVE-2022-25719HIGHCVSS 8.2EG 9.12022-10-19
Information disclosure in WLAN due to improper length check while processing authentication handshake in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial…
- CVE-2022-25726HIGHCVSS 8.2EG 7.52023-04-13
Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet
- CVE-2022-25728HIGHCVSS 8.2EG 7.52023-02-12
Information disclosure in modem due to buffer over-read while processing response from DNS server
- CVE-2022-25730HIGHCVSS 8.2EG 7.52023-04-13
Information disclosure in modem due to improper check of IP type while processing DNS server query
- CVE-2022-25731HIGHCVSS 7.5EG 7.52023-04-13
Information disclosure in modem due to buffer over-read while processing packets from DNS server
- CVE-2022-25732HIGHCVSS 8.2EG 7.52023-02-12
Information disclosure in modem due to buffer over read in dns client due to missing length check
- CVE-2022-25736HIGHCVSS 7.5EG 7.52022-10-19
Denial of service in WLAN due to out-of-bound read happens while processing VHT action frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon…
- CVE-2022-25738HIGHCVSS 8.2EG 7.52023-02-12
Information disclosure in modem due to buffer over-red while performing checksum of packet received
- CVE-2022-25747HIGHCVSS 8.2EG 7.52023-04-13
Information disclosure in modem due to improper input validation during parsing of upcoming CoAP message
- CVE-2022-25749HIGHCVSS 7.5EG 7.52022-10-19
Transient Denial-of-Service in WLAN due to buffer over-read while parsing MDNS frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Indus…
- CVE-2022-25794HIGHCVSS 7.8EG 7.82022-04-11
An Out-Of-Bounds Read Vulnerability in Autodesk FBX Review version 1.5.2 and prior may lead to code execution through maliciously crafted ActionScript Byte Code 'ABC' files or information disclosure. ABC files are created by the Flash comp…
- CVE-2022-2581HIGHCVSS 7.8EG 7.82022-08-01
Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.0104.
- CVE-2022-25819MEDIUMCVSS 5.3EG 5.52022-03-10
OOB read vulnerability in hdcp2 device node prior to SMR Mar-2022 Release 1 allow an attacker to view Kernel stack memory.
- CVE-2022-25821LOWCVSS 3.3EG 7.12022-03-10
Improper use of SMS buffer pointer in Shannon baseband prior to SMR Mar-2022 Release 1 allows OOB read.
- CVE-2022-25872MEDIUMCVSS 5.3EG 5.32022-06-17
All versions of package fast-string-search are vulnerable to Out-of-bounds Read due to incorrect memory freeing and length calculation for any non-string input as the source. This allows the attacker to read previously allocated memory.
- CVE-2022-25942HIGHCVSS 7.8EG 7.82022-08-22
An out-of-bounds read vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
- CVE-2022-2605MEDIUMCVSS 6.5EG 6.52022-08-12
Out of bounds read in Dawn in Google Chrome prior to 104.0.5112.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
- CVE-2022-26280MEDIUMCVSS 6.5EG 9.12022-03-28
Libarchive v3.6.0 was discovered to contain an out-of-bounds read via the component zipx_lzma_alone_init.
Map vulnerabilities like CWE-125 to your infrastructure
EchelonGraph correlates every CVE — across CWE-125 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →