CWE-129— Improper Validation of Array Index
The product uses untrusted input when calculating or using an array index, but the product does not validate or incorrectly validates the index to ensure the index references a valid position within the array.— MITRE CWE catalog
605 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-129page 6 of 13
- CVE-2021-4439HIGHCVSS 7.8EG 7.82024-06-20
In the Linux kernel, the following vulnerability has been resolved: isdn: cpai: check ctr->cnr to avoid array index out of bound The cmtp_add_connection() would add a cmtp session to a controller and run a kernel thread to process cmtp. …
- CVE-2021-46984HIGHCVSS 7.8EG 7.82024-02-28
In the Linux kernel, the following vulnerability has been resolved: kyber: fix out of bounds access when preempted __blk_mq_sched_bio_merge() gets the ctx and hctx for the current CPU and passes the hctx to ->bio_merge(). kyber_bio_merge…
- CVE-2021-47065HIGHCVSS 7.8EG 7.82024-02-29
In the Linux kernel, the following vulnerability has been resolved: rtw88: Fix array overrun in rtw_get_tx_power_params() Using a kernel with the Undefined Behaviour Sanity Checker (UBSAN) enabled, the following array overrun is logged: …
- CVE-2021-47135HIGHCVSS 7.8EG 7.82024-03-15
In the Linux kernel, the following vulnerability has been resolved: mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report Fix possible array out of bound access in mt7921_mcu_tx_rate_report. Remove unnecessary varibable in m…
- CVE-2021-47449HIGHCVSS 7.1EG 7.12024-05-22
In the Linux kernel, the following vulnerability has been resolved: ice: fix locking for Tx timestamp tracking flush Commit 4dd0d5c33c3e ("ice: add lock around Tx timestamp tracker flush") added a lock around the Tx timestamp tracker flo…
- CVE-2021-47547MEDIUMCVSS 4.4EG 4.42024-05-24
In the Linux kernel, the following vulnerability has been resolved: net: tulip: de4x5: fix the problem that the array 'lp->phy[8]' may be out of bound In line 5001, if all id in the array 'lp->phy[8]' is not 0, when the 'for' end, the 'k…
- CVE-2021-47548CRITICALCVSS 9.8EG 9.82024-05-24
In the Linux kernel, the following vulnerability has been resolved: ethernet: hisilicon: hns: hns_dsaf_misc: fix a possible array overflow in hns_dsaf_ge_srst_by_port() The if statement: if (port >= DSAF_GE_NUM) return; limits…
- CVE-2022-1237HIGHCVSS 7.8EG 7.82022-04-06
Improper Validation of Array Index in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability is heap overflow and may be exploitable. For more general description of heap buffer overflow, see [CWE](https://cwe.mitre.org/dat…
- CVE-2022-21310MEDIUMCVSS 6.3EG 6.32022-01-19
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 7.4.34 and prior, 7.5.24 and prior, 7.6.20 and prior and 8.0.27 and prior. Difficult to exploit vulnerabilit…
- CVE-2022-22099HIGHCVSS 8.4EG 8.42022-09-02
Memory corruption in multimedia due to improper validation of array index in Snapdragon Auto
- CVE-2022-25690HIGHCVSS 7.5EG 7.52022-09-16
Information disclosure in WLAN due to improper validation of array index while parsing crafted ANQP action frames in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Con…
- CVE-2022-25695HIGHCVSS 8.4EG 8.42022-12-13
Memory corruption in MODEM due to Improper Validation of Array Index while processing GSTK Proactive commands in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon I…
- CVE-2022-25711HIGHCVSS 6.7EG 7.82022-12-13
Memory corruption in camera due to improper validation of array index in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
- CVE-2022-25720CRITICALCVSS 9.8EG 9.82022-10-19
Memory corruption in WLAN due to out of bound array access during connect/roaming in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial…
- CVE-2022-26100CRITICALCVSS 9.8EG 9.82022-03-10
SAPCAR - version 7.22, does not contain sufficient input validation on the SAPCAR archive. As a result, the SAPCAR process may crash, and the attacker may obtain privileged access to the system.
- CVE-2022-27223HIGHCVSS 8.8EG 8.82022-03-16
In drivers/usb/gadget/udc/udc-xilinx.c in the Linux kernel before 5.16.12, the endpoint index is not validated and might be manipulated by the host for out-of-array access.
- CVE-2022-2951HIGHCVSS 7.8EG 7.82022-12-13
Altair HyperView Player versions 2021.1.0.27 and prior are vulnerable to improper validation of array index vulnerability during processing of H3D files. A DWORD value from a PoC file is extracted and used as an index to write to a bu…
- CVE-2022-30763CRITICALCVSS 7.5EG 9.82022-05-16
Janet before 1.22.0 mishandles arrays.
- CVE-2022-31135MEDIUMCVSS 6.5EG 6.52022-07-07
Akashi is an open source server implementation of the Attorney Online video game based on the Ace Attorney universe. Affected versions of Akashi are subject to a denial of service attack. An attacker can use a specially crafted evidence pa…
- CVE-2022-31603MEDIUMCVSS 6.4EG 6.42022-07-04
NVIDIA DGX A100 contains a vulnerability in SBIOS in the IpSecDxe, where a user with high privileges and preconditioned IpSecDxe global data can exploit improper validation of an array index to cause code execution, which may lead to denia…
- CVE-2022-31745MEDIUMCVSS 4.3EG 4.32022-12-22
If array shift operations are not used, the Garbage Collector may have become confused about valid objects. This vulnerability affects Firefox < 101.
- CVE-2022-33256CRITICALCVSS 9.8EG 9.82023-03-10
Memory corruption due to improper validation of array index in Multi-mode call processor.
- CVE-2022-33274HIGHCVSS 8.4EG 8.42023-01-09
Memory corruption in android core due to improper validation of array index while returning feature ids after license authentication.
- CVE-2022-33275HIGHCVSS 8.4EG 8.42023-09-05
Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range.
- CVE-2022-33281MEDIUMCVSS 6.7EG 6.72023-05-02
Memory corruption due to improper validation of array index in computer vision while testing EVA kernel without sending any frames.
- CVE-2022-33289MEDIUMCVSS 6.8EG 6.82023-04-13
Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card.
- CVE-2022-33302HIGHCVSS 6.8EG 7.82023-04-13
Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than command length.
- CVE-2022-35737HIGHCVSS 7.5EG 7.52022-08-03
SQLite 1.0.12 through 3.39.x before 3.39.2 sometimes allows an array-bounds overflow if billions of bytes are used in a string argument to a C API.
- CVE-2022-38072MEDIUMCVSS 6.5EG 6.52023-04-03
An improper array index validation vulnerability exists in the stl_fix_normal_directions functionality of ADMesh Master Commit 767a105 and v0.98.4. A specially-crafted stl file can lead to a heap buffer overflow. An attacker can provide a …
- CVE-2022-40534HIGHCVSS 8.4EG 8.42023-09-05
Memory corruption due to improper validation of array index in Audio.
- CVE-2022-40537CRITICALCVSS 7.3EG 9.82023-03-10
Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response.
- CVE-2022-40539HIGHCVSS 8.4EG 8.42023-03-10
Memory corruption in Automotive Android OS due to improper validation of array index.
- CVE-2022-42011MEDIUMCVSS 6.5EG 6.52022-10-10
An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash when receiving a message where an arra…
- CVE-2022-42254MEDIUMCVSS 5.3EG 5.32022-12-30
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an out-of-bounds array access may lead to denial of service, data tampering, or information disclosure.
- CVE-2022-42255MEDIUMCVSS 5.3EG 5.32022-12-30
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an out-of-bounds array access may lead to denial of service, information disclosure, or data tampering.
- CVE-2022-46152HIGHCVSS 8.8EG 8.82022-11-29
OP-TEE Trusted OS is the secure side implementation of OP-TEE project, a Trusted Execution Environment. Versions prior to 3.19.0, contain an Improper Validation of Array Index vulnerability. The function `cleanup_shm_refs()` is called by b…
- CVE-2022-47342MEDIUMCVSS 5.5EG 5.52023-02-12
In engineermode services, there is a missing permission check. This could lead to local denial of service in engineermode services.
- CVE-2022-47343MEDIUMCVSS 5.5EG 5.52023-02-12
In engineermode services, there is a missing permission check. This could lead to local denial of service in engineermode services.
- CVE-2022-47344MEDIUMCVSS 5.5EG 5.52023-02-12
In engineermode services, there is a missing permission check. This could lead to local denial of service in engineermode services.
- CVE-2022-47345MEDIUMCVSS 5.5EG 5.52023-02-12
In engineermode services, there is a missing permission check. This could lead to local denial of service in engineermode services.
- CVE-2022-47346MEDIUMCVSS 5.5EG 5.52023-02-12
In engineermode services, there is a missing permission check. This could lead to local denial of service in engineermode services.
- CVE-2022-47347MEDIUMCVSS 5.5EG 5.52023-02-12
In engineermode services, there is a missing permission check. This could lead to local denial of service in engineermode services.
- CVE-2022-47348MEDIUMCVSS 5.5EG 5.52023-02-12
In engineermode services, there is a missing permission check. This could lead to local denial of service in engineermode services.
- CVE-2022-48503CRITICALCVSS 8.8EG 9.0⚠ KEV2023-08-14
The issue was addressed with improved bounds checks. This issue is fixed in tvOS 15.6, watchOS 8.7, iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5, Safari 15.6. Processing web content may lead to arbitrary code execution.
- CVE-2022-48702HIGHCVSS 7.8EG 7.82024-05-03
In the Linux kernel, the following vulnerability has been resolved: ALSA: emu10k1: Fix out of bounds access in snd_emu10k1_pcm_channel_alloc() The voice allocator sometimes begins allocating from near the end of the array and then wraps …
- CVE-2022-48883HIGHCVSS 7.8EG 7.82024-08-21
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: IPoIB, Block PKEY interfaces with less rx queues than parent A user is able to configure an arbitrary number of rx queues when creating an interface via netli…
- CVE-2022-48967HIGHCVSS 7.1EG 7.12024-10-21
In the Linux kernel, the following vulnerability has been resolved: NFC: nci: Bounds check struct nfc_target arrays While running under CONFIG_FORTIFY_SOURCE=y, syzkaller reported: memcpy: detected field-spanning write (size 129) of s…
- CVE-2022-48979MEDIUMCVSS 5.5EG 5.52024-10-21
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix array index out of bound error in DCN32 DML [Why&How] LinkCapacitySupport array is indexed with the number of voltage states and not the number of m…
- CVE-2022-49022HIGHCVSS 7.8EG 7.82024-10-21
In the Linux kernel, the following vulnerability has been resolved: wifi: mac8021: fix possible oob access in ieee80211_get_rate_duration Fix possible out-of-bound access in ieee80211_get_rate_duration routine as reported by the followin…
- CVE-2022-49170HIGHCVSS 7.8EG 7.82025-02-26
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on curseg->alloc_type As Wenqing Liu reported in bugzilla: https://bugzilla.kernel.org/show_bug.cgi?id=215657 - Overview UBSAN: array-inde…
Map vulnerabilities like CWE-129 to your infrastructure
EchelonGraph correlates every CVE — across CWE-129 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →