Skip to main content

About CWE-125

Attackers may read secrets such as cryptographic keys, personal data or memory addresses. Leaked addresses can help defeat ASLR for another flaw, and invalid reads may crash the process.

MITRE name
Out-of-bounds Read
Abstraction
Base: abstract, but detailed enough to infer detection and prevention methods
Status
Draft
Also known as
OOB read

Mitigations

  • +Validate and correctly calculate every length argument, buffer size and offset.
  • +Do not rely on sentinel characters in untrusted input to stop a read.
  • +Use an accept-known-good input validation strategy.
  • +Use a language that provides appropriate memory abstractions.

Detection
Fuzzing and automated static analysis are rated highly effective, and runtime checkers like AddressSanitizer help during testing.

CWE-125 Vulnerabilities

5 CVEs
CVETitleVendorCVSSEPSSKEVPublished
CVE-2023-36424
Windows Common Log File System Driver Elevation of Privilege Vulnerability
Microsoft7.812.2%KEV2023-11-14
CVE-2026-3055
Insufficient input validation leading to memory overread
NetScaler9.34.0%KEV2026-03-23
CVE-2025-5777
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
NetScaler9.3100.0%KEV2025-06-17
CVE-2025-24991
Windows NTFS Information Disclosure Vulnerability
Microsoft5.52.0%KEV2025-03-11
CVE-2021-25487
Samsung Mobile Devices Out-of-Bounds Read Vulnerability
Samsung Mobile7.30.6%KEV2021-10-06

Frequently Asked Questions

What is CWE-125?→

CWE-125 is an out-of-bounds read: the product reads memory outside the buffer it intended to read.

Why does an out-of-bounds read matter if nothing is written?→

MITRE notes it can expose secrets and memory addresses. Those addresses can help bypass ASLR when exploiting a separate weakness.

How many exploited vulnerabilities are classified as CWE-125?→

This database lists 5 CVE records mapped to CWE-125 by their CVE Numbering Authority. 5 of them are in the CISA Known Exploited Vulnerabilities catalog, and CISA links 1 to known ransomware campaigns. Examples include CVE-2023-36424, CVE-2026-3055, CVE-2025-5777.

Sources

Weakness definitions summarized from the CWE List, © The MITRE Corporation, used under the CWE Terms of Use. CWE mappings come from each CVE record's CNA. Exploited-in-the-wild data from the CISA KEV catalog (CC0). This site is not endorsed or certified by MITRE or CISA.