CWE-129: CWE-129
Yearly Trend
Top Affected Vendors
All CWE-129 CVEs (191)
This vulnerability allows memory corruption when configuring SMR/S2CR registers in Bypass mode on Qualcomm chipsets. Attackers could potentially execu...
Dec 2, 2024This vulnerability allows memory corruption in Qualcomm kernel components when parsing metadata, potentially enabling local privilege escalation or de...
Dec 5, 2023CVE-2022-40534 is a memory corruption vulnerability in Qualcomm audio components caused by improper array index validation. Attackers could exploit th...
Sep 5, 2023This vulnerability allows memory corruption in Qualcomm WLAN hardware abstraction layer due to improper array index validation. Attackers could potent...
Sep 5, 2023This vulnerability allows attackers to write data outside the intended memory boundaries in Qualcomm Snapdragon chipsets due to improper validation of...
Jan 3, 2022This vulnerability in BlueZ's AVRCP Bluetooth audio profile allows network-adjacent attackers to execute arbitrary code with root privileges by sendin...
May 3, 2024This CVE describes a memory corruption vulnerability in a Qualcomm kernel driver that could allow attackers to execute arbitrary code with kernel priv...
Jan 7, 2026This vulnerability allows memory corruption during audio streaming operations on Qualcomm devices, potentially enabling attackers to execute arbitrary...
Nov 4, 2025This vulnerability allows memory corruption when triggering a subsystem crash with an out-of-range identifier, potentially leading to arbitrary code e...
Nov 4, 2025This is an array index out-of-bounds vulnerability in the JFS filesystem implementation in the Linux kernel. An attacker could trigger this bug to cau...
Oct 1, 2025This CVE-2023-53395 is a Linux kernel vulnerability in the ACPICA subsystem where the ASL Timer instruction lacks proper operand validation, causing a...
Sep 18, 2025This vulnerability in the Linux kernel's mlx5 driver allows an array-index-out-of-bounds error when a DEVX command fails, potentially leading to kerne...
Sep 17, 2025This CVE addresses a speculative execution side-channel vulnerability in the Linux kernel's KVM (Kernel-based Virtual Machine) subsystem for x86 syste...
Sep 16, 2025This CVE-2022-50315 is an array index out-of-bounds vulnerability in the Linux kernel's AHCI driver that can cause kernel memory corruption. It affect...
Sep 15, 2025A Linux kernel vulnerability in the VXLAN implementation where improper hash size handling can cause out-of-bounds memory access. This can lead to ker...
Sep 15, 2025This CVE describes an out-of-bounds read vulnerability in the JFS filesystem implementation in the Linux kernel. An attacker could exploit filesystem ...
Sep 4, 2025This vulnerability allows memory corruption when processing DDI calls with invalid buffers in Qualcomm components. Attackers could potentially execute...
Aug 6, 2025This CVE describes an out-of-bounds array access vulnerability in the Linux kernel's megaraid_sas driver. When DRAM interleave is enabled, the driver ...
Jul 9, 2025This CVE describes an array index out-of-bounds vulnerability in the Linux kernel's fbcon (framebuffer console) subsystem. When writing to the 'store_...
Jul 4, 2025A vulnerability in the Linux kernel's Open vSwitch module allows specially crafted MPLS packets to cause a dead loop during parsing, leading to CPU so...
Jul 3, 2025This CVE describes an array index out-of-bounds vulnerability in the Linux kernel's Atlantic network driver. The vulnerability allows an attacker to c...
Jun 18, 2025This CVE-2025-38013 is a Linux kernel vulnerability in the WiFi subsystem where an uninitialized memory pointer in the cfg80211_scan_request structure...
Jun 18, 2025This vulnerability allows memory corruption during IOCTL operations in Qualcomm IFE (Image Front End) drivers when validating output resource IDs. Att...
May 6, 2025This vulnerability allows memory corruption in the Camera kernel of Qualcomm devices due to improper validation of array indices from invalid command ...
May 6, 2025This vulnerability allows memory corruption in the OPE module when processing command buffers, potentially leading to arbitrary code execution. It aff...
May 6, 2025This CVE-2025-37752 is a Linux kernel vulnerability in the Stochastic Fairness Queueing (SFQ) network scheduler that allows array index out-of-bounds ...
May 1, 2025A buffer overflow vulnerability in the Linux kernel's AMD SPI driver allows local attackers to cause out-of-bounds memory access. This affects systems...
Apr 18, 2025This CVE describes an out-of-bounds array access vulnerability in the Linux kernel's Cadence SPI driver. When requested clock frequency exceeds 128 MH...
Apr 16, 2025This vulnerability allows memory corruption when processing device IO control calls for session control in Qualcomm components. Attackers could potent...
Apr 7, 2025This CVE describes an out-of-bounds memory access vulnerability in the Linux kernel's AMD microcode loading function. It affects systems with CPU-less...
Apr 2, 2025This vulnerability in the Linux kernel's MDIO subsystem allows out-of-bounds memory access when invalid PHY addresses are passed to the mdiobus_get_ph...
Mar 27, 2025This CVE describes a Spectre v1 vulnerability in the Linux kernel's netlink subsystem where unvalidated array indexing could allow attackers to read k...
Mar 27, 2025This CVE describes an array underflow vulnerability in the Linux kernel's Sound Open Firmware (SOF) subsystem. An attacker with local access can trigg...
Mar 27, 2025This CVE describes a potential array out-of-bounds vulnerability in the Linux kernel's ALSA HDA driver for VIA audio hardware. If exploited, it could ...
Mar 27, 2025This CVE describes a memory corruption vulnerability in Qualcomm camera frame processing pipeline synchronization. Attackers could potentially execute...
Mar 3, 2025This CVE-2022-49720 is a Linux kernel vulnerability in the block layer's multi-queue request allocation function that can cause an array index out-of-...
Feb 26, 2025This CVE describes an array overflow vulnerability in the Linux kernel's BPF subsystem. The flaw allows an attacker with local access to exceed the ma...
Feb 26, 2025This CVE-2022-49478 is an array index out-of-bounds vulnerability in the Linux kernel's pvrusb2 media driver. It allows local attackers to potentially...
Feb 26, 2025This CVE describes an array index out-of-bounds vulnerability in the Linux kernel's rtw89 Wi-Fi driver. The vulnerability allows hardware to report in...
Feb 26, 2025A Linux kernel vulnerability in the clk: visconti driver allows local attackers to cause an array overflow by exploiting improper type casting. This a...
Feb 26, 2025This CVE-2022-49170 is an array index out-of-bounds vulnerability in the Linux kernel's F2FS filesystem driver. It allows attackers with access to mou...
Feb 26, 2025This CVE describes an out-of-bounds array indexing vulnerability in the Linux kernel's Enhanced Transmission Selection (ETS) queuing discipline. When ...
Feb 10, 2025This vulnerability allows memory corruption in Qualcomm camera components when an invalid CID (Camera ID) is used. Attackers could potentially execute...
Feb 3, 2025This vulnerability involves memory corruption during camera sensor power-up or power-down sequences on Qualcomm devices. It could allow attackers to e...
Feb 3, 2025This vulnerability allows memory corruption during guest virtual machine suspend operations in Qualcomm hypervisors. Attackers could potentially execu...
Feb 3, 2025This vulnerability allows memory corruption through improper input validation when processing IOCTL calls related to GPU AHB bus error handling. Attac...
Feb 3, 2025This CVE describes a memory corruption vulnerability in the Camera kernel driver when validating the number of devices. Successful exploitation could ...
Feb 3, 2025This CVE describes an out-of-bounds array access vulnerability in the Linux kernel's pktgen module, specifically in the get_imix_entries function. It ...
Jan 31, 2025This vulnerability allows memory corruption through IOCTL calls to the MCDM driver, potentially leading to privilege escalation or system compromise. ...
Jan 6, 2025This vulnerability in the Linux kernel's DisplayPort MST (Multi-Stream Transport) implementation allows memory corruption when processing malformed si...
Dec 27, 2024About CWE-129 (CWE-129)
Our database tracks 191 CVEs classified as CWE-129, with 21 rated critical and 148 rated high severity. The average CVSS score for CWE-129 vulnerabilities is 7.9.
External reference: View CWE-129 on MITRE CWE →
Monitor CWE-129 Vulnerabilities
Get alerted when new CWE-129 CVEs affect your infrastructure.
Start Monitoring Free