Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CWE-130 (长度参数不一致性处理不恰当) — Vulnerability Class 90

90 vulnerabilities classified as CWE-130 (长度参数不一致性处理不恰当). AI Chinese analysis included.

CWE-130 represents a critical logic flaw where software fails to validate that a declared length parameter matches the actual size of the associated data buffer. This inconsistency typically arises during the parsing of formatted messages or structured inputs, allowing attackers to manipulate length fields to deceive the application. By exploiting this discrepancy, adversaries can trigger buffer overflows, memory corruption, or unexpected control flow alterations, potentially leading to remote code execution or denial of service. To mitigate this vulnerability, developers must implement rigorous input validation that strictly verifies the integrity of length fields against actual data sizes before processing. Employing safe string handling libraries, enforcing strict type checking, and utilizing bounds-checking mechanisms ensures that the application correctly interprets data structures, thereby preventing attackers from leveraging length mismatches to compromise system stability or security.

MITRE CWE Description
The product parses a formatted message or structure, but it does not handle or incorrectly handles a length field that is inconsistent with the actual length of the associated data. If an attacker can manipulate the length parameter associated with an input such that it is inconsistent with the actual length of the input, this can be leveraged to cause the target application to behave in unexpected, and possibly, malicious ways. One of the possible motives for doing so is to pass in arbitrarily large input to the application. Another possible motivation is the modification of application state by including invalid data for subsequent properties of the application. Such weaknesses commonly lead to attacks such as buffer overflows and execution of arbitrary code.
Common Consequences (1)
Confidentiality, Integrity Read Memory, Modify Memory, Varies by Context
Mitigations (3)
Implementation When processing structured incoming data containing a size field followed by raw data, ensure that you identify and resolve any inconsistencies between the size field and the actual size of the data.
Implementation Do not let the user control the size of the buffer.
Implementation Validate that the length of the user-supplied data is consistent with the buffer size.
Examples (1)
In the following C/C++ example the method processMessageFromSocket() will get a message from a socket, placed into a buffer, and will parse the contents of the buffer into a structure that contains the message length and the message body. A for loop is used to copy the message body into a local character string which will be passed to another method for processing.
int processMessageFromSocket(int socket) { int success; char buffer[BUFFER_SIZE]; char message[MESSAGE_SIZE]; // get message from socket and store into buffer //Ignoring possibliity that buffer > BUFFER_SIZE if (getMessage(socket, buffer, BUFFER_SIZE) > 0) { // place contents of the buffer into message structure ExMessage *msg = recastBuffer(buffer); // copy message body into string for processing int index; for (index = 0; index < msg->msgLength; index++) { message[index] = msg->msgBody[index]; } message[index] = '\0'; // process message success = processMessage(message); } return success; }
Bad · C
CVE ID Title CVSS Severity Published
CVE-2025-48022 Yokogawa Electric Vnet/IP Interface 安全漏洞 — Vnet/IP Interface Package 7.5AI High AI 2026-02-13
CVE-2025-14847 Zlib compressed protocol header length confusion may allow memory read — MongoDB Server 7.5 High 2025-12-19
CVE-2025-8531 Mitsubishi Electric MELSEC-Q Series 安全漏洞 — MELSEC-Q Series Q03UDVCPU 6.8 Medium 2025-09-19
CVE-2025-10458 Bluetooth: le_conn_rsp does not sanitize CID, MTU, MPS values — Zephyr 7.6 High 2025-09-19
CVE-2025-5514 Denial-of-Service(DoS) Vulnerability in Web server function on MELSEC iQ-F Series CPU module — MELSEC iQ-F Series FX5U-32MT/ES 5.3 Medium 2025-08-25
CVE-2025-54646 Huawei HarmonyOS和Huawei EMUI 安全漏洞 — HarmonyOS 5.1 Medium 2025-08-06
CVE-2023-53157 Rosenpass 安全漏洞 — rosenpass 5.3 Medium 2025-07-27
CVE-2025-52949 Junos OS and Junos OS Evolved: In an EVPN environment, receipt of specifically malformed BGP update causes RPD crash — Junos OS 6.5 Medium 2025-07-11
CVE-2025-53604 web-push crate 安全漏洞 — web-push 4.0 Medium 2025-07-05
CVE-2025-23247 NVIDIA CUDA toolkit 安全漏洞 — NVIDIA CUDA Toolkit 4.4 Medium 2025-05-27
CVE-2025-29784 NamelessMC Has Lack of Length Validation for s Parameter in GET Requests — Nameless 7.5 High 2025-04-18
CVE-2025-29931 Siemens TeleControl Server Basic 安全漏洞 — TeleControl Server Basic 3.7 Low 2025-04-17
CVE-2025-30659 Junos OS: SRX Series: A device configured for vector routing crashes when receiving malformed traffic — Junos OS 7.5 High 2025-04-09
CVE-2025-32366 ConnMan 安全漏洞 — ConnMan 4.8 Medium 2025-04-05
CVE-2024-53856 rPGP Panics on Malformed Untrusted Input — rpgp 7.5 High 2024-12-05
CVE-2024-47293 Huawei HarmonyOS 安全漏洞 — HarmonyOS 4.7 Medium 2024-09-27
CVE-2024-20416 Cisco RV340 和 Cisco RV345 安全漏洞 — Cisco Small Business RV Series Router Firmware 6.5 Medium 2024-07-17
CVE-2024-38011 Secure Boot Security Feature Bypass Vulnerability — Windows 10 Version 1809 8.0 High 2024-07-09
CVE-2024-38010 Secure Boot Security Feature Bypass Vulnerability — Windows 10 Version 1809 8.0 High 2024-07-09
CVE-2024-37989 Secure Boot Security Feature Bypass Vulnerability — Windows 10 Version 1809 8.0 High 2024-07-09
CVE-2024-37988 Secure Boot Security Feature Bypass Vulnerability — Windows 10 Version 1809 8.0 High 2024-07-09
CVE-2023-52547 Huawei PC Manager 安全漏洞 — CurieM-WFG9B 7.8 High 2024-05-28
CVE-2023-5393 Honeywell Experion PKS 安全漏洞 — Experion Server 7.4 High 2024-04-11
CVE-2024-20685 Azure Private 5G Core Denial of Service Vulnerability — Azure Private 5G Core 5.9 Medium 2024-04-09
CVE-2024-29064 Windows Hyper-V Denial of Service Vulnerability — Windows 10 Version 1809 6.2 Medium 2024-04-09
CVE-2024-24976 Open Automation Software OAS Platform 安全漏洞 — OAS Platform 4.9 Medium 2024-04-03
CVE-2023-50248 CKAN out of memory error when submitting the dataset form with a specially-crafted field — ckan 4.5 Medium 2023-12-13
CVE-2023-40167 Jetty accepts "+" prefixed value in Content-Length — jetty.project 5.3 Medium 2023-09-15
CVE-2023-33192 Improper handling of NTS cookie length that could crash the ntpd-rs server — ntpd-rs 7.5 High 2023-05-27
CVE-2022-36788 Slic3r 缓冲区错误漏洞 — libslic3r 8.1 High 2023-04-20

Vulnerabilities classified as CWE-130 (长度参数不一致性处理不恰当) represent 90 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.