Vulnerability index

Browse CVEs

745 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use of Uninitialized ResourceCWE-908 × clear
Linux Kernel HIGH 7.3
CVE-2024-26857

In the Linux kernel, the following vulnerability has been resolved: geneve: make sure to pull inner header in geneve_rx() syzbot triggered a bug in…

Fix: 4.19.310 / 5.4.272+
Fix from $1,950 2024-04-17
Firefox MEDIUM 5.3
CVE-2024-3862

The MarkStack assignment operator, part of the JavaScript engine, could access uninitialized memory if it were used in a self-assignment. This vulner…

Fix: 125.0+
Fix from $1,600 2024-04-16
Evolution HIGH 7.5
CVE-2024-29838

The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below does not proper sanitize user input, allowing for an unauthenticate…

Fix: after 2.04.560
Fix from $1,950 2024-04-15
Security Verify Access MEDIUM 5.5
CVE-2024-31874

IBM Security Verify Access Appliance 10.0.0 through 10.0.7 uses uninitialized variables when deploying that could allow a local user to cause a denia…

Fix: after 10.0.7
Fix from $1,600 2024-04-10
Windows 10 1507 MEDIUM 5.0
CVE-2024-26220

Windows Mobile Hotspot Information Disclosure Vulnerability

Fix: 10.0.10240.20596 / 10.0.14393.6897+
Fix from $1,600 2024-04-09
Windows 10 1507 MEDIUM 5.5
CVE-2024-26209EPSS 15%

Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability

Fix: 10.0.10240.20596 / 10.0.14393.6897+
Fix from $1,600 2024-04-09
Android MEDIUM 5.5
CVE-2024-29745 KEV

there is a possible Information Disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution pr…

Mitigation only
Fix from $1,600 2024-04-05
Unclassified HIGH 7.8
CVE-2024-3299

Out-Of-Bounds Write, Use of Uninitialized Resource and Use-After-Free vulnerabilities exist in the file reading procedure in eDrawings from Release S…

Mitigation only
Fix from $1,950 2024-04-04
Linux Kernel MEDIUM 5.5
CVE-2024-26805

In the Linux kernel, the following vulnerability has been resolved: netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter syzbot reported …

Fix: 3.13 / 3.15+
Fix from $1,600 2024-04-04
Linux Kernel MEDIUM 5.5
CVE-2024-26788

In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-qdma: init irq after reg initialization Initialize the qDMA irqs…

Fix: 5.4.271 / 5.10.212+
Fix from $1,600 2024-04-04
Linux Kernel MEDIUM 5.5
CVE-2024-26711

In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad4130: zero-initialize clock init data The clk_init_data struct does…

Fix: 6.6.18 / 6.7.6+
Fix from $1,600 2024-04-03
Linux Kernel MEDIUM 5.5
CVE-2024-26644

In the Linux kernel, the following vulnerability has been resolved: btrfs: don't abort filesystem when attempting to snapshot deleted subvolume If …

Fix: 5.10.210 / 5.15.149+
Fix from $1,600 2024-03-26
Linux Kernel MEDIUM 5.5
CVE-2021-47139

In the Linux kernel, the following vulnerability has been resolved: net: hns3: put off calling register_netdev() until client initialize complete C…

Fix: 5.10.42 / 5.12.9+
Fix from $1,600 2024-03-25
Linux Kernel MEDIUM 5.5
CVE-2021-47136

In the Linux kernel, the following vulnerability has been resolved: net: zero-initialize tc skb extension on allocation Function skb_ext_add() does…

Fix: 5.10.42 / 5.12.9+
Fix from $1,600 2024-03-25
Unclassified HIGH 7.8
CVE-2024-1848

Heap-based Buffer Overflow, Memory Corruption, Out-Of-Bounds Read, Out-Of-Bounds Write, Stack-based Buffer Overflow, Type Confusion, Uninitialized Va…

Mitigation only
Fix from $1,950 2024-03-22
Linux Kernel MEDIUM 5.5
CVE-2024-26641

In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() syzbot found __ip…

Fix: 5.10.210 / 5.15.149+
Fix from $1,600 2024-03-18
Linux Kernel HIGH 7.1
CVE-2021-47101

In the Linux kernel, the following vulnerability has been resolved: asix: fix uninit-value in asix_mdio_read() asix_read_cmd() may read less than s…

Fix: 5.15.12+
Fix from $1,950 2024-03-04
Linux Kernel MEDIUM 5.5
CVE-2023-52577

In the Linux kernel, the following vulnerability has been resolved: dccp: fix dccp_v4_err()/dccp_v6_err() again dh->dccph_x is the 9th byte (offset…

Fix: 5.10.198 / 5.15.134+
Fix from $1,600 2024-03-02
Linux Kernel MEDIUM 5.5
CVE-2023-52528

In the Linux kernel, the following vulnerability has been resolved: net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg syzbot repor…

Fix: 4.14.327 / 4.19.296+
Fix from $1,600 2024-03-02
Linux Kernel MEDIUM 5.5
CVE-2021-47056

In the Linux kernel, the following vulnerability has been resolved: crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init ADF_STATUS…

Fix: 4.9.269 / 4.14.233+
Fix from $1,600 2024-02-29
Solidworks HIGH 7.8
CVE-2024-1847

Heap-based Buffer Overflow, Memory Corruption, Out-Of-Bounds Read, Out-Of-Bounds Write, Stack-based Buffer Overflow, Type Confusion, Uninitialized Va…

Fix: 2024+
Fix from $1,950 2024-02-28
Fastecdsa HIGH 7.5
CVE-2024-21502

Versions of the package fastecdsa before 2.3.2 are vulnerable to Use of Uninitialized Variable on the stack, via the curvemath_mul function in src/cu…

Fix: 2.3.2+
Fix from $1,950 2024-02-24
Autocad HIGH 7.8
CVE-2024-23137

A maliciously crafted STP or SLDPRT file, when parsed in ODXSW_DLL.dll through Autodesk applications, can be used to uninitialized variables. This vu…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Helm HIGH 7.5
CVE-2024-26147

Helm is a package manager for Charts for Kubernetes. Versions prior to 3.14.2 contain an uninitialized variable vulnerability when Helm parses index …

Fix: 3.14.2+
Fix from $1,950 2024-02-21
Big Ip Access Policy Manager HIGH 7.5
CVE-2024-23314

When HTTP/2 is configured on BIG-IP or BIG-IP Next SPK systems, undisclosed responses can cause the Traffic Management Microkernel (TMM) to terminate…

Fix: 15.1.9 / 16.1.4+
Fix from $1,950 2024-02-14
Windows 10 1607 MEDIUM 5.5
CVE-2024-20694

Windows CoreMessaging Information Disclosure Vulnerability

Fix: 10.0.14393.6614 / 10.0.17763.5329+
Fix from $1,600 2024-01-09
Sicam A8000 Cp 8050 Firmware HIGH 7.2
CVE-2023-42797

A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05.20), CP-8050 MASTER MODULE (All versions < CPCI85 V05.20). Th…

Fix: 05.20+
Fix from $1,950 2024-01-09
Z\/ip Gateway Sdk CRITICAL 9.8
CVE-2023-4489

The first S0 encryption key is generated with an uninitialized PRNG in Z/IP Gateway products running Silicon Labs Z/IP Gateway SDK v7.18.3 and earlie…

Fix: after 7.18.03
Fix from $2,300 2023-12-14
Windows Server 2008 MEDIUM 5.3
CVE-2023-36012

DHCP Server Service Information Disclosure Vulnerability

Patch available
Fix from $1,600 2023-12-12
Wps Office HIGH 7.8
CVE-2023-31275

An uninitialized pointer use vulnerability exists in the functionality of WPS Office 11.2.0.11537 that handles Data elements in an Excel file. A spec…

Mitigation only
Fix from $1,950 2023-11-27