in OpenHarmony v3.2.2 and prior versions allow a local attacker get sensitive buffer information through use of uninitialized resource.
Microsoft Host Integration Server 2020 Remote Code Execution Vulnerability
Windows NTFS Information Disclosure Vulnerability
stb_image is a single file MIT licensed library for processing images. The stbi__getn function reads a specified number of bytes from context (typica…
An information disclosure vulnerability exists in the ClientConnect() functionality of SoftEther VPN 5.01.9674. A specially crafted network packet ca…
Windows Common Log File System Driver Information Disclosure Vulnerability
Windows Setup Files Cleanup Remote Code Execution Vulnerability
Windows Deployment Services Information Disclosure Vulnerability
A flaw was found in Binutils. The use of an uninitialized field in the struct module *module may lead to application crash and local denial of servic…
A flaw was found in Binutils. A logic fail in the bfd_init_section_decompress_status function may lead to the use of an uninitialized variable that c…
A flaw was found in Binutils. The field `the_bfd` of `asymbol`struct is uninitialized in the `bfd_mach_o_get_synthetic_symtab` function, which may le…
Windows Kernel Information Disclosure Vulnerability
In multiple locations of avrc, there is a possible leak of heap data due to uninitialized data. This could lead to remote information disclosure with…
In writeToParcel of CursorWindow.cpp, there is a possible information disclosure due to uninitialized data. This could lead to local information disc…
Microsoft Message Queuing Information Disclosure Vulnerability
Uninitialized buffer in GBL parser in Silicon Labs GSDK v4.3.0 and earlier allows attacker to leak data from Secure stack via malformed GBL file.
The PVRSRVBridgeGetMultiCoreInfo ioctl in the PowerVR kernel driver can return uninitialized kernel memory to user space. The contents of this memory…
Windows CDP User Components Information Disclosure Vulnerability
Windows Print Spooler Information Disclosure Vulnerability
Windows Update Orchestrator Service Information Disclosure Vulnerability
OLE Automation Information Disclosure Vulnerability
VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not have an MSS lower bound (e.g., it could be zero).
The initialization vector (IV) used by the secure engine (SE) for encrypting data stored in the SE flash memory is uninitialized.
In readSampleData of NuMediaExtractor.cpp, there is a possible out of bounds write due to uninitialized data. This could lead to remote code executio…
Windows Installer Information Disclosure Vulnerability
iSCSI Target WMI Provider Remote Code Execution Vulnerability
When reading a file, an uninitialized value could have been used as read limit. This vulnerability affects Firefox < 113, Firefox ESR < 102.11, and T…
Windows Network File System Remote Code Execution Vulnerability
A Use of Uninitialized Resource vulnerability in the Border Gateway Protocol (BGP) software of Juniper Networks Junos OS and Junos OS Evolved allows …
Information disclosure in modem due to missing NULL check while reading packets received from local network