Vulnerability index

Browse CVEs

745 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use of Uninitialized ResourceCWE-908 × clear
Cereal MEDIUM 5.3
CVE-2020-11104

An issue was discovered in USC iLab cereal through 1.3.0. Serialization of an (initialized) C/C++ long double variable into a BinaryArchive or Portab…

Fix: after 1.3.0
Fix from $1,600 2020-03-30
Android MEDIUM 5.5
CVE-2020-0048

In onTransact of IAudioFlinger.cpp, there is a possible stack information leak due to uninitialized data. This could lead to local information disclo…

Mitigation only
Fix from $1,600 2020-03-10
Android MEDIUM 6.5
CVE-2020-0049

In onReadBuffer() of StreamingSource.cpp, there is a possible information disclosure due to uninitialized data. This could lead to remote information…

Mitigation only
Fix from $1,600 2020-03-10
Apq8009 Firmware HIGH 7.8
CVE-2019-14079

Access to the uninitialized variable when the driver tries to unmap the dma buffer of a request which was never mapped in the first place leading to …

Mitigation only
Fix from $1,950 2020-03-05
Thunderbird MEDIUM 6.5
CVE-2020-6793

When processing an email message with an ill-formed envelope, Thunderbird could read data from a random memory location. This vulnerability affects T…

Fix: 68.5.0+
Fix from $1,600 2020-03-02
Fedora MEDIUM 5.3
CVE-2020-7042

An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL 1.0.2 or later. tunnel.c mishandles certificate validation because the hostname…

Fix: 1.12.0+
Fix from $1,600 2020-02-27
Chrome HIGH 8.8
CVE-2020-6398

Use of uninitialized data in PDFium in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Qcs605 Firmware HIGH 7.8
CVE-2019-14044

Out of bound access due to access of uninitialized memory segment in an array of pointers while normal camera open close in Snapdragon Consumer IOT, …

Patch available
Fix from $1,950 2020-02-07
Android MEDIUM 6.5
CVE-2020-0006

In rw_i93_send_cmd_write_single_block of rw_i93.cc, there is a possible information disclosure of heap memory due to uninitialized data. This could l…

Patch available
Fix from $1,600 2020-01-08
Android MEDIUM 5.5
CVE-2020-0007

In flattenString8 of Sensor.cpp, there is a possible information disclosure of heap memory due to uninitialized data. This could lead to local inform…

Mitigation only
Fix from $1,600 2020-01-08
Office HIGH 7.8
CVE-2019-1462EPSS 18%

A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in memory, aka 'Micr…

Patch available
Fix from $1,950 2019-12-10
Chrome HIGH 8.8
CVE-2019-13747

Uninitialized data in rendering in Google Chrome on Android prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption vi…

Fix: 79.0.3945.79+
Fix from $1,950 2019-12-10
Chrome MEDIUM 6.5
CVE-2019-13751

Uninitialized data in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to obtain potentially sensitive information from proces…

Fix: 79.0.3945.79+
Fix from $1,600 2019-12-10
Goahead MEDIUM 5.3
CVE-2019-19240

Embedthis GoAhead before 5.0.1 mishandles redirected HTTP requests with a large Host header. The GoAhead WebsRedirect uses a static host buffer that …

Fix: 5.0.1+
Fix from $1,600 2019-11-22
Mdm9206 Firmware CRITICAL 9.8
CVE-2019-10541

Dereference on uninitialized buffer can happen when parsing FLV clip with corrupted codec specific data in Snapdragon Auto, Snapdragon Compute, Snapd…

Mitigation only
Fix from $2,300 2019-11-06
Linux Kernel MEDIUM 5.5
CVE-2019-18786

In the Linux kernel through 5.3.8, f->fmt.sdr.reserved is uninitialized in rcar_drif_g_fmt_sdr_cap in drivers/media/platform/rcar_drif.c, which could…

Fix: after 5.3.8
Fix from $1,600 2019-11-06
Debian Linux HIGH 7.5
CVE-2019-18602

OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to an information disclosure vulnerability because uninitialized scalars are sent over the netw…

Fix: 1.6.24 / 1.8.5+
Fix from $1,950 2019-10-29
Debian Linux MEDIUM 5.9
CVE-2019-18603

OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to information leakage upon certain error conditions because uninitialized RPC output variables…

Fix: 1.6.24 / 1.8.5+
Fix from $1,600 2019-10-29
Ubuntu Linux HIGH 7.5
CVE-2019-18197

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to…

Patch available
Fix from $1,950 2019-10-18
Doas CRITICAL 9.8
CVE-2019-15900

An issue was discovered in slicer69 doas before 6.2 on certain platforms other than OpenBSD. On platforms without strtonum(3), sscanf was used withou…

Fix: 6.2+
Fix from $2,300 2019-10-18
Debian Linux HIGH 8.2
CVE-2019-17533

Mat_VarReadNextInfo4 in mat4.c in MATIO 1.5.17 omits a certain '\0' character, leading to a heap-based buffer over-read in strdup_vprintf when uninit…

Patch available
Fix from $1,950 2019-10-13
Ubuntu Linux HIGH 7.5
CVE-2019-16866

Unbound before 1.9.4 accesses uninitialized memory, which allows remote attackers to trigger a crash via a crafted NOTIFY query. The source IP addres…

Fix: 1.9.4+
Fix from $1,950 2019-10-03
Android MEDIUM 6.5
CVE-2019-9408

In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional e…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-9409

In libhevc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional …

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-9410

In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional e…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-9411

In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional e…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-9415

In libstagefright there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no addi…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-9416

In libstagefright there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no addi…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-9406

In libhevc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional …

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-9391

In libxaac, there is a possible out of bounds read due to uninitialized data. This could lead to information disclosure with no additional execution …

Mitigation only
Fix from $1,600 2019-09-27