Vulnerability index

Browse CVEs

744 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use of Uninitialized ResourceCWE-908 × clear
Linux Kernel HIGH 7.8
CVE-2025-38718

In the Linux kernel, the following vulnerability has been resolved: sctp: linearize cloned gso packets in sctp_rcv A cloned head skb still shares t…

Fix: 5.4.297 / 5.10.241+
Fix from $1,950 2025-09-04
Linux Kernel MEDIUM 5.5
CVE-2025-38691

In the Linux kernel, the following vulnerability has been resolved: pNFS: Fix uninited ptr deref in block/scsi layout The error occurs on the third…

Fix: 5.4.297 / 5.10.241+
Fix from $1,600 2025-09-04
Android MEDIUM 5.5
CVE-2025-36893

In ReadTachyonCommands of gxp_main_actor.cc, there is a possible information leak due to uninitialized data. This could lead to local information dis…

Mitigation only
Fix from $1,600 2025-09-04
Linux Kernel MEDIUM 5.5
CVE-2025-38658

In the Linux kernel, the following vulnerability has been resolved: nvmet: pci-epf: Do not complete commands twice if nvmet_req_init() fails Have n…

Fix: 6.16.1+
Fix from $1,600 2025-08-22
Linux Kernel MEDIUM 5.5
CVE-2025-38644

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: reject TDLS operations when station is not associated syzbot tr…

Fix: 6.1.148 / 6.6.102+
Fix from $1,600 2025-08-22
Linux Kernel MEDIUM 5.5
CVE-2025-38628

In the Linux kernel, the following vulnerability has been resolved: vdpa/mlx5: Fix release of uninitialized resources on error path The commit in t…

Fix: 6.12.42 / 6.15.10+
Fix from $1,600 2025-08-22
Linux Kernel MEDIUM 5.5
CVE-2025-38608

In the Linux kernel, the following vulnerability has been resolved: bpf, ktls: Fix data corruption when using bpf_msg_pop_data() in ktls When sendi…

Fix: 5.4.297 / 5.10.241+
Fix from $1,600 2025-08-19
Linux Kernel MEDIUM 5.5
CVE-2025-38613

In the Linux kernel, the following vulnerability has been resolved: staging: gpib: fix unset padding field copy back to userspace The introduction …

Fix: 6.16.1+
Fix from $1,600 2025-08-19
Linux Kernel HIGH 7.8
CVE-2025-38579

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix KMSAN uninit-value in extent_info usage KMSAN reported a use of unini…

Fix: 5.15.190 / 6.1.148+
Fix from $1,950 2025-08-19
Linux Kernel HIGH 7.8
CVE-2025-38574

In the Linux kernel, the following vulnerability has been resolved: pptp: ensure minimal skb length in pptp_xmit() Commit aabc6596ffb3 ("net: ppp: …

Fix: 5.4.297 / 5.10.241+
Fix from $1,950 2025-08-19
Linux Kernel MEDIUM 5.5
CVE-2025-38531

In the Linux kernel, the following vulnerability has been resolved: iio: common: st_sensors: Fix use of uninitialize device structs Throughout the …

Fix: 6.12.40 / 6.15.8+
Fix from $1,600 2025-08-16
Helm MEDIUM 6.5
CVE-2025-55198

Helm is a package manager for Charts for Kubernetes. Prior to version 3.18.5, when parsing Chart.yaml and index.yaml files, an improper validation of…

Fix: 3.18.5+
Fix from $1,600 2025-08-14
365 Apps HIGH 7.8
CVE-2025-53759

Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-08-12
Windows Server 2008 MEDIUM 5.7
CVE-2025-53719

Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose information over a networ…

Fix: 10.0.14393.8330 / 10.0.17763.7678+
Fix from $1,600 2025-08-12
Windows Server 2008 MEDIUM 5.7
CVE-2025-53148

Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose information over a networ…

Fix: 10.0.14393.8330 / 10.0.17763.7678+
Fix from $1,600 2025-08-12
Windows Server 2008 MEDIUM 5.7
CVE-2025-53153

Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose information over a networ…

Fix: 10.0.14393.8330 / 10.0.17763.7678+
Fix from $1,600 2025-08-12
Windows Server 2008 MEDIUM 5.7
CVE-2025-53138

Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose information over a networ…

Fix: 10.0.14393.8330 / 10.0.17763.7678+
Fix from $1,600 2025-08-12
Windows 11 24h2 CRITICAL 9.8
CVE-2025-50165EPSS 10%

Untrusted pointer dereference in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.

Fix: 10.0.26100.4851+
Fix from $2,300 2025-08-12
Windows Server 2008 MEDIUM 5.7
CVE-2025-50156

Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose information over a networ…

Fix: 10.0.14393.8330 / 10.0.17763.7678+
Fix from $1,600 2025-08-12
Windows Server 2008 MEDIUM 5.7
CVE-2025-50157

Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose information over a networ…

Fix: 10.0.14393.8330 / 10.0.17763.7678+
Fix from $1,600 2025-08-12
Linux Kernel MEDIUM 5.5
CVE-2025-38472

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack: fix crash due to removal of uninitialised entry A cras…

Fix: 6.1.147 / 6.6.100+
Fix from $1,600 2025-07-28
Linux Kernel MEDIUM 5.5
CVE-2025-38478

In the Linux kernel, the following vulnerability has been resolved: comedi: Fix initialization of data for instructions that write to subdevice Som…

Fix: 5.4.297 / 5.10.241+
Fix from $1,600 2025-07-28
Linux Kernel MEDIUM 5.5
CVE-2025-38480

In the Linux kernel, the following vulnerability has been resolved: comedi: Fix use of uninitialized data in insn_rw_emulate_bits() For Comedi `INS…

Fix: 5.4.297 / 5.10.241+
Fix from $1,600 2025-07-28
Linux Kernel MEDIUM 5.5
CVE-2025-38441

In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: account for Ethernet header in nf_flow_pppoe_proto() syzb…

Fix: 5.15.189 / 6.1.146+
Fix from $1,600 2025-07-25
Unclassified MEDIUM 5.3
CVE-2025-2329

In high traffic environments, a Silicon Labs OpenThread RCP (see impacted versions) fails to clear the SPI transmit buffer and may send a corrupt pac…

Mitigation only
Fix from $1,600 2025-07-25
Linux Kernel MEDIUM 5.5
CVE-2025-38429

In the Linux kernel, the following vulnerability has been resolved: bus: mhi: ep: Update read pointer only after buffer is written Inside mhi_ep_ri…

Fix: 6.6.95 / 6.12.35+
Fix from $1,600 2025-07-25
Linux Kernel MEDIUM 5.5
CVE-2025-38382

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix iteration of extrefs during log replay At __inode_add_ref() when pro…

Fix: 6.1.144 / 6.6.97+
Fix from $1,600 2025-07-25
Unclassified HIGH 7.1
CVE-2025-41239

VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability due to the usage of an uninitialised memory in vS…

Mitigation only
Fix from $1,950 2025-07-15
Linux Kernel MEDIUM 5.5
CVE-2025-38309

In the Linux kernel, the following vulnerability has been resolved: drm/xe/vm: move xe_svm_init() earlier In xe_vm_close_and_put() we need to be ab…

Fix: 6.15.3+
Fix from $1,600 2025-07-10
Linux Kernel MEDIUM 5.5
CVE-2025-38277

In the Linux kernel, the following vulnerability has been resolved: mtd: nand: ecc-mxic: Fix use of uninitialized variable ret If ctx->steps is zer…

Fix: 6.1.142 / 6.6.94+
Fix from $1,600 2025-07-10