Vulnerability index

Browse CVEs

745 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use of Uninitialized ResourceCWE-908 × clear
HIGH 7.3 CVE-2024-26857 In the Linux kernel, the following vulnerability has been resolved: geneve: make sure to pull inner header in geneve_rx() syzbot triggered a bug in… Linux Kernel 4.19.310 / 5.4.272+ Fix from $1,9502024-04-17 MEDIUM 5.3 CVE-2024-3862 The MarkStack assignment operator, part of the JavaScript engine, could access uninitialized memory if it were used in a self-assignment. This vulner… Firefox 125.0+ Fix from $1,6002024-04-16 HIGH 7.5 CVE-2024-29838 The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below does not proper sanitize user input, allowing for an unauthenticate… Evolution after 2.04.560 Fix from $1,9502024-04-15 MEDIUM 5.5 CVE-2024-31874 IBM Security Verify Access Appliance 10.0.0 through 10.0.7 uses uninitialized variables when deploying that could allow a local user to cause a denia… Security Verify Access after 10.0.7 Fix from $1,6002024-04-10 MEDIUM 5.0 CVE-2024-26220 Windows Mobile Hotspot Information Disclosure Vulnerability Windows 10 1507 10.0.10240.20596 / 10.0.14393.6897+ Fix from $1,6002024-04-09 MEDIUM 5.5 CVE-2024-26209EPSS 15% Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability Windows 10 1507 10.0.10240.20596 / 10.0.14393.6897+ Fix from $1,6002024-04-09 MEDIUM 5.5 CVE-2024-29745 KEV there is a possible Information Disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution pr… Android Mitigation only Fix from $1,6002024-04-05 HIGH 7.8 CVE-2024-3299 Out-Of-Bounds Write, Use of Uninitialized Resource and Use-After-Free vulnerabilities exist in the file reading procedure in eDrawings from Release S… Mitigation only Fix from $1,9502024-04-04 MEDIUM 5.5 CVE-2024-26805 In the Linux kernel, the following vulnerability has been resolved: netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter syzbot reported … Linux Kernel 3.13 / 3.15+ Fix from $1,6002024-04-04 MEDIUM 5.5 CVE-2024-26788 In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-qdma: init irq after reg initialization Initialize the qDMA irqs… Linux Kernel 5.4.271 / 5.10.212+ Fix from $1,6002024-04-04 MEDIUM 5.5 CVE-2024-26711 In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad4130: zero-initialize clock init data The clk_init_data struct does… Linux Kernel 6.6.18 / 6.7.6+ Fix from $1,6002024-04-03 MEDIUM 5.5 CVE-2024-26644 In the Linux kernel, the following vulnerability has been resolved: btrfs: don't abort filesystem when attempting to snapshot deleted subvolume If … Linux Kernel 5.10.210 / 5.15.149+ Fix from $1,6002024-03-26 MEDIUM 5.5 CVE-2021-47139 In the Linux kernel, the following vulnerability has been resolved: net: hns3: put off calling register_netdev() until client initialize complete C… Linux Kernel 5.10.42 / 5.12.9+ Fix from $1,6002024-03-25 MEDIUM 5.5 CVE-2021-47136 In the Linux kernel, the following vulnerability has been resolved: net: zero-initialize tc skb extension on allocation Function skb_ext_add() does… Linux Kernel 5.10.42 / 5.12.9+ Fix from $1,6002024-03-25 HIGH 7.8 CVE-2024-1848 Heap-based Buffer Overflow, Memory Corruption, Out-Of-Bounds Read, Out-Of-Bounds Write, Stack-based Buffer Overflow, Type Confusion, Uninitialized Va… Mitigation only Fix from $1,9502024-03-22 MEDIUM 5.5 CVE-2024-26641 In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() syzbot found __ip… Linux Kernel 5.10.210 / 5.15.149+ Fix from $1,6002024-03-18 HIGH 7.1 CVE-2021-47101 In the Linux kernel, the following vulnerability has been resolved: asix: fix uninit-value in asix_mdio_read() asix_read_cmd() may read less than s… Linux Kernel 5.15.12+ Fix from $1,9502024-03-04 MEDIUM 5.5 CVE-2023-52577 In the Linux kernel, the following vulnerability has been resolved: dccp: fix dccp_v4_err()/dccp_v6_err() again dh->dccph_x is the 9th byte (offset… Linux Kernel 5.10.198 / 5.15.134+ Fix from $1,6002024-03-02 MEDIUM 5.5 CVE-2023-52528 In the Linux kernel, the following vulnerability has been resolved: net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg syzbot repor… Linux Kernel 4.14.327 / 4.19.296+ Fix from $1,6002024-03-02 MEDIUM 5.5 CVE-2021-47056 In the Linux kernel, the following vulnerability has been resolved: crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init ADF_STATUS… Linux Kernel 4.9.269 / 4.14.233+ Fix from $1,6002024-02-29 HIGH 7.8 CVE-2024-1847 Heap-based Buffer Overflow, Memory Corruption, Out-Of-Bounds Read, Out-Of-Bounds Write, Stack-based Buffer Overflow, Type Confusion, Uninitialized Va… Solidworks 2024+ Fix from $1,9502024-02-28 HIGH 7.5 CVE-2024-21502 Versions of the package fastecdsa before 2.3.2 are vulnerable to Use of Uninitialized Variable on the stack, via the curvemath_mul function in src/cu… Fastecdsa 2.3.2+ Fix from $1,9502024-02-24 HIGH 7.8 CVE-2024-23137 A maliciously crafted STP or SLDPRT file, when parsed in ODXSW_DLL.dll through Autodesk applications, can be used to uninitialized variables. This vu… Autocad 2021.1.4 / 2022.1.4+ Fix from $1,9502024-02-22 HIGH 7.5 CVE-2024-26147 Helm is a package manager for Charts for Kubernetes. Versions prior to 3.14.2 contain an uninitialized variable vulnerability when Helm parses index … Helm 3.14.2+ Fix from $1,9502024-02-21 HIGH 7.5 CVE-2024-23314 When HTTP/2 is configured on BIG-IP or BIG-IP Next SPK systems, undisclosed responses can cause the Traffic Management Microkernel (TMM) to terminate… Big Ip Access Policy Manager 15.1.9 / 16.1.4+ Fix from $1,9502024-02-14 MEDIUM 5.5 CVE-2024-20694 Windows CoreMessaging Information Disclosure Vulnerability Windows 10 1607 10.0.14393.6614 / 10.0.17763.5329+ Fix from $1,6002024-01-09 HIGH 7.2 CVE-2023-42797 A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05.20), CP-8050 MASTER MODULE (All versions < CPCI85 V05.20). Th… Sicam A8000 Cp 8050 Firmware 05.20+ Fix from $1,9502024-01-09 CRITICAL 9.8 CVE-2023-4489 The first S0 encryption key is generated with an uninitialized PRNG in Z/IP Gateway products running Silicon Labs Z/IP Gateway SDK v7.18.3 and earlie… Z\/ip Gateway Sdk after 7.18.03 Fix from $2,3002023-12-14 MEDIUM 5.3 CVE-2023-36012 DHCP Server Service Information Disclosure Vulnerability Windows Server 2008 Patch available Fix from $1,6002023-12-12 HIGH 7.8 CVE-2023-31275 An uninitialized pointer use vulnerability exists in the functionality of WPS Office 11.2.0.11537 that handles Data elements in an Excel file. A spec… Wps Office Mitigation only Fix from $1,9502023-11-27