Vulnerability index

Browse CVEs

745 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use of Uninitialized ResourceCWE-908 × clear
HIGH 8.8 CVE-2022-35414 softmmu/physmem.c in QEMU through 7.0.0 can perform an uninitialized read on the translate_fail path, leading to an io_readx or io_writex crash. NOTE… Debian Linux after 7.0.0 Fix from $1,9502022-07-11 MEDIUM 5.5 CVE-2021-40608 The gf_hinter_track_finalize function in GPAC 1.0.1 allows attackers to cause a denial of service via a crafted file in the MP4Box command. Gpac 2.0.0+ Fix from $1,6002022-06-28 HIGH 7.5 CVE-2022-25345 All versions of package @discordjs/opus are vulnerable to Denial of Service (DoS) when trying to encode using an encoder with zero channels, or a non… Opus No fix yet Fix from $1,9502022-06-17 HIGH 7.5 CVE-2022-31026 Trilogy is a client library for MySQL. When authenticating, a malicious server could return a specially crafted authentication packet, causing the cl… Trilogy 2.1.1+ Fix from $1,9502022-06-09 MEDIUM 5.5 CVE-2022-29205 TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, there is a potential for segfault / den… Tensorflow 2.6.4 / 2.7.2+ Fix from $1,6002022-05-20 MEDIUM 5.5 CVE-2022-20119 In private_handle_t of mali_gralloc_buffer.h, there is a possible information disclosure due to uninitialized data. This could lead to local informat… Android Mitigation only Fix from $1,6002022-05-10 HIGH 7.5 CVE-2022-26370 On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5, and 14.1.x versions prior to 14.1.4.6, when a Session Initiation Pro… Big Ip Access Policy Manager Mitigation only Fix from $1,9502022-05-05 HIGH 7.5 CVE-2022-28488 The function wav_format_write in libwav.c in libwav through 2017-04-20 has an Use of Uninitialized Variable vulnerability. Libwav after 2017-04-20 Fix from $1,9502022-05-04 MEDIUM 5.3 CVE-2021-41041 In Eclipse Openj9 before version 0.32.0, Java 8 & 11 fail to throw the exception captured during bytecode verification when verification is triggered… Openj9 0.32.0+ Fix from $1,6002022-04-27 MEDIUM 5.5 CVE-2022-0433 A NULL pointer dereference flaw was found in the Linux kernel's BPF subsystem in the way a user triggers the map_get_next_key function of the BPF blo… Linux Kernel after 5.16 Fix from $1,6002022-03-10 MEDIUM 5.3 CVE-2021-21966 An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution NWP 2.9.0.… Simplelink Cc32xx Software Development Kit 1.0.1.15-2.15.0.1 / 5.30.00.08+ Fix from $1,6002022-02-16 HIGH 8.8 CVE-2022-0115 Uninitialized use in File API in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially perform out of bounds memory access via… Chrome 97.0.4692.71+ Fix from $1,9502022-02-12 MEDIUM 6.5 CVE-2021-39671 In code generated by aidl_const_expressions.cpp, there is a possible out of bounds read due to uninitialized data. This could lead to information dis… Android Patch available Fix from $1,6002022-02-11 HIGH 8.8 CVE-2022-23573 Tensorflow is an Open Source Machine Learning Framework. The implementation of `AssignOp` can result in copying uninitialized data to a new tensor. T… Tensorflow after 2.6.2 Fix from $1,9502022-02-04 MEDIUM 5.9 CVE-2021-43848 h2o is an open source http server. In code prior to the `8c0eca3` commit h2o may attempt to access uninitialized memory. When receiving QUIC frames i… H2o 2021-12-20+ Fix from $1,6002022-02-01 CRITICAL 9.8 CVE-2021-45685 An issue was discovered in the columnar crate through 2021-01-07 for Rust. ColumnarReadExt::read_typed_vec may read from uninitialized memory locatio… Columnar after 0.0.19 Fix from $2,3002021-12-27 CRITICAL 9.8 CVE-2021-45686 An issue was discovered in the csv-sniffer crate through 2021-01-05 for Rust. preamble_skipcount may read from uninitialized memory locations. Csv Sniffer Mitigation only Fix from $2,3002021-12-27 CRITICAL 9.8 CVE-2021-45688 An issue was discovered in the ash crate before 0.33.1 for Rust. util::read_spv may read from uninitialized memory locations. Ash 0.33.1+ Fix from $2,3002021-12-27 CRITICAL 9.8 CVE-2021-45689 An issue was discovered in the gfx-auxil crate through 2021-01-07 for Rust. gfx_auxil::read_spirv may read from uninitialized memory locations. Gfx Auxil after 0.10.0 Fix from $2,3002021-12-27 CRITICAL 9.8 CVE-2021-45690 An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_binary may read from uninitialized memory locations. Messagepack Rs 0.8.1+ Fix from $2,3002021-12-27 CRITICAL 9.8 CVE-2021-45691 An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_string may read from uninitialized memory locations. Messagepack Rs 0.8.1+ Fix from $2,3002021-12-27 CRITICAL 9.8 CVE-2021-45692 An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_extension_others may read from uninitialized memory loca… Messagepack Rs 0.8.1+ Fix from $2,3002021-12-27 CRITICAL 9.8 CVE-2021-45693 An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_string_primitive may read from uninitialized memory loca… Messagepack Rs 0.8.1+ Fix from $2,3002021-12-27 HIGH 7.5 CVE-2021-45694 An issue was discovered in the rdiff crate through 2021-02-03 for Rust. Window may read from uninitialized memory locations. Rdiff after 0.1.2 Fix from $1,9502021-12-27 CRITICAL 9.8 CVE-2021-45703 An issue was discovered in the tectonic_xdv crate before 0.1.12 for Rust. XdvParser::<T>::process may read from uninitialized memory locations. Tectonic Xdv 0.1.12+ Fix from $2,3002021-12-27 HIGH 7.5 CVE-2020-36511 An issue was discovered in the bite crate through 2020-12-31 for Rust. read::BiteReadExpandedExt::read_framed_max may read from uninitialized memory … Bite after 0.0.5 Fix from $1,9502021-12-27 CRITICAL 9.8 CVE-2020-36512 An issue was discovered in the buffoon crate through 2020-12-31 for Rust. InputStream::read_exact may read from uninitialized memory locations. Buffoon Mitigation only Fix from $2,3002021-12-27 CRITICAL 9.8 CVE-2020-36513 An issue was discovered in the acc_reader crate through 2020-12-27 for Rust. read_up_to may read from uninitialized memory locations. Acc Reader after 2.0.0 Fix from $2,3002021-12-27 CRITICAL 9.8 CVE-2020-36514 An issue was discovered in the acc_reader crate through 2020-12-27 for Rust. fill_buf may read from uninitialized memory locations. Acc Reader after 2.0.0 Fix from $2,3002021-12-27 CRITICAL 9.8 CVE-2021-45682 An issue was discovered in the bronzedb-protocol crate through 2021-01-03 for Rust. ReadKVExt may read from uninitialized memory locations. Bronzedb Protocol Mitigation only Fix from $2,3002021-12-27