CWE-457

High likelihood

Use of Uninitialized Variable

Parent: CWE-908 - Use of Uninitialized Resource

The code uses a variable that has not been initialized, leading to unpredictable or unintended results.

172 vulnerabilities with CWE-457
CVE-2024-10204 HIGH
eDrawings SOLIDWORKS 2024-2025 - Heap-based Buffer Overflow and Uninitialized Variable in X_B and SAT File Parsing
CVSS 7.8
CVE-2024-10934 CRITICAL
OpenBSD < 7.4 - Double Free in NFS Client and Server Implementation
CVSS 9.8
CVE-2024-47966 HIGH
Delta Electronics CNCSoft-G2 - Use-After-Free via Uninitialized Memory Access
CVSS 7.8
CVE-2024-9355 MEDIUM
Golang FIPS OpenSSL - Buffer Overflow
CVSS 6.5
CVE-2024-7022 MEDIUM
Google Chrome < 123.0.6312.58 - Use-After-Free in V8 via Crafted HTML Page
CVSS 4.3
CVE-2024-45618 LOW
Redhat Enterprise Linux < 0.26.0 - Use of Uninitialized Resource
CVSS 3.9
CVE-2024-45617 LOW
Redhat Enterprise Linux < 0.26.0 - Use of Uninitialized Resource
CVSS 3.9
CVE-2024-45616 LOW
Redhat Enterprise Linux < 0.26.0 - Use of Uninitialized Resource
CVSS 3.9
CVE-2024-45615 LOW
Redhat Enterprise Linux < 0.26.0 - Use of Uninitialized Resource
CVSS 3.9
CVE-2024-7868 HIGH
Xpdf < 4.06 - Use-After-Free in DCT Decoder
CVSS 8.2
CVE-2024-7542 LOW
oFono - Information Disclosure via AT CMGR Command Uninitialized Variable
CVSS 3.3
CVE-2024-7541 LOW
oFono - Information Disclosure via AT CMT Command Uninitialized Variable
CVSS 3.3
CVE-2024-7540 LOW
oFono - Information Disclosure via Uninitialized Variable in AT CMGL Command Response Parsing
CVSS 3.3
CVE-2024-33021 HIGH
Qualcomm AR8035 Firmware - Memory Corruption via IOCTL Metainfo Handling
CVSS 8.4
CVE-2024-6990 HIGH
Google Chrome < 127.0.6533.88 - Uninitialized Use in Dawn via Crafted HTML Page
CVSS 8.8
CVE-2024-23159 HIGH
Autodesk AutoCAD 2022-<2022.1.5 - Use-After-Free via STP File Parsing
CVSS 7.8
CVE-2024-37002 HIGH
Autodesk AutoCAD 2022-2022.1.5 - Use of Uninitialized Variable via Crafted MODEL File
CVSS 7.8
CVE-2024-32611 CRITICAL
HDF5 < 1.14.4 - Use of Uninitialized Variable in H5A__attr_release_table
CVSS 9.8
CVE-2024-31636 LOW
LIEF 0.14.1 - Information Disclosure via Uninitialized Variable in machd_reader.c
CVSS 3.9
CVE-2024-32625 MEDIUM
ASRMicro ASR1806 Firmware < cp01.057.067 - Use of Uninitialized Variable in OffloadAMRWriter
CVSS 5.8
CVE-2024-29838 HIGH
Evolution Controller <2.04.560.31.03.2024 - DoS
CVSS 7.5
CVE-2024-31874 MEDIUM
IBM Security Verify Access Appliance <10.0.8 - DoS
CVSS 6.2
CVE-2024-1848 HIGH
SOLIDWORKS Desktop Release SOLIDWORKS 2024 SP0 - Heap-based Buffer Overflow in File Reading Procedure
CVSS 7.8
CVE-2024-1847 HIGH
SOLIDWORKS 2023-2024 - Multiple Memory Corruption Vulnerabilities in File Reading Procedure
CVSS 7.8
CVE-2024-21502 HIGH
fastecdsa < 2.3.2 - Use of Uninitialized Variable in curvemath_mul
CVSS 7.5
Details
Vulnerabilities 172
Exploit Likelihood High