CWE-617

Reachable Assertion

Parent: CWE-705 - Incorrect Control Flow Scoping

The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.

748 vulnerabilities with CWE-617
CVE-2023-29935 MEDIUM
LLVM - Reachable Assertion via Replacement Operation
CVSS 5.5
CVE-2023-28856 MEDIUM
Redis < 6.0.19 - Authenticated Denial of Service via HINCRBYFLOAT Command
CVSS 5.5
CVE-2023-28425 MEDIUM
Redis 7.0.8-7.0.9 - Authenticated Denial of Service via MSETNX Command
CVSS 5.5
CVE-2023-27789 HIGH
tcpreplay - Denial of Service via cidr2cidr Function
CVSS 7.5
CVE-2023-27788 HIGH
tcpreplay - Denial of Service via ports2PORT Function in portmap.c
CVSS 7.5
CVE-2023-27783 HIGH
TCPreplay 4.4.3 - Denial of Service via tcpedit_dlt_cleanup Function
CVSS 7.5
CVE-2022-50340 MEDIUM
Linux Kernel 4.13-<5.10.163 5.11-<5.15.86 5.16-<6.0.16 6.1-<6.1.2 - Reachable Assertion in vimc_init() Error Handling
CVSS 5.5
CVE-2022-50293 MEDIUM
Linux Kernel < 5.15.86, 5.16.0-6.0.16, 6.1.0-6.1.2 - Denial of Service via BUG_ON in btrfs_drop_extents
CVSS 5.5
CVE-2022-50126 MEDIUM
Linux Kernel 2.6.20-5.19.1 - JBD2 Journal Dirty Metadata Reachable Assertion
CVSS 5.5
CVE-2022-50062 MEDIUM
Linux Kernel 4.1-5.19.4 - Reachable Assertion in bgmac_poll via bytes_compl Miscalculation
CVSS 5.5
CVE-2022-50041 MEDIUM
Linux kernel 5.18.6-5.19 - Reachable Assertion in ice_reset_vf
CVSS 5.5
CVE-2022-49879 MEDIUM
Linux Kernel < 5.4.224, 5.5.0-5.10.154, 5.11.0-5.15.78, 5.16.0-6.0.8 - Reachable Assertion via Corrupted ext4 Directory
CVSS 5.5
CVE-2022-49778 MEDIUM
Linux Kernel 5.19-6.0.9 - Reachable Assertion via Non-Leaf PMD/PUD Page Table Check
CVSS 5.5
CVE-2022-49708 MEDIUM
Linux Kernel - Reachable Assertion in ext4_mb_use_inode_pa
CVSS 5.5
CVE-2022-49409 MEDIUM
Linux Kernel 3.2.55-3.3 - Reachable Assertion in ext4_extents_status.c
CVSS 5.5
CVE-2022-49347 MEDIUM
Linux Kernel - Reachable Assertion in ext4_writepages
CVSS 5.5
CVE-2022-49325 MEDIUM
Linux Kernel - Reachable Assertion via tp->snd_cwnd Manipulation
CVSS 5.5
CVE-2022-49171 MEDIUM
Linux Kernel - Reachable Assertion in ext4 Page Handling
CVSS 5.5
CVE-2022-49158 MEDIUM
Linux Kernel - Reachable Assertion in qla2x00_async_adisc_sp_done
CVSS 5.5
CVE-2022-49154 MEDIUM
Linux Kernel 4.9-5.10.110, 5.11-5.15.33, 5.16-5.16.19, 5.17-5.17.2 - Reachable Assertion in KVM SVM IRQ Handling
CVSS 5.5
CVE-2022-48633 MEDIUM
Linux Kernel < 5.19.12 - Reachable Assertion in DRM GMA500 psb_gem_unpin
CVSS 5.5
CVE-2022-38349 MEDIUM
Poppler 22.08.0 - Denial of Service via Missing Stream Check in PDFDoc::replacePageDict
CVSS 6.5
CVE-2022-37052 MEDIUM
Poppler 22.07.0 - Denial of Service via Reachable Assertion in Object::getString
CVSS 6.5
CVE-2022-37051 MEDIUM
Poppler 22.07.0 - Denial of Service via Missing Stream Check in pdfunite
CVSS 6.5
CVE-2022-35205 MEDIUM
Binutils 2.38.50 - Denial of Service via Reachable Assertion in readelf
CVSS 5.5
Details
Vulnerabilities 748