CWE-617

Reachable Assertion

Parent: CWE-705 - Incorrect Control Flow Scoping

The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.

748 vulnerabilities with CWE-617
CVE-2022-40538 HIGH
Qualcomm AR8035 Firmware - Denial of Service via Reachable Assertion in Modem
CVSS 7.5
CVE-2022-33251 HIGH
Qualcomm 315 5G IoT Modem Firmware - Denial of Service via Reachable Assertion
CVSS 7.5
CVE-2022-22060 HIGH
Qualcomm 315 5G IoT Modem Firmware - Reachable Assertion via Reconfiguration Message
CVSS 7.5
CVE-2022-40504 HIGH
Qualcomm 315 5G IoT Modem Firmware - Denial of Service via Downlink Data Indication Message
CVSS 7.5
CVE-2022-40508 HIGH
Qualcomm 315 5G IoT Modem Firmware - Denial of Service via Cross-Carrier Scheduling Config
CVSS 7.5
CVE-2022-34144 HIGH
Qualcomm Modem Firmware - Denial of Service via OSI Decode Scheduling
CVSS 7.5
CVE-2022-36440 HIGH
Frrouting 8.3.0 - Denial of Service via Malicious BGP Open Packet
CVSS 7.5
CVE-2022-40527 HIGH
Qualcomm AR8035 Firmware - Denial of Service via WLAN PEER ID Processing
CVSS 7.5
CVE-2022-33272 HIGH
Qualcomm AR8035 and Multiple Firmware - Denial of Service via Reachable Assertion
CVSS 7.5
CVE-2022-33254 HIGH
Qualcomm Modem - Denial of Service via SIB1 Message
CVSS 7.5
CVE-2022-33250 HIGH
Qualcomm AR8035 and QCA Firmware - Denial of Service via NR to LTE Handover Invalid Message
CVSS 7.5
CVE-2022-33244 HIGH
Qualcomm AR8035 Firmware - Denial of Service via MIB Reception and SIB Timeout
CVSS 7.5
CVE-2022-48363 HIGH
Automotive Grade Linux < 0.23.8 - Reachable Assertion via PipeWire Output Plugin
CVSS 7.5
CVE-2022-3924 HIGH
BIND 9.16.12-9.16.36, 9.18.0-9.18.10, 9.19.0-9.19.8 - Reachable Assertion via Race Condition
CVSS 7.5
CVE-2022-3488 HIGH
BIND 9.11.4-S1-9.11.37-S1 and 9.16.8-S1-9.16.36-S1 - Reachable Assertion via ECS Pseudo-Option Processing
CVSS 7.5
CVE-2022-47516 HIGH
drachtio-server < 0.8.20 - Denial of Service via Crafted UDP Message
CVSS 7.5
CVE-2022-25702 HIGH
Qualcomm APQ8009 and other Firmware - Denial of Service via Reconfiguration Message
CVSS 7.5
CVE-2022-25692 HIGH
Qualcomm AR8035 and Multiple Firmware - Denial of Service via Common Config Procedure
CVSS 7.5
CVE-2022-25691 HIGH
Qualcomm AR8035 Firmware - Denial of Service via Invalid SIB1 SCS and Bandwidth Settings
CVSS 7.5
CVE-2022-25689 HIGH
Qualcomm AR8035 Firmware - Denial of Service via Reachable Assertion
CVSS 7.5
CVE-2022-25675 MEDIUM
Qualcomm Snapdragon Modem Firmware - Denial of Service via Filter Rule Processing
CVSS 5.5
CVE-2022-25673 HIGH
Qualcomm AR8035 Firmware - Denial of Service via Reachable Assertion in MODEM Configuration Processing
CVSS 7.5
CVE-2022-25672 HIGH
Qualcomm AR8035 Firmware - Denial of Service via Invalid SIB1 Bandwidth Processing
CVSS 7.5
CVE-2022-41901 MEDIUM
TensorFlow < 2.8.4 - Reachable Assertion in SparseMatrixNNZ
CVSS 4.8
CVE-2022-41899 MEDIUM
TensorFlow < 2.8.4 - Reachable Assertion in SdcaOptimizer
CVSS 4.8
Details
Vulnerabilities 748