CWE-617

Reachable Assertion

Parent: CWE-705 - Incorrect Control Flow Scoping

The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.

748 vulnerabilities with CWE-617
CVE-2022-41893 MEDIUM
TensorFlow < 2.8.4 - Denial of Service via tf.raw_ops.TensorListResize
CVSS 4.8
CVE-2022-25671 HIGH
Qualcomm AR8035 Firmware - Denial of Service via Reachable Assertion
CVSS 7.5
CVE-2022-26446 HIGH
MediaTek LR12A, LR13, NR15, NR16 - Denial of Service via Improper SIB12 CMAS Message Concatenation
CVSS 7.5
CVE-2022-36016 MEDIUM
TensorFlow < 2.7.2 - Reachable Assertion in FullTypeDef Substitution
CVSS 5.9
CVE-2022-36012 MEDIUM
TensorFlow < 2.7.2 - Reachable Assertion in FunctionDef Import
CVSS 5.9
CVE-2022-36005 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via Fake Quantization Min/Max Gradient Check
CVSS 5.9
CVE-2022-36004 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via Large Input Shape and Rates in tf.random.gamma
CVSS 5.9
CVE-2022-36003 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via RandomPoissonV2 CHECK Fail
CVSS 5.9
CVE-2022-36002 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via Unbatch Non-Scalar Input
CVSS 5.9
CVE-2022-36001 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via DrawBoundingBoxes Input Validation
CVSS 5.9
CVE-2022-35999 MEDIUM
TensorFlow <2.10.0-2.9.1-2.8.1 - DoS
CVSS 5.9
CVE-2022-35998 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via EmptyTensorList Element Shape Check
CVSS 5.9
CVE-2022-35997 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via Non-Scalar Separator in tf.sparse.cross
CVSS 5.9
CVE-2022-35995 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via AudioSummaryV2 Sample Rate Check
CVSS 5.9
CVE-2022-35994 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via CollectiveGather Scalar Input
CVSS 5.9
CVE-2022-35993 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via SetSize CHECK Fail
CVSS 5.9
CVE-2022-35992 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via TensorListFromTensor element_shape Rank Check
CVSS 5.9
CVE-2022-35991 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via TensorListScatter Element Shape Check
CVSS 5.9
CVE-2022-40755 MEDIUM
JasPer 3.0.6 - Denial of Service via Reachable Assertion in inttobits Function
CVSS 5.5
CVE-2022-36026 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via QuantizeAndDequantizeV3 Non-scalar num_bits Input
CVSS 5.9
CVE-2022-36019 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via FakeQuantWithMinMaxVarsPerChannel CHECK Fail
CVSS 5.9
CVE-2022-36018 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via RaggedTensorToVariant CHECK Fail
CVSS 5.9
CVE-2022-35990 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via Fake Quantization Min/Max Rank Check
CVSS 5.9
CVE-2022-35989 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via MaxPool Window Size Check
CVSS 5.9
CVE-2022-35988 MEDIUM
TensorFlow < 2.7.2 - Denial of Service via Empty Input to tf.linalg.matrix_rank
CVSS 5.9
Details
Vulnerabilities 748