CWE-617

Reachable Assertion

Parent: CWE-705 - Incorrect Control Flow Scoping

The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.

748 vulnerabilities with CWE-617
CVE-2022-34000 MEDIUM
libjxl 0.6.1 - Reachable Assertion in LowMemoryRenderPipeline::Init()
CVSS 6.5
CVE-2022-32978 MEDIUM
libjpeg < 1.64 - Reachable Assertion via Empty JPEG-LS Scan
CVSS 6.5
CVE-2022-29228 HIGH
envoyproxy/envoy < 1.22.1 - Reachable Assertion in OAuth Filter
CVSS 7.5
CVE-2022-31651 MEDIUM
Sound Exchange - Reachable Assertion
CVSS 5.5
CVE-2022-31620 MEDIUM
libjpeg < 1.64 - Denial of Service via BitStream Assertion Failure
CVSS 6.5
CVE-2022-29213 MEDIUM
TensorFlow <2.9.0 - Memory Corruption
CVSS 5.5
CVE-2022-1183 HIGH
BIND 9.18.0-9.18.2 and 9.19.0 - Reachable Assertion via HTTP in listen-on Statement
CVSS 7.5
CVE-2022-29977 MEDIUM
libsixel 1.8.6 - Denial of Service via Crafted JPEG File
CVSS 6.5
CVE-2022-29339 HIGH
GPAC < 2022-04-12 - Denial of Service via Failed Assertion in BS_ReadByte
CVSS 7.5
CVE-2022-24272 MEDIUM
MongoDB 5.0.0-5.0.6 - Authenticated Denial of Service via $external Database Command Dispatch
CVSS 6.5
CVE-2022-20694 MEDIUM
Cisco IOS XE - Denial of Service via RPKI RTR Protocol Packet Header
CVSS 6.8
CVE-2022-27448 HIGH
MariaDB 10.3.0-10.3.34 - Reachable Assertion via BTR_PCUR_ON Check
CVSS 7.5
CVE-2022-27382 HIGH
MariaDB 10.4.0-10.4.25 - Denial of Service via Item_field::used_tables/update_depend_map_for_order
CVSS 7.5
CVE-2022-27939 MEDIUM
Tcpreplay 4.4.1 - Reachable Assertion in get_layer4_v6
CVSS 5.5
CVE-2022-27938 MEDIUM
libsixel - Reachable Assertion in stb_image.h stbi__create_png_image_raw
CVSS 5.5
CVE-2022-24777 HIGH
grpc-swift < 1.7.2 - Denial of Service via GOAWAY Frame Handling
CVSS 7.5
CVE-2022-0635 HIGH
BIND 9.18.0 - Denial of Service via Assertion Failure
CVSS 7.5
CVE-2022-25484 MEDIUM
tcpreplay v4.4.1 - Reachable Assertion in packet2tree()
CVSS 5.5
CVE-2022-0667 HIGH
BIND 9.18.0 - Denial of Service via Reachable Assertion
CVSS 7.5
CVE-2022-0865 MEDIUM
libtiff 4.3.0 - Denial of Service via Crafted TIFF File
CVSS 5.5
CVE-2022-22901 MEDIUM
JerryScript - Reachable Assertion in Function Argument Parser
CVSS 5.5
CVE-2022-23588 MEDIUM
TensorFlow < 2.5.3 - Denial of Service via SavedModel Grappler Optimizer
CVSS 6.5
CVE-2022-23586 MEDIUM
TensorFlow < 2.5.3 - Denial of Service via SavedModel Assertion Falsification
CVSS 6.5
CVE-2022-23583 MEDIUM
TensorFlow < 2.5.3 - Denial of Service via SavedModel Type Confusion
CVSS 6.5
CVE-2022-23582 MEDIUM
TensorFlow < 2.5.3 - Denial of Service via SavedModel TensorByteSize CHECK Failure
CVSS 6.5
Details
Vulnerabilities 748