CWE-617

Reachable Assertion

Parent: CWE-705 - Incorrect Control Flow Scoping

The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.

748 vulnerabilities with CWE-617
CVE-2021-33600 MEDIUM
F-Secure Internet Gatekeeper 5.10-5.50.47 - Unauthenticated Denial of Service via Malformed HTTP Packet
CVSS 5.4
CVE-2021-1971 HIGH
Qualcomm AQT1000 Firmware - Reachable Assertion
CVSS 7.5
CVE-2021-36691 HIGH
libjxl v0.5.0 - Denial of Service via Malicious GIF File Encoding
CVSS 7.5
CVE-2021-38385 HIGH
Tor <0.3.5.16, 0.4.5.10, 0.4.6.7 - Remote Assertion Failure
CVSS 7.5
CVE-2021-21778 HIGH
lib60870.NET 2.2.0 - Unauthenticated Denial of Service via ASDU Message Processing
CVSS 7.5
CVE-2021-40083 HIGH
Knot Resolver < 5.3.2 - Denial of Service via NSEC3 Iteration Assertion Failure
CVSS 7.5
CVE-2021-25218 HIGH
BIND 9.16.19 9.17.16 and 9.16.19-S1 - Reachable Assertion
CVSS 7.5
CVE-2021-39283 MEDIUM
Live555 < 1.08 - Reachable Assertion via Multiple SETUP and PLAY Commands
CVSS 5.5
CVE-2021-37644 MEDIUM
TensorFlow 2.3.0-2.3.3 - Denial of Service via Negative num_elements in TensorListReserve
CVSS 5.5
CVE-2021-38291 HIGH
FFmpeg < 4.1.7 - Reachable Assertion in mathematics.c
CVSS 7.5
CVE-2021-32815 MEDIUM
exiv2 < 0.27.5 - Denial of Service via Crafted Image Metadata Modification
CVSS 5.5
CVE-2021-31878 MEDIUM
Asterisk - Reachable Assertion in PJSIP via re-INVITE without SDP
CVSS 6.5
CVE-2021-1422 HIGH
Cisco ASA and FTD Software 9.16.1 and 7.0.0 - Denial of Service via IPsec Packet Decryption Error
CVSS 7.7
CVE-2021-1955 HIGH
Qualcomm APQ8009 and related firmware - Denial of Service via SAP Connection Handling
CVSS 7.5
CVE-2021-1953 HIGH
Qualcomm Firmware - Reachable Assertion via Malformed FTMR Request Frame
CVSS 7.5
CVE-2021-1938 HIGH
Qualcomm AQT1000 Firmware - Reachable Assertion via Peer Creation and Deletion
CVSS 7.5
CVE-2021-1887 HIGH
Qualcomm WLAN Firmware - Reachable Assertion via Wi-Fi Fine Timing Measurement Protocol
CVSS 7.5
CVE-2021-1937 HIGH
Qualcomm AQT1000 Firmware - Reachable Assertion via Peer Association WLAN Message
CVSS 7.5
CVE-2021-30501 MEDIUM
UPX 4.0.0 - Denial of Service via Crafted File in MemBuffer::alloc()
CVSS 5.5
CVE-2021-28905 HIGH
libyang <= 1.0.225 - Reachable Assertion in lys_node_free()
CVSS 7.5
CVE-2021-29258 HIGH
Envoy 1.14.0 - Denial of Service via Empty HTTP2 Metadata Map
CVSS 7.5
CVE-2021-3531 MEDIUM
Red Hat Ceph Storage RGW <14.2.21 - DoS
CVSS 5.3
CVE-2021-29567 LOW
TensorFlow < 2.1.4 - Denial of Service via SparseDenseCwiseMul Input Validation
CVSS 2.5
CVE-2021-29563 LOW
TensorFlow < 2.1.4 - Denial of Service via tf.raw_ops.RFFT CHECK-Failure
CVSS 2.5
CVE-2021-29562 LOW
TensorFlow < 2.1.4 - Denial of Service via tf.raw_ops.IRFFT CHECK Failure
CVSS 2.5
Details
Vulnerabilities 748