CWE-617

Reachable Assertion

Parent: CWE-705 - Incorrect Control Flow Scoping

The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.

748 vulnerabilities with CWE-617
CVE-2021-29561 LOW
TensorFlow < 2.1.4 - Denial of Service via LoadAndRemapMatrix ckpt_path CHECK Failure
CVSS 2.5
CVE-2021-29552 LOW
TensorFlow < 2.1.4 - Denial of Service via UnsortedSegmentJoin num_segments Tensor
CVSS 2.5
CVE-2021-29543 LOW
TensorFlow < 2.1.4 - Denial of Service via CTCGreedyDecoder CHECK-LT Assertion
CVSS 2.5
CVE-2021-3502 MEDIUM
avahi 0.8-5 - Denial of Service via Invalid Hostname Resolution
CVSS 5.5
CVE-2021-1925 HIGH
Qualcomm AQT1000 Firmware - Denial of Service via Group Management Action Frame
CVSS 7.5
CVE-2021-25215 HIGH
BIND <9.11.30-9.17.12 - DoS
CVSS 7.5
CVE-2021-25214 MEDIUM
BIND 9.8.5-9.8.8, 9.9.3-9.11.29, 9.12.0-9.16.13, 9.17.0-9.17.11 - DoS via Malformed IXFR
CVSS 6.5
CVE-2021-20217 HIGH
Privoxy < 3.0.31 - Denial of Service via Crafted CGI Request
CVSS 7.5
CVE-2021-28090 MEDIUM
Tor < 0.4.5.7 - Reachable Assertion via Directory Authority
CVSS 5.3
CVE-2021-28543 MEDIUM
varnish-modules < 0.17.1 - Denial of Service via header.append() and header.copy() Functions
CVSS 4.0
CVE-2021-24029 HIGH
mvfst < 2021-03-13 - Denial of Service via QUIC Session Message
CVSS 7.5
CVE-2021-20286 LOW
libnbd < 1.7.3 - Denial of Service via Assertion Failure in nbd_unlocked_opt_go
CVSS 2.7
CVE-2021-20272 HIGH
Privoxy < 3.0.32 - Denial of Service via Crafted CGI Request
CVSS 7.5
CVE-2021-23970 MEDIUM
Firefox < 86.0 - Reachable Assertion in Multithreaded WebAssembly Code
CVSS 6.5
CVE-2021-27212 HIGH
OpenLDAP < 2.4.57 and 2.5.x < 2.5.1alpha - Denial of Service via Crafted Packet in issuerAndThisUpdateCheck
CVSS 7.5
CVE-2021-3326 HIGH
glibc < 2.32.0 - Denial of Service via ISO-2022-JP-3 Encoding Assertion Failure
CVSS 7.5
CVE-2020-36562 HIGH
dht - Denial of Service via Malicious Message Type Assertion
CVSS 7.5
CVE-2020-20262 MEDIUM
Mikrotik RouterOS < 6.47 - Authenticated Denial of Service via IPsec Packet Assertion Failure
CVSS 6.5
CVE-2020-36420 HIGH
polipo < 1.1.1 - Denial of Service via Malformed Range Header
CVSS 7.5
CVE-2020-20225 MEDIUM
Mikrotik RouterOS < 6.47 - Authenticated Denial of Service via Crafted Packet
CVSS 6.5
CVE-2020-20211 MEDIUM
Mikrotik RouterOs 6.44.5 - Authenticated Denial of Service via Crafted Packet to /nova/bin/console
CVSS 6.5
CVE-2020-23322 HIGH
JerryScript 2.2.0 - Info Disclosure
CVSS 7.5
CVE-2020-23320 HIGH
JerryScript 2.2.0 - Info Disclosure
CVSS 7.5
CVE-2020-23319 HIGH
JerryScript 2.2.0 - Reachable Assertion in parser_emit_cbc_backward_branch
CVSS 7.5
CVE-2020-23314 HIGH
JerryScript 2.2.0 - Info Disclosure
CVSS 7.5
Details
Vulnerabilities 748