CWE-617

Reachable Assertion

Parent: CWE-705 - Incorrect Control Flow Scoping

The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.

794 vulnerabilities with CWE-617
CVE-2026-3608 HIGH
ISC Kea - Stack Overflow Denial of Service
CVSS 7.5
CVE-2026-23555 HIGH
Xenstored DoS by unprivileged domain
CVSS 7.1
CVE-2026-27135 HIGH
nghttp2 Denial of service: Assertion failure due to the missing state validation
CVSS 7.5
CVE-2026-23238 MEDIUM
Linux Kernel 2.6.12.1-5.10.251 - Reachable Assertion via romfs sb_set_blocksize Failure
CVSS 5.5
CVE-2026-27809 CRITICAL
psd-tools < 1.12.2 - Denial of Service via Malformed RLE-Compressed Image Data
CVSS 9.1
CVE-2026-27015 MEDIUM
FreeRDP < 3.23.0 - Denial of Service via Smartcard Read Size Alignment Bounds Check
CVSS 6.5
CVE-2026-27623 HIGH
Valkey 9.0.0-9.0.3 - Denial of Service via Empty Request Handling
CVSS 7.5
CVE-2026-2523 MEDIUM
open5gs < 2.7.6 - Reachable Assertion in SMF GN Handler
CVSS 5.3
CVE-2026-25610 MEDIUM
MongoDB 7.0.0-7.0.28 - Authenticated Denial of Service via $geoNear Pipeline with Invalid Index Hints
CVSS 6.5
CVE-2026-23067 MEDIUM
Linux Kernel 6.16-6.18.8 - Reachable Assertion via IOVA Address Overflow in IOMMU Unmap Path
CVSS 5.5
CVE-2026-20422 MEDIUM
MediaTek Modem - Input Validation Denial of Service
CVSS 6.5
CVE-2026-20405 MEDIUM
MediaTek Modem - Bounds Check Denial of Service
CVSS 6.5
CVE-2026-20401 HIGH
MediaTek NR15 and MT Series - Remote Denial of Service via Rogue Base Station
CVSS 7.5
CVE-2026-1738 MEDIUM
open5gs < 2.7.6 - Reachable Assertion in SGWC Tunnel Addition
CVSS 5.3
CVE-2026-1737 MEDIUM
open5gs < 2.7.6 - Reachable Assertion in CreateBearerRequest Handler
CVSS 5.3
CVE-2026-1736 MEDIUM
Open5GS <2.7.6 - Reachable Assertion
CVSS 5.3
CVE-2026-24826 CRITICAL
cadaver turso3d - Memory Safety and Divide-by-Zero Flaws
CVE-2026-22990 HIGH
Linux Kernel - Reachable Assertion in libceph osdmap_apply_incremental
CVSS 7.5
CVE-2026-23991 MEDIUM
go-tuf 2.0.0-2.3.0 - Denial of Service via Invalid TUF Metadata JSON
CVSS 5.9
CVE-2025-56365 HIGH
Matter SDK < 1.4.0 - Denial of Service via Reachable Assertion in Command Processing for Nonexistent Endpoint
CVSS 7.5
CVE-2025-56362 HIGH
Matter SDK < 1.4.2 - Unauthenticated Denial of Service via Level Control Cluster Assertion Failure
CVSS 7.5
CVE-2025-56361 HIGH
Matter SDK (connectedhomeip) 1.3-1.4 - Unauthenticated Denial of Service via Level Control Cluster Invariant Assertion
CVSS 7.5
CVE-2025-56568 HIGH
Open5GS < 2.7.5 - Denial of Service via Malformed NGAP Message Length Field
CVSS 7.5
CVE-2025-69653 MEDIUM
QuickJS 2025-09-13 - Denial of Service via Crafted JavaScript Input in Garbage Collection
CVSS 6.5
CVE-2025-69534 HIGH
Python-Markdown < 3.8.1 - Unauthenticated Denial of Service via Malformed HTML-like Sequence
CVSS 7.5
Details
Vulnerabilities 794