CWE-617

Reachable Assertion

Parent: CWE-705 - Incorrect Control Flow Scoping

The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.

748 vulnerabilities with CWE-617
CVE-2025-38712 MEDIUM
Linux Kernel - Reachable Assertion in hfsplus_create_attributes_file
CVSS 5.5
CVE-2025-38701 MEDIUM
Linux Kernel - Reachable Assertion in ext4 Inline Data Handling
CVSS 5.5
CVE-2025-38690 MEDIUM
Linux Kernel 6.16-6.16.2 - Denial of Service via Recursive Bounce Buffer Allocation
CVSS 5.5
CVE-2025-9405 MEDIUM
Open5GS <2.7.5 - Reachable Assertion
CVSS 5.3
CVE-2025-9403 LOW
jqlang jq < 1.6 - Reachable Assertion in jq_test.c JSON Parser
CVSS 3.3
CVE-2025-38642 MEDIUM
Linux Kernel 6.13-6.15.10 6.16.0-6.16.1 - Reachable Assertion in Monitor Mode Link Change
CVSS 5.5
CVE-2025-9301 LOW
cmake <4.1.20250725-gb5cce23 - Info Disclosure
CVSS 3.3
CVE-2025-38544 MEDIUM
Linux Kernel 4.9-6.6.99, 6.7-6.12.39, 6.13-6.15.7 - Reachable Assertion in rxrpc_service_prealloc_one
CVSS 5.5
CVE-2025-38503 MEDIUM
Linux Kernel - Reachable Assertion in Btrfs Free Space Tree
CVSS 5.5
CVE-2025-30034 MEDIUM
SIMATIC RTLS Locating Manager <V3.3 - DoS
CVSS 6.2
CVE-2025-8836 LOW
JasPer < 4.2.5 - Reachable Assertion in jpc_floorlog2 Function
CVSS 3.3
CVE-2025-8804 MEDIUM
open5gs < 2.7.6 - Reachable Assertion in AMF ngap_build_downlink_nas_transport
CVSS 5.3
CVE-2025-8698 LOW
Open5GS < 2.7.5 - Reachable Assertion in AMF Service nsmf-handler.c
CVSS 3.3
CVE-2025-27073 HIGH
Qualcomm Firmware - Transient Denial of Service while Creating NDP Instance
CVSS 7.5
CVE-2025-27066 HIGH
Qualcomm 315 5G IoT Modem Firmware - Denial of Service via ANQP Message Processing
CVSS 7.5
CVE-2025-21452 HIGH
Qualcomm 315 5G IoT Modem Firmware - Denial of Service via Invalid PDU Length in RAR
CVSS 7.5
CVE-2025-8537 LOW
Bento4 < 1.6.0-641 - Uncontrolled Resource Consumption in AP4_DataBuffer::SetDataSize
CVSS 3.7
CVE-2025-50422 LOW
Cairo < 1.18.4 - Reachable Assertion in cairo-ft-font.c
CVSS 2.9
CVE-2025-54350 LOW
iperf3 3.2-3.19.1 - Denial of Service via Malformed Authentication Base64Decode Assertion
CVSS 3.7
CVE-2025-46354 HIGH
Bloomberg Comdb2 8.1 - Denial of Service via Distributed Transaction Commit/Abort Operation
CVSS 7.5
CVE-2025-36512 HIGH
Bloomberg Comdb2 8.1 - Denial of Service via Distributed Transaction Heartbeat
CVSS 7.5
CVE-2025-40777 HIGH
BIND 9 9.20.0-9.20.10 9.21.0-9.21.9 9.20.9-S1-9.20.10-S1 - Reachable Assertion via CNAME Chain Processing
CVSS 7.5
CVE-2025-7485 LOW
Open5GS <2.7.3 - Reachable Assertion
CVSS 3.3
CVE-2025-52964 MEDIUM
Juniper Junos OS and Junos OS Evolved - Unauthenticated Denial of Service via BGP UPDATE Packet
CVSS 6.5
CVE-2025-52958 MEDIUM
Junos OS and Junos OS Evolved - Unauthenticated Denial of Service via BGP Session Establishment
CVSS 5.3
Details
Vulnerabilities 748