CWE-617

Reachable Assertion

Parent: CWE-705 - Incorrect Control Flow Scoping

The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.

748 vulnerabilities with CWE-617
CVE-2025-24798 MEDIUM
meshtastic_firmware 1.2.1-2.6.2 - Denial of Service via Routing Module want_response Packet
CVSS 4.3
CVE-2025-49630 HIGH
Apache HTTP Server 2.4.26-2.4.63 - Denial of Service via mod_proxy_http2 Assertion
CVSS 7.5
CVE-2025-38285 MEDIUM
Linux Kernel - Reachable Assertion in BPF Raw Tracepoint Registers
CVSS 5.5
CVE-2025-38223 MEDIUM
Linux Kernel 6.12-6.12.34, 6.13-6.15.3, 6.16 - Reachable Assertion in Ceph Messenger
CVSS 5.5
CVE-2025-6952 LOW
Open5GS < 2.7.6 - Reachable Assertion in AMF Service amf_state_operational
CVSS 3.3
CVE-2025-6536 LOW
Tarantool <3.3.1 - Reachable Assertion
CVSS 3.3
CVE-2025-6497 LOW
HTACG tidy-html5 5.8.0 - Info Disclosure
CVSS 3.3
CVE-2025-6273 LOW
WebAssembly wabt <1.0.37 - Info Disclosure
CVSS 3.3
CVE-2025-38066 MEDIUM
Linux Kernel - Reachable Assertion via DM Cache Resume Retry
CVSS 5.5
CVE-2025-5520 MEDIUM
Open5GS <2.7.3 - Reachable Assertion
CVSS 5.3
CVE-2025-5501 MEDIUM
Open5GS <2.7.3 - Reachable Assertion
CVSS 5.3
CVE-2025-37930 MEDIUM
Linux Kernel - Reachable Assertion in nouveau_fence_context_kill()
CVSS 5.5
CVE-2025-37897 MEDIUM
Linux Kernel 5.19-6.1.137, 6.2-6.6.89, 6.7-6.12.27, 6.13-6.14.5 - Reachable Assertion in plfxlc_mac_release
CVSS 5.5
CVE-2025-37878 MEDIUM
Linux Kernel < 6.6.89, 6.12.24-6.12.25, 6.14.3-6.14.4 - Reachable Assertion in perf_event_open
CVSS 5.5
CVE-2025-37864 MEDIUM
Linux Kernel 5.18-6.6.87, 6.7-6.12.24, 6.13-6.14.3 - Reachable Assertion in DSA FDB/MDB/VLAN Cleanup
CVSS 5.5
CVE-2025-20666 HIGH
MediaTek NR15 - Remote Denial of Service via Rogue Base Station Connection
CVSS 7.5
CVE-2025-47229 LOW
GNU PSPP < 2.0.1 - Denial of Service via Crafted Input Data
CVSS 2.9
CVE-2025-29339 HIGH
Open5GS < 2.7.2 - Denial of Service via PFCP Session Parameter Validation
CVSS 7.5
CVE-2025-38637 MEDIUM
Linux Kernel 4.19-6.14.2 - Reachable Assertion in SKBPRIO Queue Length Tracking
CVSS 5.5
CVE-2025-31160 LOW
atop < 2.11.0 - Denial of Service via Unprivileged Process Execution
CVSS 2.9
CVE-2025-21754 MEDIUM
Linux Kernel 6.5-6.6.77, 6.7-6.12.13, 6.13-6.13.2 - Reachable Assertion in btrfs_split_ordered_extent
CVSS 5.5
CVE-2025-21721 MEDIUM
Linux Kernel - Reachable Assertion in nilfs2 Directory Manipulation Routines
CVSS 5.5
CVE-2025-22919 MEDIUM
FFmpeg N-113007-g8d24a28d06 - Denial of Service via Crafted AAC File
CVSS 6.5
CVE-2025-21654 MEDIUM
Linux Kernel 6.6-6.6.73, 6.7-6.12.9 - Reachable Assertion in OverlayFS File Handle Encoding
CVSS 5.5
CVE-2024-42645 HIGH
FlashMQ 1.14.0 - Denial of Service via Crafted Retain Message
CVSS 7.5
Details
Vulnerabilities 748