CWE-665

Medium likelihood

Improper Initialization

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not initialize or incorrectly initializes a resource, which might leave the resource in an unexpected state when it is accessed or used.

347 vulnerabilities with CWE-665
CVE-2018-14647 HIGH
Python 2.7.0-2.7.15, 3.4.0-3.4.9, 3.5.0-3.5.6, 3.6.0-3.6.6, 3.7.0 - Denial of Service via Expat Hash Collisions
CVSS 7.5
CVE-2018-8419 MEDIUM
Windows - Information Disclosure via Uninitialized Memory
CVSS 5.5
CVE-2018-16058 HIGH
Wireshark <2.6.3-<2.4.9-<2.2.17 - Crash
CVSS 7.5
CVE-2018-10915 HIGH
Redhat Openstack < 9.3.24 - Information Disclosure
CVSS 8.5
CVE-2018-14282 HIGH
Foxit Reader and PhantomPDF < 9.1.0.5096 - Remote Code Execution via FlateDecode Stream Handling
CVSS 8.8
CVE-2018-14678 HIGH
Linux Kernel 4.14.21-4.14.61 - Denial of Service via Xen Failsafe Callback
CVSS 7.8
CVE-2018-10901 HIGH
Linux kernel - Privilege Escalation
CVSS 7.8
CVE-2018-2934 MEDIUM
Oracle E-Business Suite <12.1.3 - Unauthenticated RCE
CVSS 5.3
CVE-2018-8121 MEDIUM
Windows 10 and Windows Server 2016 - Information Disclosure via Improper Memory Initialization
CVSS 4.7
CVE-2018-1175 MEDIUM
Foxit Reader 9.0.0.29935 - Info Disclosure
CVSS 6.5
CVE-2018-1174 MEDIUM
Foxit Reader 9.0.0.29935 - Info Disclosure
CVSS 6.5
CVE-2018-10484 HIGH
Foxit Reader and PhantomPDF < 9.0.1.1049 - Remote Code Execution via U3D Node Object Parsing
CVSS 8.8
CVE-2018-1118 LOW
Linux kernel <4.8 - Info Disclosure
CVSS 2.3
CVE-2018-10115 HIGH
7-zip < 18.03 - Remote Code Execution via RAR Decoder Uninitialized Memory
CVSS 7.8
CVE-2018-0887 MEDIUM
Windows Kernel - Information Disclosure via Improper Memory Initialization
CVSS 5.5
CVE-2018-0926 MEDIUM
Windows Kernel - Information Disclosure via Memory Address Handling
CVSS 5.5
CVE-2018-0901 MEDIUM
Windows Kernel - Information Disclosure via Memory Address Handling
CVSS 4.7
CVE-2018-0897 MEDIUM
Windows Kernel - Information Disclosure via Memory Address Handling
CVSS 4.7
CVE-2018-0895 MEDIUM
Windows Kernel - Information Disclosure via Memory Address Handling
CVSS 4.7
CVE-2018-0814 MEDIUM
Windows Kernel - Information Disclosure via Improper Memory Initialization
CVSS 5.5
CVE-2018-0813 MEDIUM
Windows Kernel - Information Disclosure via Improper Memory Initialization
CVSS 5.5
CVE-2018-0811 MEDIUM
Windows Kernel - Information Disclosure via Improper Memory Initialization
CVSS 5.5
CVE-2018-6947 HIGH
NoMachine < 6.0.66_2 - Local Privilege Escalation via Uninitialized Stack Variable in nxfuse
CVSS 7.8
CVE-2018-7419 HIGH
Wireshark 2.2.0-2.2.12 and 2.4.0-2.4.4 - Denial of Service in NBAP Dissector
CVSS 7.5
CVE-2018-0853 LOW
Microsoft Office 2010 SP2, 2013 SP1, 2016, and 2016 C2R - Information Disclosure via Improper Variable Initialization
CVSS 3.3
Details
Vulnerabilities 347
Exploit Likelihood Medium