CWE-665

Medium likelihood

Improper Initialization

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not initialize or incorrectly initializes a resource, which might leave the resource in an unexpected state when it is accessed or used.

347 vulnerabilities with CWE-665
CVE-2020-9863 HIGH
iPadOS < 13.6 - Remote Code Execution via Memory Initialization Issue
CVSS 7.8
CVE-2020-10139 HIGH
Acronis True Image 2021 - Privilege Escalation via OpenSSL Configuration Path Manipulation
CVSS 7.8
CVE-2020-10138 HIGH
Acronis Cyber Backup <12.5 and Cyber Protect <15 - Privilege Escalation via OpenSSL Configuration File
CVSS 7.8
CVE-2020-16901 MEDIUM
Windows 10 and Windows Server 2016 - Information Disclosure via Improper Memory Initialization
CVSS 5.0
CVE-2020-9964 MEDIUM
iPadOS < 14.0 - Unprotected Kernel Memory Exposure via Improper Initialization
CVSS 5.5
CVE-2020-0414 MEDIUM
Android 10-11 - Remote Information Disclosure via AudioFlinger RecordThread
CVSS 6.5
CVE-2020-1592 MEDIUM
Windows 10 and Windows Server 2016/2019 - Information Disclosure via Improper Memory Initialization
CVSS 4.4
CVE-2020-24996 HIGH
Xpdf 4.0.2 - Denial of Service via Crafted PDF File in TextString Destructor
CVSS 7.8
CVE-2020-12301 HIGH
Intel Server Board - Privilege Escalation
CVSS 8.2
CVE-2020-8918 MEDIUM
Google go-tpm <0.3.0 - Info Disclosure
CVSS 6.3
CVE-2020-14347 MEDIUM
Xorg-server <1.20.9 - Memory Corruption
CVSS 5.5
CVE-2020-1389 MEDIUM
Windows Kernel - Information Disclosure via Improper Memory Initialization
CVSS 5.5
CVE-2020-4067 HIGH
coturn < 4.5.1.3 - Information Disclosure via Uninitialized STUN/TURN Response Buffer
CVSS 7.0
CVE-2020-0586 HIGH
Intel Server Platform Services < sps_e3_04.01.04.109.0 - Privilege Escalation and DoS via Improper Initialization
CVSS 7.8
CVE-2020-0529 HIGH
Intel Core i5/i7 BIOS Firmware - Unauthenticated Privilege Escalation via Improper Initialization
CVSS 7.8
CVE-2020-9833 MEDIUM
macOS Catalina <10.15.5 - Info Disclosure
CVSS 5.5
CVE-2020-3811 HIGH
netqmail - Mail-Address Verification Bypass via qmail-verify
CVSS 7.5
CVE-2020-10725 HIGH
DPDK < 19.11 - Denial of Service via Missing Descriptor Address Validation
CVSS 7.7
CVE-2020-11655 HIGH
SQLite < 3.31.1 - Denial of Service via Malformed Window-Function Query
CVSS 7.5
CVE-2020-1617 HIGH
Juniper Junos OS 17.4-18.3 - Denial of Service via sFlow Firewall Policer Inspection
CVSS 7.5
CVE-2020-9775 MEDIUM
iPadOS < 13.4 - Unprotected User Data Exposure via Picture-in-Picture State Handling
CVSS 5.3
CVE-2020-3919 HIGH
iPadOS < 13.4 - Remote Code Execution via Memory Initialization Issue
CVSS 7.8
CVE-2020-0506 LOW
Intel Graphics Driver < 15.40.44.5107 - Denial of Service via Improper Initialization
CVSS 2.3
CVE-2020-3872 MEDIUM
iPadOS < 13.3.1 - Unauthorized Memory Read via Improper Initialization
CVSS 5.5
CVE-2020-0561 HIGH
Intel(R) SGX SDK <v2.6.100.1 - Privilege Escalation
CVSS 7.8
Details
Vulnerabilities 347
Exploit Likelihood Medium