CWE-908

Medium likelihood

Use of Uninitialized Resource

Parent: CWE-665 - Improper Initialization

The product uses or accesses a resource that has not been initialized.

761 vulnerabilities with CWE-908
CVE-2023-45663 MEDIUM
stb_image.h - Use of Uninitialized Resource in stbi__getn Return Value Handling
CVSS 5.3
CVE-2023-31192 MEDIUM
SoftEther VPN <5.01.9674 - Info Disclosure
CVSS 5.3
CVE-2023-36713 MEDIUM
Windows Common Log File System Driver - Info Disclosure
CVSS 5.5
CVE-2023-36704 HIGH
Microsoft Windows Setup Files Cleanup - Remote Code Execution
CVSS 7.8
CVE-2023-36567 HIGH
Windows Deployment Services - Info Disclosure
CVSS 7.5
CVE-2023-25588 MEDIUM
Binutils - Denial of Service via Uninitialized Variable in bfd_mach_o_get_synthetic_symtab
CVSS 4.7
CVE-2023-25586 MEDIUM
Binutils - Denial of Service via Uninitialized Variable in bfd_init_section_decompress_status
CVSS 4.7
CVE-2023-25585 MEDIUM
Binutils - Denial of Service via Uninitialized Variable in Module Structure
CVSS 4.7
CVE-2023-38140 MEDIUM
Windows Kernel - Information Disclosure via Uninitialized Paged Pool Memory
CVSS 5.5
CVE-2023-21276 MEDIUM
Android - Local Information Disclosure via Uninitialized Data in CursorWindow
CVSS 5.5
CVE-2023-21233 HIGH
Android - Remote Information Disclosure via Uninitialized Heap Data in AVRCP
CVSS 7.5
CVE-2023-22330 MEDIUM
Intel(R) NUC BIOS - Info Disclosure
CVSS 6.0
CVE-2023-36913 MEDIUM
Microsoft Message Queuing - Info Disclosure
CVSS 6.5
CVE-2023-3488 LOW
Silicon Labs Gecko SDK < 4.3.0 - Uninitialized Buffer Data Leak via GBL Parser
CVSS 3.8
CVE-2023-36836 MEDIUM
Juniper Networks Junos OS/Junos OS Evolved - DoS
CVSS 4.7
CVE-2023-35326 MEDIUM
Windows CDP User Components - Information Disclosure via Uninitialized Resource
CVSS 5.5
CVE-2023-35325 HIGH
Windows Print Spooler - Information Disclosure via Uninitialized Resource
CVSS 7.5
CVE-2023-32042 MEDIUM
Microsoft Windows OLE Automation - Information Disclosure
CVSS 6.5
CVE-2023-32041 MEDIUM
Windows Update Orchestrator Service - Info Disclosure
CVSS 5.5
CVE-2023-35847 HIGH
VirtualSquare picoTCP < 2.1 - Use of Uninitialized Resource
CVSS 7.5
CVE-2023-2747 LOW
Silabs Gecko Software Development Kit 2.0.0-2.2.0 - Weak Initialization Vector Generation in Secure Engine
CVSS 3.1
CVE-2023-21127 HIGH
Android - Remote Code Execution via Uninitialized Data in NuMediaExtractor
CVSS 8.8
CVE-2023-32016 MEDIUM
Microsoft Windows Installer - Information Disclosure
CVSS 5.5
CVE-2023-29367 HIGH
Microsoft iSCSI Target WMI Provider - Remote Code Execution
CVSS 7.8
CVE-2023-32213 HIGH
Firefox < 113.0 and Firefox ESR < 102.11 - Use of Uninitialized Resource
CVSS 8.8
Details
Vulnerabilities 761
Exploit Likelihood Medium