CWE-908

Medium likelihood

Use of Uninitialized Resource

Parent: CWE-665 - Improper Initialization

The product uses or accesses a resource that has not been initialized.

762 vulnerabilities with CWE-908
CVE-2019-2170 MEDIUM
Android 10 - Information Disclosure via Uninitialized Data in libxaac
CVSS 6.5
CVE-2019-2169 MEDIUM
Android 10 - Information Disclosure via Uninitialized Data in libxaac
CVSS 6.5
CVE-2019-2168 MEDIUM
Android 10 - Information Disclosure via Uninitialized Data in libxaac
CVSS 6.5
CVE-2019-2167 MEDIUM
Android 10 - Information Disclosure via Uninitialized Data in libxaac
CVSS 6.5
CVE-2019-2166 MEDIUM
Android 10 - Information Disclosure via Uninitialized Data in libxaac
CVSS 6.5
CVE-2019-2140 MEDIUM
Android 10 - Information Disclosure via Uninitialized Data in libxaac
CVSS 6.5
CVE-2019-11750 MEDIUM
Firefox < 69.0 and Firefox ESR < 68.1.0 - Type Confusion in Spidermonkey
CVSS 6.5
CVE-2019-5067 CRITICAL
Aspose.PDF 19.2 - Memory Corruption
CVSS 9.8
CVE-2019-1254 MEDIUM
Windows 10 and Windows Server 2016/2019 - Information Disclosure via Uninitialized Memory Write
CVSS 5.5
CVE-2019-16144 HIGH
generator <0.6.18 - Memory Corruption
CVSS 7.5
CVE-2019-15553 HIGH
memoffset < 0.5.0 - Uninitialized Memory Exposure via offset_of and span_of
CVSS 7.5
CVE-2019-13220 HIGH
stb_vorbis < 2019-03-04 - Use of Uninitialized Resource in start_decoder
CVSS 7.1
CVE-2019-11694 HIGH
Thunderbird <60.7, Firefox <67, Firefox ESR <60.7 - Info Disclosure
CVSS 7.5
CVE-2019-1010299 MEDIUM
Rust Programming Language Standard Library <1.30.0 - Info Disclosure
CVSS 5.3
CVE-2019-1010319 MEDIUM
WavPack <5.1.0 - Use of Uninitialized Variable
CVSS 5.5
CVE-2019-1010317 MEDIUM
WavPack <5.1.0 - Use of Uninitialized Variable
CVSS 5.5
CVE-2019-2118 MEDIUM
Android 8.0-9 - Local Information Disclosure via Uninitialized Stack Variables in Parcel.cpp
CVSS 5.5
CVE-2019-2105 HIGH
Android 7.0-9 - Remote Code Execution via Uninitialized Memory in FileInputStream
CVSS 8.8
CVE-2019-2104 MEDIUM
Android 8.0-9 - Local Information Disclosure via Uninitialized Fields in HIDL and C++ Structs/Unions
CVSS 5.5
CVE-2019-13135 HIGH
ImageMagick < 6.9.10-50 - Use of Uninitialized Resource in ReadCUTImage
CVSS 8.8
CVE-2019-13117 MEDIUM
libxslt 1.1.33 - Information Disclosure via Uninitialized Read in xsltNumberFormatInsertNumbers
CVSS 5.3
CVE-2019-5818 MEDIUM
Google Chrome < 74.0.3729.108 - Information Disclosure via Uninitialized Media Data
CVSS 6.5
CVE-2019-2004 MEDIUM
Android 7.0-9 - Local Information Disclosure via Uninitialized Data in InputTransport.cpp
CVSS 5.5
CVE-2019-11038 MEDIUM
libgd - Information Disclosure via Uninitialized Variable in gdImageCreateFromXbm
CVSS 5.3
CVE-2019-7321 CRITICAL
Artifex MuPDF <1.14 - Buffer Overflow
CVSS 9.8
Details
Vulnerabilities 762
Exploit Likelihood Medium