CWE-908

Medium likelihood

Use of Uninitialized Resource

Parent: CWE-665 - Improper Initialization

The product uses or accesses a resource that has not been initialized.

762 vulnerabilities with CWE-908
CVE-2017-4905 MEDIUM
VMware ESXi <6.5-8.5.6 - Info Disclosure
CVSS 5.5
CVE-2017-9098 HIGH
ImageMagick <7.0.5-2, GraphicsMagick <1.3.24 - Info Disclosure
CVSS 7.5
CVE-2016-5105 MEDIUM
QEMU < 2.6.2 - Uninitialized Memory Read via MegaRAID SAS MFI Command
CVSS 4.4
CVE-2016-0821 MEDIUM
Linux Kernel < 4.3 - Use-After-Free via LIST_POISON and mmap_min_addr Bypass
CVSS 5.5
CVE-2015-8390 CRITICAL
PCRE < 8.37 - Denial of Service via Crafted Regular Expression
CVSS 9.8
CVE-2015-5165
Xen < 4.5.0 - Uninitialized Memory Exposure via RTL8139 C+ Mode Offload Emulation
CVE-2015-3414
SQLite < 3.8.9 - Denial of Service via Crafted COLLATE Clause
CVE-2012-1891 CRITICAL
Microsoft Data Access Components 2.8 SP1-SP2 & Windows DAC 6.0 - RCE via Crafted XML
CVSS 9.8
CVE-2011-1998
Microsoft Internet Explorer 9 - RCE
CVE-2011-1995
Microsoft Internet Explorer <10 - RCE
CVE-2011-1964
Microsoft Internet Explorer <10 - Code Injection
CVE-2011-1963
Microsoft Internet Explorer <10 - Code Injection
CVE-2011-1266
Microsoft Internet Explorer 6-8 - Remote Code Execution via VML Memory Corruption
CVE-2011-1262
Microsoft Internet Explorer 7-9 - Remote Code Execution via Uninitialized Object Access
CVE-2011-1261
Microsoft Internet Explorer 6-9 - Remote Code Execution via Uninitialized or Deleted Object Access
CVE-2011-1256
Microsoft Internet Explorer 6-8 - Remote Code Execution via Uninitialized Object Access
CVE-2011-1255
Internet Explorer 6-8 - Use-After-Free in Timed Interactive Multimedia Extensions
CVE-2011-1254
Microsoft Internet Explorer 6-8 - Remote Code Execution via Uninitialized Object Access
CVE-2011-1251
Internet Explorer 8 - Remote Code Execution via Uninitialized Object Access
CVE-2011-1250
Microsoft Internet Explorer 6-9 - Remote Code Execution via Uninitialized Object Access
CVE-2010-3346
Microsoft Internet Explorer <8 - RCE
CVE-2010-3345
Microsoft Internet Explorer 8 - RCE
CVE-2010-3343
Microsoft Internet Explorer 6 - RCE
CVE-2010-2559
Microsoft Internet Explorer 8 - Remote Code Execution via Uninitialized Memory Corruption
CVE-2010-2557
Microsoft Internet Explorer 6 - Remote Code Execution via Uninitialized Memory Corruption
Details
Vulnerabilities 762
Exploit Likelihood Medium