CWE-908

Medium likelihood

Use of Uninitialized Resource

Parent: CWE-665 - Improper Initialization

The product uses or accesses a resource that has not been initialized.

761 vulnerabilities with CWE-908
CVE-2025-21716 MEDIUM
Linux Kernel 5.18-6.12.12 - Use of Uninitialized Resource in vxlan_vnifilter_dump
CVSS 5.5
CVE-2025-21707 MEDIUM
Linux Kernel 5.11-6.13.1 - Use-After-Free in MPTCP Suboption Handling
CVSS 5.5
CVE-2025-26803 MEDIUM
Phusion Passenger 6.0.21-6.0.25 - Denial of Service via Invalid HTTP Method Parsing
CVSS 5.3
CVE-2025-20638 MEDIUM
Android - Local Information Disclosure via Uninitialized Heap Data Read
CVSS 4.3
CVE-2025-21357 MEDIUM
Microsoft Outlook - Remote Code Execution
CVSS 6.7
CVE-2025-21312 LOW
Windows Smart Card Reader - Information Disclosure via Uninitialized Resource
CVSS 2.4
CVE-2025-21288 MEDIUM
Windows 10 1507-24H2 and Windows Server 2008-2012 - Information Disclosure via COM Server
CVSS 6.5
CVE-2025-21272 MEDIUM
Windows 10 1507-24H2 and Windows Server 2008/2012 - Information Disclosure via COM Server
CVSS 6.5
CVE-2025-21220 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Information Disclosure via Uninitialized Resource
CVSS 7.5
CVE-2024-57997 MEDIUM
Linux Kernel 5.18-6.1.128 6.2-6.6.75 6.7-6.12.12 6.13.0-6.13.1 - Use of Uninitialized Resource in wcn36xx Channel Survey
CVSS 5.5
CVE-2024-57912 HIGH
Linux Kernel 4.9-6.12.10 - Information Leak in zpa2326
CVSS 7.1
CVE-2024-57911 HIGH
Linux Kernel - Information Disclosure via Uninitialized Memory in IIO Dummy Driver
CVSS 7.1
CVE-2024-57910 HIGH
Linux Kernel 5.4.132-5.4.290 - Information Disclosure via Uninitialized Buffer in vcnl4035 Light Sensor Driver
CVSS 7.1
CVE-2024-57909 HIGH
Linux Kernel 6.12-6.12.9 - Information Leak in IIO Light BH1745 Triggered Buffer
CVSS 7.1
CVE-2024-57908 HIGH
Linux Kernel 4.0-6.12.10 IIO IMU KMX61 Information Leak
CVSS 7.1
CVE-2024-57907 HIGH
Linux Kernel < 6.6.72 - Use of Uninitialized Resource
CVSS 7.1
CVE-2024-57906 HIGH
Linux Kernel - Information Disclosure via Uninitialized Buffer in IIO ADC TI-ADS8688 Triggered Buffer
CVSS 7.1
CVE-2024-57905 HIGH
Linux Kernel 6.11-6.12.9 - Information Exposure via Uninitialized Memory in IIO ADC Triggered Buffer
CVSS 7.1
CVE-2024-57802 MEDIUM
Linux Kernel - Use of Uninitialized Resource in NetROM Routing Frame Handling
CVSS 5.5
CVE-2024-13164 HIGH
Ivanti Endpoint Manager < 2022 SU6 - Authenticated Privilege Escalation via Uninitialized Resource
CVSS 7.8
CVE-2024-12085 HIGH
rsync < 3.3.0 - Information Disclosure via Checksum Length Manipulation
CVSS 7.5
CVE-2024-57878 MEDIUM
Linux Kernel 6.9-6.12.4 - Uninitialized Memory Leak via NT_ARM_FPMR SETREGSET
CVSS 6.1
CVE-2024-57877 MEDIUM
Linux Kernel 6.12-6.12.4 - Uninitialized Memory Leak via NT_ARM_POE SETREGSET
CVSS 6.1
CVE-2024-57874 MEDIUM
Linux Kernel - Information Disclosure via Uninitialized Variable in NT_ARM_TAGGED_ADDR_CTRL Regset
CVSS 6.1
CVE-2024-53680 MEDIUM
Linux Kernel - Use of Uninitialized Resource in ip_vs_protocol_init()
CVSS 5.5
Details
Vulnerabilities 761
Exploit Likelihood Medium