CWE-908

Medium likelihood

Use of Uninitialized Resource

Parent: CWE-665 - Improper Initialization

The product uses or accesses a resource that has not been initialized.

761 vulnerabilities with CWE-908
CVE-2024-50110 MEDIUM
Linux Kernel 5.11-6.11.5 - Information Disclosure via Uninitialized Memory in XFRM
CVSS 5.5
CVE-2024-8896 HIGH
AutoCAD 2025 < 2025.1.1 - Use-After-Free via Malicious DXF File
CVSS 7.8
CVE-2024-50035 HIGH
Linux Kernel - Use-After-Free in ppp_async_encode
CVSS 7.1
CVE-2024-50033 HIGH
Linux Kernel - Use-After-Free in SLIP slhc_remember Function
CVSS 7.1
CVE-2024-50014 MEDIUM
Linux Kernel < 6.10.14 - Use of Uninitialized Resource in ext4 Fast-Commit Replay
CVSS 5.5
CVE-2024-49990 MEDIUM
Linux Kernel < 6.10.14, 6.11.0-6.11.2, 6.12 - Use of Uninitialized Resource in Xe HDCP GSC Structure
CVSS 5.5
CVE-2024-49900 HIGH
Linux Kernel - Use of Uninitialized Resource in JFS Extended Attributes
CVSS 7.1
CVE-2024-47687 MEDIUM
Linux Kernel 6.7-6.10.12 6.11.0-6.11.1 - Use-After-Free in vdpa/mlx5 mr Resource Handling
CVSS 5.5
CVE-2024-47685 CRITICAL
Linux Kernel 3.18-6.11.1 - Information Exposure via Uninitialized Memory in nf_reject_ip6_tcphdr_put
CVSS 9.1
CVE-2024-47966 HIGH
Delta Electronics CNCSoft-G2 - Use-After-Free via Uninitialized Memory Access
CVSS 7.8
CVE-2024-43537 MEDIUM
Windows 10/11 Multiple Versions - DoS via Mobile Broadband Driver OOB Read
CVSS 6.5
CVE-2024-43502 HIGH
Windows 10 1809, 21H2, 22H2 and Windows Server 2019 - Elevation of Privilege via Uninitialized Resource
CVSS 7.1
CVE-2024-46865 HIGH
Linux Kernel - Use of Uninitialized Resource in FOU Module
CVSS 7.1
CVE-2024-7022 MEDIUM
Google Chrome < 123.0.6312.58 - Use-After-Free in V8 via Crafted HTML Page
CVSS 4.3
CVE-2024-46784 MEDIUM
Linux Kernel 5.15-6.1.110, 5.15.0-5.15.181, 6.2.0-6.6.51, 6.7.0-6.10.10 - Use of Uninitialized Resource in NAPI Cleanup
CVSS 5.5
CVE-2024-43458 HIGH
Windows 10 1607 and Windows Server 2016 < 10.0.14393.7336 - Information Disclosure via Uninitialized Resource
CVSS 7.7
CVE-2024-38260 HIGH
Windows Remote Desktop Licensing Service - Remote Code Execution
CVSS 8.8
CVE-2024-38257 HIGH
Microsoft AllJoyn API - Info Disclosure
CVSS 7.5
CVE-2024-38256 MEDIUM
Windows Kernel-Mode - Info Disclosure
CVSS 5.5
CVE-2024-38254 MEDIUM
Windows 10 1507-22H2 and Windows 11 21H2-24H2 - Authentication Information Disclosure via Uninitialized Resource
CVSS 5.5
CVE-2024-8654 MEDIUM
MongoDB Server <6.0.3 - Memory Corruption
CVSS 5.0
CVE-2024-8178 HIGH
FreeBSD 13.0-13.2 - Uninitialized Memory Exposure in ctl_write_buffer and ctl_read_buffer
CVSS 8.8
CVE-2024-45005 MEDIUM
Linux Kernel 6.2-6.6.47, 6.7-6.10.6 - Use of Uninitialized Resource in KVM S390 GISA Handling
CVSS 5.5
CVE-2024-44999 HIGH
Linux Kernel 4.7-6.10.6 - Use of Uninitialized Resource in GTP Packet Transmission
CVSS 7.1
CVE-2024-44983 HIGH
Linux Kernel 5.13-6.10.6 - Netfilter Flowtable VLAN Header Validation Use of Uninitialized Resource
CVSS 7.1
Details
Vulnerabilities 761
Exploit Likelihood Medium