Skip to main content

CWE archive

CWE-665 CVEs

Programmatic archive

356 CVEs tagged with CWE-66522 Critical, 137 High, 166 Medium, 31 Low, 0 Unrated.

CVE-2021-29614

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.io.decode_raw` produces incorrect results and crashes the Python interpreter when…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-29613

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. Incomplete validation in `tf.raw_ops.CTCLoss` allows an attacker to trigger an OOB read from heap. The fix w…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-29611

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. Incomplete validation in `SparseReshape` results in a denial of service based on a `CHECK`-failure. The impl…

CVSS 3.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-29610

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. The validation in `tf.raw_ops.QuantizeAndDequantizeV2` allows invalid values for `axis` argument:. The valid…

CVSS 3.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-29609

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. Incomplete validation in `SparseAdd` results in allowing attackers to exploit undefined behavior (dereferenc…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-28019

Published May 6, 2021

Exim 4 before 4.94.2 has Improper Initialization that can lead to recursion-based stack consumption or other consequences. This occurs because use of certain getc functions is mis…

CVSS 7.5 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2021-0234

Published Apr 22, 2021

Due to an improper Initialization vulnerability on Juniper Networks Junos OS QFX5100-96S devices with QFX 5e Series image installed, ddos-protection configuration changes will not…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0226

Published Apr 22, 2021

On Juniper Networks Junos OS Evolved devices, receipt of a specific IPv6 packet may cause an established IPv6 BGP session to terminate, creating a Denial of Service (DoS) conditio…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0435

Published Apr 13, 2021

In avrc_proc_vendor_command of avrc_api.cc, there is a possible leak of heap data due to uninitialized data. This could lead to remote information disclosure with no additional ex…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-28688

Published Apr 6, 2021

The fix for XSA-365 includes initialization of pointers such that subsequent cleanup code wouldn't use uninitialized or stale values. This initialization went too far and may unde…

CVSS 6.5 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2021-1780

Published Apr 2, 2021

A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 14.4 and iPadOS 14.4. An attacker in a privileged position may be able to per…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-25578

Published Mar 26, 2021

In FreeBSD 12.2-STABLE before r368969, 11.4-STABLE before r369047, 12.2-RELEASE before p3, 12.1-RELEASE before p13 and 11.4-RELEASE before p7 several file systems were not properl…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-26886

Published Mar 18, 2021

Softaculous before 5.5.7 is affected by a code execution vulnerability because of External Initialization of Trusted Variables or Data Stores. This leads to privilege escalation o…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0453

Published Mar 10, 2021

In the Titan-M chip firmware, there is a possible disclosure of stack memory due to uninitialized data. This could lead to local information disclosure with System execution privi…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0452

Published Mar 10, 2021

In the Titan M chip firmware, there is a possible disclosure of stack memory due to uninitialized data. This could lead to local information disclosure with System execution privi…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0451

Published Mar 10, 2021

In the Titan M chip firmware, there is a possible disclosure of stack memory due to uninitialized data. This could lead to local information disclosure with System execution privi…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0450

Published Mar 10, 2021

In the Titan M chip firmware, there is a possible disclosure of stack memory due to uninitialized data. This could lead to local information disclosure with System execution privi…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0449

Published Mar 10, 2021

In the Titan M chip firmware, there is a possible disclosure of stack memory due to uninitialized data. This could lead to local information disclosure with System execution privi…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 176-200 of 356 CVEsPage 8 of 15