Skip to main content

CWE archive

CWE-908 CVEs

Programmatic archive

829 CVEs tagged with CWE-90891 Critical, 255 High, 450 Medium, 33 Low, 0 Unrated.

CVE-2025-71113

Published Jan 14, 2026

In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - zero initialize memory allocated via sock_kmalloc Several crypto user API contexts and reque…

CVSS 5.5 · Medium
evidence mentions
9
Buzz score
38.0
Vendor/product tagsBeta · best-effort

CVE-2026-20962

Published Jan 13, 2026

Use of uninitialized resource in Dynamic Root of Trust for Measurement (DRTM) allows an authorized attacker to disclose information locally.

CVSS 4.4 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-71096

Published Jan 13, 2026

In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Check for the presence of LS_NLA_TYPE_DGID correctly The netlink response for RDMA_NL_LS_OP_IP_RES…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2026-22188

Published Jan 7, 2026

The deploy-stub component in Panda3D versions up to and including 1.10.16 contains a denial of service vulnerability due to unbounded stack allocation. The deploy-stub executable…

CVSS 6.9 · Medium
evidence mentions
4
Buzz score
29.1
Vendor/product tagsBeta · best-effort

CVE-2025-68365

Published Dec 24, 2025

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Initialize allocated memory before use KMSAN reports: Multiple uninitialized values detected: - KM…

CVSS 8.2 · High
evidence mentions
6
Buzz score
24.5
Vendor/product tagsBeta · best-effort

CVE-2025-40829

Published Dec 12, 2025

A vulnerability has been identified in Simcenter Femap (All versions < V2512). The affected applications contains an uninitialized memory vulnerability while parsing specially cra…

CVSS 7.3 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-31649

Published Nov 17, 2025

A hard-coded password vulnerability exists in the ControlVault WBDI Driver functionality of Dell ControlVault3 prior to 5.15.14.19 and Dell ControlVault3 Plus prior to 6.2.36.47.…

CVSS 8.7 · High
evidence mentions
3
Buzz score
25.4

CVE-2025-31361

Published Nov 17, 2025

A privilege escalation vulnerability exists in the ControlVault WBDI Driver WBIO_USH_ADD_RECORD functionality of Dell ControlVault3 prior to 5.15.14.19 and Dell ControlVault3 Plus…

CVSS 8.7 · High
evidence mentions
3
Buzz score
25.4

CVE-2025-9640

Published Oct 15, 2025

A flaw was found in Samba, in the vfs_streams_xattr module, where uninitialized heap memory could be written into alternate data streams. This allows an authenticated user to read…

CVSS 4.3 · Medium

CVE-2025-59204

Published Oct 14, 2025

Use of uninitialized resource in Windows Management Services allows an authorized attacker to disclose information locally.

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-59964

Published Oct 9, 2025

A Use of Uninitialized Resource vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on SRX4700 devices allows an unauthenticated, network-based attack…

CVSS 8.7 · High
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2022-50546

Published Oct 7, 2025

In the Linux kernel, the following vulnerability has been resolved: ext4: fix uninititialized value in 'ext4_evict_inode' Syzbot found the following issue: =====================…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-53578

Published Oct 4, 2025

In the Linux kernel, the following vulnerability has been resolved: net: qrtr: Fix an uninit variable access bug in qrtr_tx_resume() Syzbot reported a bug as following: =======…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-53555

Published Oct 4, 2025

In the Linux kernel, the following vulnerability has been resolved: mm/damon/core: initialize damo_filter->list from damos_new_filter() damos_new_filter() is not initializing th…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-50482

Published Oct 4, 2025

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Clean up si_domain in the init_dmars() error path A splat from kmem_cache_destroy() was seen with…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-50473

Published Oct 4, 2025

In the Linux kernel, the following vulnerability has been resolved: cpufreq: Init completion before kobject_init_and_add() In cpufreq_policy_alloc(), it will call uninitialed co…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-39931

Published Oct 4, 2025

In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Set merge to zero early in af_alg_sendmsg If an error causes af_alg_sendmsg to abort, ctx->m…

CVSS 7.8 · High
evidence mentions
10
Buzz score
39.0
Vendor/product tagsBeta · best-effort

CVE-2023-53532

Published Oct 1, 2025

In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix deinitialization of firmware resources Currently, in ath11k_ahb_fw_resources_init(), iommu…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-53525

Published Oct 1, 2025

In the Linux kernel, the following vulnerability has been resolved: RDMA/cma: Allow UD qp_type to join multicast only As for multicast: - The SIDR is the only mode that makes se…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-53462

Published Oct 1, 2025

In the Linux kernel, the following vulnerability has been resolved: hsr: Fix uninit-value access in fill_frame_info() Syzbot reports the following uninit-value access problem.…

CVSS 7.1 · High
evidence mentions
5
Buzz score
22.9
Vendor/product tagsBeta · best-effort

CVE-2025-39904

Published Oct 1, 2025

In the Linux kernel, the following vulnerability has been resolved: arm64: kexec: initialize kexec_buf struct in load_other_segments() Patch series "kexec: Fix invalid field acc…

CVSS 5.5 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2023-53351

Published Sep 17, 2025

In the Linux kernel, the following vulnerability has been resolved: drm/sched: Check scheduler work queue before calling timeout handling During an IGT GPU reset test we see aga…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-53344

Published Sep 17, 2025

In the Linux kernel, the following vulnerability has been resolved: can: bcm: bcm_tx_setup(): fix KMSAN uninit-value in vfs_write Syzkaller reported the following issue: ======…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 126-150 of 829 CVEsPage 6 of 34