Vulnerabilities > Access of Uninitialized Pointer

DATE CVE VULNERABILITY TITLE RISK
2024-10-21 CVE-2024-49938 Access of Uninitialized Pointer vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k_htc: Use __skb_set_length() for resetting urb before resubmit Syzbot points out that skb_trim() has a sanity check on the existing length of the skb, which can be uninitialised in some error paths.
local
low complexity
linux CWE-824
5.5
2024-10-09 CVE-2024-47411 Access of Uninitialized Pointer vulnerability in Adobe Animate
Animate versions 23.0.7, 24.0.4 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-824
7.8
2024-09-27 CVE-2024-46844 Access of Uninitialized Pointer vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: um: line: always fill *error_out in setup_one_line() The pointer isn't initialized by callers, but I have encountered cases where it's still printed; initialize it in all possible cases in setup_one_line().
local
low complexity
linux CWE-824
7.8
2024-09-10 CVE-2024-8645 Access of Uninitialized Pointer vulnerability in Wireshark
SPRT dissector crash in Wireshark 4.2.0 to 4.0.5 and 4.0.0 to 4.0.15 allows denial of service via packet injection or crafted capture file
local
low complexity
wireshark CWE-824
5.5
2024-06-19 CVE-2021-47602 Access of Uninitialized Pointer vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: mac80211: track only QoS data frames for admission control For admission control, obviously all of that only works for QoS data frames, otherwise we cannot even access the QoS field in the header. Syzbot reported (see below) an uninitialized value here due to a status of a non-QoS nullfunc packet, which isn't even long enough to contain the QoS header. Fix this to only do anything for QoS data packets.
local
low complexity
linux CWE-824
5.5
2024-05-14 CVE-2024-32998 Access of Uninitialized Pointer vulnerability in Huawei Emui and Harmonyos
NULL pointer access vulnerability in the clock module Impact: Successful exploitation of this vulnerability will affect availability.
local
low complexity
huawei CWE-824
5.5
2024-05-06 CVE-2023-43531 Access of Uninitialized Pointer vulnerability in Qualcomm products
Memory corruption while verifying the serialized header when the key pairs are generated.
local
low complexity
qualcomm CWE-824
7.8
2024-05-03 CVE-2023-34263 Access of Uninitialized Pointer vulnerability in Fatek Fvdesigner 1.6.24
Fatek Automation FvDesigner FPJ File Parsing Uninitialized Pointer Remote Code Execution Vulnerability.
local
low complexity
fatek CWE-824
7.8
2024-05-03 CVE-2023-34272 Access of Uninitialized Pointer vulnerability in Fatek Fvdesigner 1.6.24
Fatek Automation FvDesigner FPJ File Parsing Uninitialized Pointer Remote Code Execution Vulnerability.
local
low complexity
fatek CWE-824
7.8
2024-03-26 CVE-2024-21919 Access of Uninitialized Pointer vulnerability in Rockwellautomation Arena
An uninitialized pointer in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code to the software by leveraging the pointer after it is properly.
local
low complexity
rockwellautomation CWE-824
7.8