Vulnerabilities > Missing Initialization of Resource

DATE CVE VULNERABILITY TITLE RISK
2021-06-11 CVE-2021-22898 Missing Initialization of Resource vulnerability in multiple products
curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers.
3.1
2021-06-11 CVE-2021-28687 Missing Initialization of Resource vulnerability in XEN
HVM soft-reset crashes toolstack libxl requires all data structures passed across its public interface to be initialized before use and disposed of afterwards by calling a specific set of functions.
local
low complexity
xen CWE-909
4.9
2021-05-20 CVE-2021-23386 Missing Initialization of Resource vulnerability in Dns-Packet Project Dns-Packet
This affects the package dns-packet before 5.2.2.
network
low complexity
dns-packet-project CWE-909
4.0
2021-04-30 CVE-2021-31919 Missing Initialization of Resource vulnerability in Rkyv Project Rkyv
An issue was discovered in the rkyv crate before 0.6.0 for Rust.
network
low complexity
rkyv-project CWE-909
5.0
2021-04-21 CVE-2021-28167 Missing Initialization of Resource vulnerability in Eclipse Openj9
In Eclipse Openj9 to version 0.25.0, usage of the jdk.internal.reflect.ConstantPool API causes the JVM in some cases to pre-resolve certain constant pool entries.
network
low complexity
eclipse CWE-909
6.4
2021-04-08 CVE-2021-1405 Missing Initialization of Resource vulnerability in multiple products
A vulnerability in the email parsing module in Clam AntiVirus (ClamAV) Software version 0.103.1 and all prior versions could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device.
network
low complexity
clamav debian CWE-909
5.0
2021-03-30 CVE-2021-29647 Missing Initialization of Resource vulnerability in multiple products
An issue was discovered in the Linux kernel before 5.11.11.
local
low complexity
linux fedoraproject debian CWE-909
5.5
2021-03-26 CVE-2020-25579 Missing Initialization of Resource vulnerability in Freebsd 11.4/12.1/12.2
In FreeBSD 12.2-STABLE before r368969, 11.4-STABLE before r369047, 12.2-RELEASE before p3, 12.1-RELEASE before p13 and 11.4-RELEASE before p7 msdosfs(5) was failing to zero-fill a pair of padding fields in the dirent structure, resulting in a leak of three uninitialized bytes.
network
low complexity
freebsd CWE-909
5.0
2021-02-26 CVE-2020-24455 Missing Initialization of Resource vulnerability in multiple products
Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access.
6.7
2021-01-28 CVE-2019-25016 Missing Initialization of Resource vulnerability in Opendoas Project Opendoas 6.6/6.6.1/6.8
In OpenDoas from 6.6 to 6.8 the users PATH variable was incorrectly inherited by authenticated executions if the authenticating rule allowed the user to execute any command.
network
low complexity
opendoas-project CWE-909
6.5