Vulnerabilities > Missing Initialization of Resource

DATE CVE VULNERABILITY TITLE RISK
2021-03-30 CVE-2021-29647 Missing Initialization of Resource vulnerability in multiple products
An issue was discovered in the Linux kernel before 5.11.11.
local
low complexity
linux fedoraproject debian CWE-909
5.5
2021-03-26 CVE-2020-25579 Missing Initialization of Resource vulnerability in Freebsd 11.4/12.1/12.2
In FreeBSD 12.2-STABLE before r368969, 11.4-STABLE before r369047, 12.2-RELEASE before p3, 12.1-RELEASE before p13 and 11.4-RELEASE before p7 msdosfs(5) was failing to zero-fill a pair of padding fields in the dirent structure, resulting in a leak of three uninitialized bytes.
network
low complexity
freebsd CWE-909
5.3
2021-02-26 CVE-2020-24455 Missing Initialization of Resource vulnerability in multiple products
Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access.
6.7
2021-01-28 CVE-2019-25016 Missing Initialization of Resource vulnerability in Opendoas Project Opendoas 6.6/6.6.1/6.8
In OpenDoas from 6.6 to 6.8 the users PATH variable was incorrectly inherited by authenticated executions if the authenticating rule allowed the user to execute any command.
network
low complexity
opendoas-project CWE-909
8.8
2020-12-17 CVE-2020-12523 Missing Initialization of Resource vulnerability in Phoenixcontact products
On Phoenix Contact mGuard Devices versions before 8.8.3 LAN ports get functional after reboot even if they are disabled in the device configuration.
network
low complexity
phoenixcontact CWE-909
critical
9.1
2020-12-15 CVE-2020-0488 Missing Initialization of Resource vulnerability in Google Android 11.0
In ihevc_inter_pred_chroma_copy_ssse3 of ihevc_inter_pred_filters_ssse3_intr.c, there is a possible information disclosure due to uninitialized data.
network
low complexity
google CWE-909
6.5
2020-11-23 CVE-2020-12352 Missing Initialization of Resource vulnerability in Linux Kernel
Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access.
low complexity
linux CWE-909
6.5
2020-11-20 CVE-2020-20739 Missing Initialization of Resource vulnerability in multiple products
im_vips2dz in /libvips/libvips/deprecated/im_vips2dz.c in libvips before 8.8.2 has an uninitialized variable which may cause the leakage of remote server path or stack address.
network
low complexity
libvips debian fedoraproject CWE-909
5.3
2020-11-10 CVE-2020-0438 Missing Initialization of Resource vulnerability in Google Android 10.0/11.0
In the AIBinder_Class constructor of ibinder.cpp, there is a possible arbitrary code execution due to uninitialized data.
local
low complexity
google CWE-909
7.8
2020-07-17 CVE-2020-9227 Missing Initialization of Resource vulnerability in Huawei Moana-Al00B Firmware
Huawei Smart Phones Moana-AL00B with versions earlier than 10.1.0.166 have a missing initialization of resource vulnerability.
local
low complexity
huawei CWE-909
5.5