Vulnerabilities > Missing Initialization of Resource

DATE CVE VULNERABILITY TITLE RISK
2021-04-08 CVE-2021-1405 Missing Initialization of Resource vulnerability in multiple products
A vulnerability in the email parsing module in Clam AntiVirus (ClamAV) Software version 0.103.1 and all prior versions could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device.
network
low complexity
clamav debian CWE-909
5.0
2021-03-30 CVE-2021-29647 Missing Initialization of Resource vulnerability in multiple products
An issue was discovered in the Linux kernel before 5.11.11.
local
low complexity
linux fedoraproject debian CWE-909
5.5
2021-03-26 CVE-2020-25579 Missing Initialization of Resource vulnerability in Freebsd 11.4/12.1/12.2
In FreeBSD 12.2-STABLE before r368969, 11.4-STABLE before r369047, 12.2-RELEASE before p3, 12.1-RELEASE before p13 and 11.4-RELEASE before p7 msdosfs(5) was failing to zero-fill a pair of padding fields in the dirent structure, resulting in a leak of three uninitialized bytes.
network
low complexity
freebsd CWE-909
5.0
2021-02-26 CVE-2020-24455 Missing Initialization of Resource vulnerability in multiple products
Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access.
6.7
2021-01-28 CVE-2019-25016 Missing Initialization of Resource vulnerability in Opendoas Project Opendoas 6.6/6.6.1/6.8
In OpenDoas from 6.6 to 6.8 the users PATH variable was incorrectly inherited by authenticated executions if the authenticating rule allowed the user to execute any command.
network
low complexity
opendoas-project CWE-909
6.5
2020-12-17 CVE-2020-12523 Missing Initialization of Resource vulnerability in Phoenixcontact products
On Phoenix Contact mGuard Devices versions before 8.8.3 LAN ports get functional after reboot even if they are disabled in the device configuration.
network
low complexity
phoenixcontact CWE-909
6.4
2020-11-20 CVE-2020-20739 Missing Initialization of Resource vulnerability in multiple products
im_vips2dz in /libvips/libvips/deprecated/im_vips2dz.c in libvips before 8.8.2 has an uninitialized variable which may cause the leakage of remote server path or stack address.
network
low complexity
libvips debian fedoraproject CWE-909
5.3
2020-10-16 CVE-2020-16932 Missing Initialization of Resource vulnerability in Microsoft products
<p>A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory.
local
low complexity
microsoft CWE-909
7.8
2020-09-17 CVE-2020-0340 Missing Initialization of Resource vulnerability in Google Android 11.0
In libcodec2_soft_mp3dec, there is a possible information disclosure due to uninitialized data.
network
google CWE-909
4.3
2020-09-17 CVE-2020-0321 Missing Initialization of Resource vulnerability in Google Android 11.0
In the mp3 extractor, there is a possible out of bounds write due to uninitialized data.
network
google CWE-909
6.8