Vulnerabilities > Missing Initialization of Resource

DATE CVE VULNERABILITY TITLE RISK
2020-03-02 CVE-2020-6792 Missing Initialization of Resource vulnerability in multiple products
When deriving an identifier for an email message, uninitialized memory was used in addition to the message contents.
4.3
2019-12-05 CVE-2019-19553 Missing Initialization of Resource vulnerability in multiple products
In Wireshark 3.0.0 to 3.0.6 and 2.6.0 to 2.6.12, the CMS dissector could crash.
network
low complexity
wireshark opensuse oracle debian CWE-909
7.5
2019-12-03 CVE-2019-19536 Missing Initialization of Resource vulnerability in multiple products
In the Linux kernel before 5.2.9, there is an info-leak bug that can be caused by a malicious USB device in the drivers/net/can/usb/peak_usb/pcan_usb_pro.c driver, aka CID-ead16e53c2f0.
local
low complexity
linux debian opensuse CWE-909
2.1
2019-12-03 CVE-2019-19535 Missing Initialization of Resource vulnerability in multiple products
In the Linux kernel before 5.2.9, there is an info-leak bug that can be caused by a malicious USB device in the drivers/net/can/usb/peak_usb/pcan_usb_fd.c driver, aka CID-30a8beeb3042.
local
low complexity
linux debian opensuse oracle CWE-909
2.1
2019-12-03 CVE-2019-19534 Missing Initialization of Resource vulnerability in multiple products
In the Linux kernel before 5.3.11, there is an info-leak bug that can be caused by a malicious USB device in the drivers/net/can/usb/peak_usb/pcan_usb_core.c driver, aka CID-f7a1337f0d29.
local
low complexity
linux debian canonical CWE-909
2.1
2019-11-08 CVE-2019-12410 Missing Initialization of Resource vulnerability in Apache Arrow
While investigating UBSAN errors in https://github.com/apache/arrow/pull/5365 it was discovered Apache Arrow versions 0.12.0 to 0.14.1, left memory Array data uninitialized when reading RLE null data from parquet.
network
low complexity
apache CWE-909
7.5
2019-11-08 CVE-2019-12408 Missing Initialization of Resource vulnerability in Apache Arrow 0.14.0/0.14.1
It was discovered that the C++ implementation (which underlies the R, Python and Ruby implementations) of Apache Arrow 0.14.0 to 0.14.1 had a uninitialized memory bug when building arrays with null values in some cases.
network
low complexity
apache CWE-909
7.5
2019-09-27 CVE-2019-9321 Missing Initialization of Resource vulnerability in Google Android 10.0
In libavc, there is a missing variable initialization.
network
google CWE-909
4.3
2019-09-27 CVE-2019-9320 Missing Initialization of Resource vulnerability in Google Android 10.0
In libavc, there is a missing variable initialization.
network
google CWE-909
4.3
2019-09-27 CVE-2019-9319 Missing Initialization of Resource vulnerability in Google Android 10.0
In libavc, there is a missing variable initialization.
network
google CWE-909
4.3