Vulnerabilities > Reachable Assertion

DATE CVE VULNERABILITY TITLE RISK
2019-10-09 CVE-2019-6471 Reachable Assertion vulnerability in multiple products
A race condition which may occur when discarding malformed packets can result in BIND exiting due to a REQUIRE assertion failure in dispatch.c.
network
high complexity
f5 isc CWE-617
5.9
2019-10-09 CVE-2019-6469 Reachable Assertion vulnerability in ISC Bind 9.10.5/9.11.6
An error in the EDNS Client Subnet (ECS) feature for recursive resolvers can cause BIND to exit with an assertion failure when processing a response that has malformed RRSIGs.
network
low complexity
isc CWE-617
7.5
2019-10-09 CVE-2019-6468 Reachable Assertion vulnerability in ISC Bind 9.10.5/9.11.5
In BIND Supported Preview Edition, an error in the nxdomain-redirect feature can occur in versions which support EDNS Client Subnet (ECS) features.
network
low complexity
isc CWE-617
5.0
2019-10-09 CVE-2019-6467 Reachable Assertion vulnerability in ISC Bind
A programming error in the nxdomain-redirect feature can cause an assertion failure in query.c if the alternate namespace used by nxdomain-redirect is a descendant of a zone that is served locally.
network
low complexity
isc CWE-617
5.0
2019-09-06 CVE-2019-9455 Reachable Assertion vulnerability in multiple products
In the Android kernel in the video driver there is a kernel pointer leak due to a WARN_ON statement.
local
low complexity
google opensuse CWE-617
2.1
2019-09-03 CVE-2019-15892 Reachable Assertion vulnerability in multiple products
An issue was discovered in Varnish Cache before 6.0.4 LTS, and 6.1.x and 6.2.x before 6.2.1.
7.5
2019-08-29 CVE-2019-15758 Reachable Assertion vulnerability in Webassembly Binaryen
An issue was discovered in Binaryen 1.38.32.
4.3
2019-08-15 CVE-2019-13223 Reachable Assertion vulnerability in multiple products
A reachable assertion in the lookup1_values function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service by opening a crafted Ogg Vorbis file.
local
low complexity
stb-vorbis-project debian CWE-617
5.5
2019-07-31 CVE-2019-5020 Reachable Assertion vulnerability in Virustotal Yara 3.8.1
An exploitable denial of service vulnerability exists in the object lookup functionality of Yara 3.8.1.
4.3
2019-07-30 CVE-2019-14383 Reachable Assertion vulnerability in multiple products
J2B in libopenmpt before 0.4.2 allows an assertion failure during file parsing with debug STLs.
network
low complexity
openmpt opensuse CWE-617
6.5