Vulnerabilities > Use of Uninitialized Resource

DATE CVE VULNERABILITY TITLE RISK
2020-12-10 CVE-2020-26266 Use of Uninitialized Resource vulnerability in Google Tensorflow
In affected versions of TensorFlow under certain cases a saved model can trigger use of uninitialized values during code execution.
local
low complexity
google CWE-908
4.6
2020-11-28 CVE-2020-29371 Use of Uninitialized Resource vulnerability in Linux Kernel
An issue was discovered in romfs_dev_read in fs/romfs/storage.c in the Linux kernel before 5.8.4.
local
low complexity
linux CWE-908
2.1
2020-11-11 CVE-2020-16985 Use of Uninitialized Resource vulnerability in Microsoft Azure Sphere
Azure Sphere Information Disclosure Vulnerability
local
low complexity
microsoft CWE-908
6.2
2020-11-03 CVE-2020-15989 Use of Uninitialized Resource vulnerability in multiple products
Uninitialized data in PDFium in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
local
low complexity
google fedoraproject opensuse debian CWE-908
5.5
2020-10-16 CVE-2020-16931 Use of Uninitialized Resource vulnerability in Microsoft products
<p>A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory.
local
low complexity
microsoft CWE-908
7.8
2020-10-14 CVE-2020-0411 Use of Uninitialized Resource vulnerability in Google Android 10.0/11.0
In ~AACExtractor() of AACExtractor.cpp, there is a possible out of bounds write due to uninitialized data.
network
google CWE-908
4.3
2020-10-02 CVE-2020-17482 Use of Uninitialized Resource vulnerability in Powerdns Authoritative
An issue has been found in PowerDNS Authoritative Server before 4.3.1 where an authorized user with the ability to insert crafted records into a zone might be able to leak the content of uninitialized memory.
network
low complexity
powerdns CWE-908
4.0
2020-09-30 CVE-2020-26148 Use of Uninitialized Resource vulnerability in Md4C Project Md4C 0.4.5
md_push_block_bytes in md4c.c in md4c 0.4.5 allows attackers to trigger use of uninitialized memory, and cause a denial of service (e.g., assertion failure) via a malformed Markdown document.
network
low complexity
md4c-project CWE-908
5.0
2020-09-25 CVE-2020-15193 Use of Uninitialized Resource vulnerability in multiple products
In Tensorflow before versions 2.2.1 and 2.3.1, the implementation of `dlpack.to_dlpack` can be made to use uninitialized memory resulting in further memory corruption.
network
low complexity
google opensuse CWE-908
5.5
2020-09-17 CVE-2020-0361 Use of Uninitialized Resource vulnerability in Google Android 11.0
In libDRCdec, there is a possible information disclosure due to uninitialized data.
network
google CWE-908
4.3