Vulnerabilities > Use of Uninitialized Resource

DATE CVE VULNERABILITY TITLE RISK
2020-04-24 CVE-2020-6821 Use of Uninitialized Resource vulnerability in Mozilla Firefox
When reading from areas partially or fully outside the source resource with WebGL's <code>copyTexSubImage</code> method, the specification requires the returned values be zero.
network
low complexity
mozilla CWE-908
7.5
2020-04-21 CVE-2020-11828 Use of Uninitialized Resource vulnerability in Oppo Coloros
In ColorOS (oppo mobile phone operating system, based on AOSP frameworks/native code position/services/surfaceflinger surfaceflinger.CPP), RGB is defined on the stack but uninitialized, so when the screenShot function to RGB value assignment, will not initialize the value is returned to the attackers, leading to values on the stack information leakage, the vulnerability can be used to bypass attackers ALSR.
network
low complexity
oppo CWE-908
7.5
2020-04-17 CVE-2019-20785 Use of Uninitialized Resource vulnerability in Google Android 8.0/8.1
An issue was discovered on LG mobile devices with Android OS 8.0 and 8.1 software for the DTAG carrier.
low complexity
google CWE-908
6.8
2020-04-13 CVE-2020-6444 Use of Uninitialized Resource vulnerability in multiple products
Uninitialized use in WebRTC in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian opensuse CWE-908
6.3
2020-04-01 CVE-2020-1934 Use of Uninitialized Resource vulnerability in multiple products
In Apache HTTP Server 2.4.0 to 2.4.41, mod_proxy_ftp may use uninitialized memory when proxying to a malicious FTP server.
5.3
2020-03-30 CVE-2020-11104 Use of Uninitialized Resource vulnerability in USC Cereal
An issue was discovered in USC iLab cereal through 1.3.0.
network
low complexity
usc CWE-908
5.3
2020-03-24 CVE-2019-20623 Use of Uninitialized Resource vulnerability in Google Android
An issue was discovered on Samsung mobile devices with N(7.1), O(8.x), and P(9.0) software.
local
low complexity
google CWE-908
3.3
2020-03-10 CVE-2020-0049 Use of Uninitialized Resource vulnerability in Google Android 10.0
In onReadBuffer() of StreamingSource.cpp, there is a possible information disclosure due to uninitialized data.
network
low complexity
google CWE-908
6.5
2020-03-10 CVE-2020-0048 Use of Uninitialized Resource vulnerability in Google Android 10.0
In onTransact of IAudioFlinger.cpp, there is a possible stack information leak due to uninitialized data.
local
low complexity
google CWE-908
5.5
2020-03-05 CVE-2019-14079 Use of Uninitialized Resource vulnerability in Qualcomm products
Access to the uninitialized variable when the driver tries to unmap the dma buffer of a request which was never mapped in the first place leading to kernel failure in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8009, APQ8053, MDM9607, MDM9640, MSM8909W, MSM8953, QCA6574AU, QCS605, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM632, SDM670, SDM710, SDM845, SDX24, SM8150, SXR1130
local
low complexity
qualcomm CWE-908
7.8