Vulnerabilities > Use of Uninitialized Resource

DATE CVE VULNERABILITY TITLE RISK
2019-08-15 CVE-2019-13220 Use of Uninitialized Resource vulnerability in multiple products
Use of uninitialized stack variables in the start_decoder function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or disclose sensitive information by opening a crafted Ogg Vorbis file.
local
low complexity
stb-vorbis-project debian CWE-908
7.1
2019-07-23 CVE-2019-11694 Use of Uninitialized Resource vulnerability in Mozilla Firefox
A vulnerability exists in the Windows sandbox where an uninitialized value in memory can be leaked to a renderer from a broker when making a call to access an otherwise unavailable file.
network
low complexity
mozilla CWE-908
7.5
2019-07-15 CVE-2019-1010299 Use of Uninitialized Resource vulnerability in Rust-Lang Rust
The Rust Programming Language Standard Library 1.18.0 and later is affected by: CWE-200: Information Exposure.
network
low complexity
rust-lang CWE-908
5.3
2019-07-11 CVE-2019-1010319 Use of Uninitialized Resource vulnerability in multiple products
WavPack 5.1.0 and earlier is affected by: CWE-457: Use of Uninitialized Variable.
5.5
2019-07-11 CVE-2019-1010317 Use of Uninitialized Resource vulnerability in multiple products
WavPack 5.1.0 and earlier is affected by: CWE-457: Use of Uninitialized Variable.
5.5
2019-07-08 CVE-2019-2118 Use of Uninitialized Resource vulnerability in Google Android 8.0/8.1/9.0
In various functions of Parcel.cpp, there are uninitialized or partially initialized stack variables.
local
low complexity
google CWE-908
5.5
2019-07-08 CVE-2019-2105 Use of Uninitialized Resource vulnerability in Google Android
In FileInputStream::Read of file_input_stream.cc, there is a possible memory corruption due to uninitialized data.
network
low complexity
google CWE-908
8.8
2019-07-08 CVE-2019-2104 Use of Uninitialized Resource vulnerability in Google Android 8.0/8.1/9.0
In HIDL, safe_union, and other C++ structs/unions being sent to application processes, there are uninitialized fields.
local
low complexity
google CWE-908
5.5
2019-07-01 CVE-2019-13135 Use of Uninitialized Resource vulnerability in multiple products
ImageMagick before 7.0.8-50 has a "use of uninitialized value" vulnerability in the function ReadCUTImage in coders/cut.c.
network
low complexity
imagemagick debian canonical f5 CWE-908
8.8
2019-07-01 CVE-2019-13117 Use of Uninitialized Resource vulnerability in multiple products
In numbers.c in libxslt 1.1.33, an xsl:number with certain format strings could lead to a uninitialized read in xsltNumberFormatInsertNumbers.
5.3