VulnSea

CWE-824

CVEs classified under CWE-824, newest first.

37 CVEsRSS

CVE-2026-31790High· 7.5
5mo ago

Issue summary: Applications using RSASVE key encapsulation to establish a secret encryption key can send contents of an uninitialized memory buffer to a malicious peer. Impact summary: The uninitialized buffer might contain sensitive da…

Issue summary: Applications using RSASVE key encapsulation to establish a secret encryption key can send contents of an uninitialized memory buffer to a malicious peer. Impact summary: The uninitialized buffer might contain sensitive da…

▾ Twilightopenssl · opensslEPSS 1.0%via NVD
CVE-2026-2100Medium· 5.3
6mo ago

A flaw was found in p11-kit

A flaw was found in p11-kit. A remote attacker could exploit this vulnerability by calling the C_DeriveKey function on a remote token with specific IBM kyber or IBM btc derive mechanism parameters set to NULL. This could lead to the RPC-…

▾ SunlitEPSS 1.2%via NVD
CVE-2026-21276High· 7.8
8mo ago

InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user

InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires use…

▾ Twilightadobe · indesignEPSS 0.25%via NVD
CVE-2026-21275High· 7.8
8mo ago

InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user

InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires use…

▾ Twilightadobe · indesignEPSS 0.25%via NVD
CVE-2025-39729Medium· 5.5
1y ago

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Fix dereferencing uninitialized error pointer Fix below smatch warnings: drivers/crypto/ccp/sev-dev.c:1312 __sev_platform_init_locked() error: we previou…

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Fix dereferencing uninitialized error pointer Fix below smatch warnings: drivers/crypto/ccp/sev-dev.c:1312 __sev_platform_init_locked() error: we previou…

▾ Sunlitlinux · linux_kernelEPSS 0.14%via NVD
CVE-2025-26599High· 7.8
1y ago

An access to an uninitialized pointer flaw was found in X.Org and Xwayland

An access to an uninitialized pointer flaw was found in X.Org and Xwayland. The function compCheckRedirect() may fail if it cannot allocate the backing pixmap. In that case, compRedirectWindow() will return a BadAlloc error without valid…

▾ Twilighttigervnc · tigervncEPSS 0.40%via NVD
CVE-2024-26799High· 7.0
2y ago

In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: Fix uninitialized pointer dmactl In the case where __lpass_get_dmactl_handle is called and the driver id dai_id is invalid the pointer dmactl is not being …

In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: Fix uninitialized pointer dmactl In the case where __lpass_get_dmactl_handle is called and the driver id dai_id is invalid the pointer dmactl is not being …

▾ Twilightlinux · linux_kernelEPSS 0.24%via NVD
CWE-824 vulnerabilities (CVEs) — page 2 · VulnSea