Show filters
171 Total Results
Displaying 81-90 of 171
Sort by:
Attacker Value
Unknown
CVE-2021-22925
Disclosure Date: August 05, 2021 (last updated February 23, 2025)
curl supports the `-t` command line option, known as `CURLOPT_TELNETOPTIONS`in libcurl. This rarely used option is used to send variable=content pairs toTELNET servers.Due to flaw in the option parser for sending `NEW_ENV` variables, libcurlcould be made to pass on uninitialized data from a stack based buffer to theserver. Therefore potentially revealing sensitive internal information to theserver using a clear-text network protocol.This could happen because curl did not call and use sscanf() correctly whenparsing the string provided by the application.
0
Attacker Value
Unknown
CVE-2021-30578
Disclosure Date: August 03, 2021 (last updated February 23, 2025)
Uninitialized use in Media in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page.
0
Attacker Value
Unknown
CVE-2021-36007
Disclosure Date: July 20, 2021 (last updated February 23, 2025)
Adobe Prelude version 10.0 (and earlier) are affected by an uninitialized variable vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose arbitrary memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
0
Attacker Value
Unknown
CVE-2021-0526
Disclosure Date: June 21, 2021 (last updated February 22, 2025)
In memory management driver, there is a possible out of bounds write due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-185195264
0
Attacker Value
Unknown
CVE-2021-0530
Disclosure Date: June 21, 2021 (last updated February 22, 2025)
In memory management driver, there is a possible out of bounds write due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-185196175
0
Attacker Value
Unknown
CVE-2021-3435
Disclosure Date: June 21, 2021 (last updated February 24, 2025)
Information leakage in le_ecred_conn_req(). Zephyr versions >= v2.4.0 Use of Uninitialized Resource (CWE-908). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-xhg3-gvj6-4rqh
0
Attacker Value
Unknown
CVE-2021-0473
Disclosure Date: June 11, 2021 (last updated February 22, 2025)
In rw_t3t_process_error of rw_t3t.cc, there is a possible double free due to uninitialized data. This could lead to remote code execution over NFC with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11 Android-8.1Android ID: A-179687208
0
Attacker Value
Unknown
CVE-2021-0495
Disclosure Date: June 11, 2021 (last updated February 22, 2025)
In memory management driver, there is a possible out of bounds write due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-183459083
0
Attacker Value
Unknown
CVE-2020-11260
Disclosure Date: June 09, 2021 (last updated February 22, 2025)
An improper free of uninitialized memory can occur in DIAG services in Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile
0
Attacker Value
Unknown
CVE-2021-3545
Disclosure Date: June 02, 2021 (last updated February 22, 2025)
An information disclosure vulnerability was found in the virtio vhost-user GPU device (vhost-user-gpu) of QEMU in versions up to and including 6.0. The flaw exists in virgl_cmd_get_capset_info() in contrib/vhost-user-gpu/virgl.c and could occur due to the read of uninitialized memory. A malicious guest could exploit this issue to leak memory from the host.
0