Show filters
171 Total Results
Displaying 81-90 of 171
Sort by:
Attacker Value
Unknown

CVE-2021-22925

Disclosure Date: August 05, 2021 (last updated February 23, 2025)
curl supports the `-t` command line option, known as `CURLOPT_TELNETOPTIONS`in libcurl. This rarely used option is used to send variable=content pairs toTELNET servers.Due to flaw in the option parser for sending `NEW_ENV` variables, libcurlcould be made to pass on uninitialized data from a stack based buffer to theserver. Therefore potentially revealing sensitive internal information to theserver using a clear-text network protocol.This could happen because curl did not call and use sscanf() correctly whenparsing the string provided by the application.
Attacker Value
Unknown

CVE-2021-30578

Disclosure Date: August 03, 2021 (last updated February 23, 2025)
Uninitialized use in Media in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page.
Attacker Value
Unknown

CVE-2021-36007

Disclosure Date: July 20, 2021 (last updated February 23, 2025)
Adobe Prelude version 10.0 (and earlier) are affected by an uninitialized variable vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose arbitrary memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
0
Attacker Value
Unknown

CVE-2021-0526

Disclosure Date: June 21, 2021 (last updated February 22, 2025)
In memory management driver, there is a possible out of bounds write due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-185195264
Attacker Value
Unknown

CVE-2021-0530

Disclosure Date: June 21, 2021 (last updated February 22, 2025)
In memory management driver, there is a possible out of bounds write due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-185196175
Attacker Value
Unknown

CVE-2021-3435

Disclosure Date: June 21, 2021 (last updated February 24, 2025)
Information leakage in le_ecred_conn_req(). Zephyr versions >= v2.4.0 Use of Uninitialized Resource (CWE-908). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-xhg3-gvj6-4rqh
Attacker Value
Unknown

CVE-2021-0473

Disclosure Date: June 11, 2021 (last updated February 22, 2025)
In rw_t3t_process_error of rw_t3t.cc, there is a possible double free due to uninitialized data. This could lead to remote code execution over NFC with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11 Android-8.1Android ID: A-179687208
Attacker Value
Unknown

CVE-2021-0495

Disclosure Date: June 11, 2021 (last updated February 22, 2025)
In memory management driver, there is a possible out of bounds write due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-183459083
Attacker Value
Unknown

CVE-2020-11260

Disclosure Date: June 09, 2021 (last updated February 22, 2025)
An improper free of uninitialized memory can occur in DIAG services in Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile
Attacker Value
Unknown

CVE-2021-3545

Disclosure Date: June 02, 2021 (last updated February 22, 2025)
An information disclosure vulnerability was found in the virtio vhost-user GPU device (vhost-user-gpu) of QEMU in versions up to and including 6.0. The flaw exists in virgl_cmd_get_capset_info() in contrib/vhost-user-gpu/virgl.c and could occur due to the read of uninitialized memory. A malicious guest could exploit this issue to leak memory from the host.