← Back
CWE-617

781 CVEs • Abstraction: Base

Reachable Assertion

The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.

JSON object

Loading...

CVEs (781)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Jerryscript
1Jerryscript
Jun 17, 2026
May 12, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the vm_loop at jerry-core/vm/vm.c.
1Jerryscript
1Jerryscript
Jun 17, 2026
May 12, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the jcontext_raise_exception at jerry-core/jcontext/jcontext.c.
1Jerryscript
1Jerryscript
Jun 17, 2026
May 12, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Jerryscript 3.0 (commit 1a2c047) was discovered to contain an Assertion Failure via the parser_parse_function_arguments at jerry-core/parser/js/js-parser.c.
1Jerryscript
1Jerryscript
Jun 17, 2026
May 12, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Jerryscript 3.0 (commit 1a2c047) was discovered to contain an Assertion Failure via the jmem_heap_finalize at jerry-core/jmem/jmem-heap.c.
1Jerryscript
1Jerryscript
Jun 17, 2026
May 12, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Jerryscript 3.0 *commit 1a2c047) was discovered to contain an Assertion Failure via the component parser_parse_class at jerry-core/parser/js/js-parser-expr.c.
4Debian
FedoraprojectLinux+1 more
4Debian Linux
Enterprise LinuxFedora+1 more
Jun 17, 2026
May 9, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
A flaw was found in the networking subsystem of the Linux kernel within the handling of the RPL protocol. This issue results from the lack of proper handling of user-supplied data, which can lead to an assertion failure....Show more
A flaw was found in the networking subsystem of the Linux kernel within the handling of the RPL protocol. This issue results from the lack of proper handling of user-supplied data, which can lead to an assertion failure. This may allow an unauthenticated remote attacker to create a denial of service condition on the system.Show less
1Llvm
1Llvm
Jun 17, 2026
May 5, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
llvm-project commit a0138390 was discovered to contain an assertion failure at !replacements.count(op) && "operation was already replaced.
1Qualcomm
189315 5g Iot Modem Firmware
8905 Firmware8909 Firmware+186 more
Jun 17, 2026
May 2, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network.
1Qualcomm
68315 5g Iot Modem Firmware
Aqt1000 FirmwareAr8035 Firmware+65 more
Jun 17, 2026
May 2, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS due to reachable assertion in Modem while processing config related to cross carrier scheduling, which is not supported.
1Qualcomm
68315 5g Iot Modem Firmware
Ar8035 FirmwareQca6390 Firmware+65 more
Jun 17, 2026
May 2, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS due to reachable assertion in Modem during OSI decode scheduling.
3Debian
FedoraprojectRedis
3Debian Linux
FedoraRedis
Jun 17, 2026
Apr 18, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Redis is an open source, in-memory database that persists on disk. Authenticated users can use the `HINCRBYFLOAT` command to create an invalid hash field that will crash Redis on access in affected versions. This issue h...Show more
Redis is an open source, in-memory database that persists on disk. Authenticated users can use the `HINCRBYFLOAT` command to create an invalid hash field that will crash Redis on access in affected versions. This issue has been addressed in in versions 7.0.11, 6.2.12, and 6.0.19. Users are advised to upgrade. There are no known workarounds for this issue.Show less
3Debian
FedoraprojectFrrouting
3Debian Linux
FedoraFrrouting
Jun 17, 2026
Apr 3, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
A reachable assertion was found in Frrouting frr-bgpd 8.3.0 in the peek_for_as4_capability function. Attackers can maliciously construct BGP open packets and send them to BGP peers running frr-bgpd, resulting in DoS.
1Redis
1Redis
Jun 17, 2026
Mar 20, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Redis is an in-memory database that persists on disk. Starting in version 7.0.8 and prior to version 7.0.10, authenticated users can use the MSETNX command to trigger a runtime assertion and termination of the Redis serv...Show more
Redis is an in-memory database that persists on disk. Starting in version 7.0.8 and prior to version 7.0.10, authenticated users can use the MSETNX command to trigger a runtime assertion and termination of the Redis server process. The problem is fixed in Redis version 7.0.10.Show less
1Broadcom
1Tcpreplay
Jun 17, 2026
Mar 16, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the cidr2cidr function at the cidr.c:178 endpoint.
1Broadcom
1Tcpreplay
Jun 17, 2026
Mar 16, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
An issue found in TCPrewrite v.4.4.3 allows a remote attacker to cause a denial of service via the ports2PORT function at the portmap.c:69 endpoint.
1Broadcom
1Tcpreplay
Jun 17, 2026
Mar 16, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
An issue found in TCPreplay tcprewrite v.4.4.3 allows a remote attacker to cause a denial of service via the tcpedit_dlt_cleanup function at plugins/dlt_plugins.c.
1Qualcomm
99Ar8035 Firmware
Csr8811 FirmwareIpq5010 Firmware+96 more
Jun 17, 2026
Mar 10, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS due to reachable assertion in WLAN while processing PEER ID populated by TQM.
1Qualcomm
49Ar8035 Firmware
Qca6390 FirmwareQca6391 Firmware+46 more
Jun 17, 2026
Mar 10, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS in modem due to reachable assertion.
1Qualcomm
64Aqt1000 Firmware
Ar8035 FirmwareQca6390 Firmware+61 more
Jun 17, 2026
Mar 10, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS due to reachable assertion in Modem while processing SIB1 Message.
1Qualcomm
65Ar8035 Firmware
Qca6390 FirmwareQca6391 Firmware+62 more
Jun 17, 2026
Mar 10, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS due to reachable assertion in modem when network repeatedly sent invalid message container for NR to LTE handover.