CWE-665
352 CVEs • Abstraction: Class • Likelihood of Exploit: Medium
Improper Initialization
The product does not initialize or incorrectly initializes a resource, which might leave the resource in an unexpected state when it is accessed or used.
CVEs (352)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Intel Netapp121Celeron 6305 Celeron 6305eCeleron 6600he+118 moreJun 17, 2026 Feb 9, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Improper initialization of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. |
2Intel Netapp681Atom C3308 Firmware Atom C3336 FirmwareAtom C3338 Firmware+678 moreJun 17, 2026 Feb 9, 2022 N/A· v4 6.6 MEDIUM· v3 4.6 MEDIUM· v2 Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access. |
2Intel Netapp681Atom C3308 Firmware Atom C3336 FirmwareAtom C3338 Firmware+678 moreJun 17, 2026 Feb 9, 2022 N/A· v4 6.2 MEDIUM· v3 4.6 MEDIUM· v2 Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access. |
In OpenZeppelin <=v4.4.0, initializer functions that are invoked separate from contract creation (the most prominent example being minimal proxies) may be reentered if they make an untrusted non-view external call. Once...Show more |
4Debian FedoraprojectPostgresql+1 more4Debian Linux FedoraPostgresql Jdbc Driver+1 moreJun 17, 2026 Feb 2, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 pgjdbc is the offical PostgreSQL JDBC Driver. A security hole was found in the jdbc driver for postgresql database while doing security research. The system using the postgresql library will be attacked when attacker con...Show more |
1Juniper 2Junos Junos Os EvolvedJun 17, 2026 Jan 19, 2022 N/A· v4 5.9 MEDIUM· v3 4.3 MEDIUM· v2 An Improper Initialization vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an attacker who sends specific packets in certain orders and at specific timings to f...Show more |
An Improper Initialization vulnerability in Juniper Networks Junos OS Evolved may cause a commit operation for disabling the telnet service to not take effect as expected, resulting in the telnet service staying enabled....Show more |
1Mitsubishielectric 3Fx3u Enet L Firmware Fx3u Enet P502 FirmwareFx3u Enet FirmwareJun 17, 2026 Jan 14, 2022 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Improper initialization vulnerability in MELSEC-F series FX3U-ENET Firmware version 1.16 and prior, FX3U-ENET-L Firmware version 1.16 and prior and FX3U-ENET-P502 Firmware version 1.16 and prior allows a remote unauthent...Show more |
nf_tables_newset in net/netfilter/nf_tables_api.c in the Linux kernel before 5.12.13 allows local users to cause a denial of service (NULL pointer dereference and general protection fault) because of the missing initiali...Show more |
2Debian Python2Debian Linux PillowJun 17, 2026 Jan 10, 2022 N/A· v4 6.5 MEDIUM· v3 6.4 MEDIUM· v2 path_getbbox in path.c in Pillow before 9.0.0 improperly initializes ImagePath.Path. |
The eID module has a vulnerability that causes the memory to be used without being initialized,Successful exploitation of this vulnerability may affect data confidentiality. |
In do_ipt_get_ctl and do_ipt_set_ctl of ip_tables.c, there is a possible way to leak kernel information due to uninitialized data. This could lead to local information disclosure with system execution privileges needed....Show more |
Dell Networking OS10 versions 10.4.3.x, 10.5.0.x and 10.5.1.x contain an information exposure vulnerability. A low privileged authenticated malicious user can gain access to SNMP authentication failure messages. |
Improper initialization in the installer for some Intel(R) Graphics DCH Drivers for Windows 10 before version 27.20.100.9316 may allow an authenticated user to potentially enable denial of service via local access. |
1Intel 157265 Firmware Ac1550 FirmwareAc 3165 Firmware+12 moreJun 17, 2026 Nov 17, 2021 N/A· v4 5.7 MEDIUM· v3 2.7 LOW· v2 Improper initialization in firmware for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi in Windows 10 may allow an authenticated user to potentially enable information disclosure via adjacent access. |
1Amd 20Epyc 7232p Firmware Epyc 72f3 FirmwareEpyc 7313 Firmware+17 moreJun 17, 2026 Nov 16, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Failure to validate VM_HSAVE_PA during SNP_INIT may result in a loss of memory integrity. |
1Amd 57Epyc 7232p Firmware Epyc 7251 FirmwareEpyc 7252 Firmware+54 moreJun 17, 2026 Nov 16, 2021 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Failure to flush the Translation Lookaside Buffer (TLB) of the I/O memory management unit (IOMMU) may lead an IO device to write to memory it should not be able to access, resulting in a potential loss of integrity. |
OpenZeppelin Contracts is a library for smart contract development. In affected versions upgradeable contracts using `UUPSUpgradeable` may be vulnerable to an attack affecting uninitialized implementation contracts. A fi...Show more |
In memory management driver, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not n...Show more |
2Debian Linux2Debian Linux Linux KernelJun 17, 2026 Sep 27, 2021 N/A· v4 4.4 MEDIUM· v3 4.9 MEDIUM· v2 A flaw was found in the Linux kernel. A corrupted timer tree caused the task wakeup to be missing in the timerqueue_add function in lib/timerqueue.c. This flaw allows a local attacker with special user privileges to caus...Show more |