İçeriğe atla
Noroxi

CWE-252 · 161 kayıt

Unchecked Return Value

Bu sınıftaki CVE’ler

161 kayıt

  • CVE-2007-3798
    60Bu hafta

    Integer overflow in print-bgp.c in the BGP dissector in tcpdump 3.9.6 and earlier allows remote attackers to execute arbitrary code via craf

    KritikCVSS 9,8Kavram kanıtıEPSS %70

    tcpdump · tcpdump16 Tem 2007

  • CVE-2005-4360
    57Planlayın

    The URL parser in Microsoft Internet Information Services (IIS) 5.1 on Windows XP Professional SP2 allows remote attackers to execute arbitr

    YüksekCVSS 7,8Kavram kanıtıEPSS %87

    microsoft · internet information services19 Ara 2005

  • CVE-2010-0211
    48Planlayın

    The slap_modrdn2mods function in modrdn.c in OpenLDAP 2.4.22 does not check the return value of a call to the smr_normalize function, which

    KritikCVSS 9,8Kavram kanıtıEPSS %28

    openldap · openldap28 Tem 2010

  • CVE-2021-38171
    40Planlayın

    adts_decode_extradata in libavformat/adtsenc.c in FFmpeg 4.4 does not check the init_get_bits return value, which is a necessary step becaus

    KritikCVSS 9,8İstismar yokEPSS %2

    ffmpeg · ffmpeg21 Ağu 2021

  • CVE-1999-0199
    40Planlayın

    manual/search.texi in the GNU C Library (aka glibc) before 2.2 lacks a statement about the unspecified tdelete return value upon deletion of

    KritikCVSS 9,8İstismar yokEPSS %2

    gnu · glibc6 Eki 2020

  • CVE-2019-15900
    40Planlayın

    An issue was discovered in slicer69 doas before 6.2 on certain platforms other than OpenBSD.

    KritikCVSS 9,8İstismar yokEPSS %2

    doas project · doas18 Eki 2019

  • CVE-2021-26955
    40Planlayın

    An issue was discovered in the xcb crate through 2021-02-04 for Rust.

    KritikCVSS 9,8İstismar yokEPSS %2

    xcb project · xcb9 Şub 2021

  • CVE-2022-25718
    39İzleyin

    Cryptographic issue in WLAN due to improper check on return value while authentication handshake in Snapdragon Auto, Snapdragon Connectivity

    KritikCVSS 9,8İstismar yokEPSS %0

    qualcomm · apq8009 firmware19 Eki 2022

  • CVE-2022-23806
    37İzleyin

    Curve.IsOnCurve in crypto/elliptic in Go before 1.16.14 and 1.17.x before 1.17.7 can incorrectly return true in situations with a big.Int va

    KritikCVSS 9,1İstismar yokEPSS %3

    golang · go10 Şub 2022

  • CVE-2025-66565
    37İzleyin

    Fiber Utils UUIDv4 and UUID Silent Fallback to Predictable Values

    KritikCVSS 9,3İstismar yokEPSS %0

    gofiber · utils9 Ara 2025

  • CVE-2019-15942
    36İzleyin

    FFmpeg through 4.2 has a "Conditional jump or move depends on uninitialised value" issue in h2645_parse because alloc_rbsp_buffer in libavco

    YüksekCVSS 8,8İstismar yokEPSS %2

    ffmpeg · ffmpeg5 Eyl 2019

  • CVE-2024-50306
    36İzleyin

    Apache Traffic Server: Server process can fail to drop privilege

    KritikCVSS 9,1İstismar yokEPSS %2

    apache · traffic server14 Kas 2024

  • CVE-2021-26958
    35İzleyin

    An issue was discovered in the xcb crate through 2021-02-04 for Rust.

    YüksekCVSS 8,8İstismar yokEPSS %2

    xcb project · xcb9 Şub 2021

  • CVE-2023-44182
    35İzleyin

    Junos OS and Junos OS Evolved: An Unchecked Return Value in multiple users interfaces affects confidentiality and integrity of device operations

    YüksekCVSS 8,8İstismar yokEPSS %1

    juniper · junos12 Eki 2023

  • CVE-2024-1545
    35İzleyin

    Fault Injection of RSA encryption in WolfCrypt

    YüksekCVSS 8,8İstismar yokEPSS %1

    wolfssl · wolfssl29 Ağu 2024

  • CVE-2024-38427
    35İzleyin

    In International Color Consortium DemoIccMAX before 85ce74e, a logic flaw in CIccTagXmlProfileSequenceId::ParseXml in IccXML/IccLibXML/IccTa

    YüksekCVSS 8,8İstismar yokEPSS %1

    15 Haz 2024

  • CVE-2025-46672
    35İzleyin

    NASA CryptoLib before 1.3.2 does not check the OTAR crypto function returned status, potentially leading to spacecraft hijacking.

    YüksekCVSS 8,8İstismar yokEPSS %1

    nasa · cryptolib26 Nis 2025

  • CVE-2024-2881
    35İzleyin

    Fault Injection of EdDSA signature in WolfCrypt

    YüksekCVSS 8,8İstismar yokEPSS %0

    wolfssl · wolfssl29 Ağu 2024

  • CVE-2021-40401
    34İzleyin

    A use-after-free vulnerability exists in the RS-274X aperture definition tokenization functionality of Gerbv 2.7.0 and dev (commit b5f1eacd)

    YüksekCVSS 8,6İstismar yokEPSS %1

    gerbv project · gerbv4 Şub 2022

  • CVE-2026-21920
    34İzleyin

    Junos OS: SRX Series: If a specific request is processed by the DNS subsystem flowd will crash

    YüksekCVSS 8,7İstismar yokEPSS %0

    juniper · junos15 Oca 2026

  • CVE-2026-40060
    34İzleyin

    BIG-IP Advanced WAF and ASM vulnerability

    YüksekCVSS 8,7İstismar yokEPSS %0

    f5 · big-ip application security manager13 May 2026

  • CVE-2025-61935
    34İzleyin

    BIG-IP Advanced WAF and ASM vulnerability

    YüksekCVSS 8,7İstismar yokEPSS %0

    f5 · big-ip advanced web application firewall15 Eki 2025

  • CVE-2020-17533
    33İzleyin

    Apache Accumulo Improper Handling of Insufficient Permissions

    YüksekCVSS 8,1Kavram kanıtıEPSS %4

    apache · accumulo29 Ara 2020

  • CVE-2023-47480
    33İzleyin

    An issue in Pure Data 0.54-0 and fixed in 0.54-1 allows a local attacker to escalate privileges via the set*id () function.

    YüksekCVSS 8,4İstismar yokEPSS %0

    20 Eyl 2024

  • CVE-2025-0028
    33İzleyin

    An unchecked return value within the AMD Platform Management Framework (PMF) could allow an attacker to read or modify an arbitrary address

    YüksekCVSS 8,3İstismar yokEPSS %0

    amd · amd ryzen™ 7035 series processors with radeon™ graphics (formerly codenamed "rembrandt r")14 May 2026

Tüm zafiyet sınıfları