CWE-617 · 791 kayıt
Reachable Assertion
Bu sınıftaki CVE’ler
791 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
53Planlayın | CVE-2020-36222İstismar yok | A flaw was discovered in OpenLDAP before 2.4.57 leading to an assertion failure in slapd in the saslAuthzTo validation, resulting in denial openldap · openldap · CWE-617 | Yüksek7,5 | — | %77,2 | 26 Oca 2021 |
53Planlayın | CVE-2006-5779İstismar yok | OpenLDAP before 2.3.29 allows remote attackers to cause a denial of service (daemon crash) via LDAP BIND requests with long authcid names, wopenldap · openldap · CWE-617 | Yüksek7,5 | — | %76,3 | 7 Kas 2006 |
51Planlayın | CVE-2020-8617Silahlaştırılmış | A logic error in code which checks TSIG validity can be used to trigger an assertion failure in tsig.cisc · bind · CWE-617 | Orta5,9 | — | %93,4 | 19 May 2020 |
49Planlayın | CVE-2021-27212İstismar yok | In OpenLDAP through 2.4.57 and 2.5.x through 2.5.1alpha, an assertion failure in slapd can occur in the issuerAndThisUpdateCheck function viopenldap · openldap · CWE-617 | Yüksek7,5 | — | %64,1 | 13 Şub 2021 |
48Planlayın | CVE-2018-5740Kavram kanıtı | A flaw in the "deny-answer-aliases" feature can cause an assertion failure in namedisc · bind · CWE-617 | Yüksek7,5 | — | %59,6 | 16 Oca 2019 |
42Planlayın | CVE-2016-8864İstismar yok | named in ISC BIND 9.x before 9.9.9-P4, 9.10.x before 9.10.4-P4, and 9.11.x before 9.11.0-P1 allows remote attackers to cause a denial of serisc · bind · CWE-617 | Yüksek7,5 | — | %38,7 | 2 Kas 2016 |
41Planlayın | CVE-2018-12543İstismar yok | In Eclipse Mosquitto versions 1.5 to 1.5.2 inclusive, if a message is published to Mosquitto that has a topic starting with $, but that is neclipse · mosquitto · CWE-617 | Yüksek7,5 | — | %36,0 | 15 Kas 2018 |
40Planlayın | CVE-2019-9795İstismar yok | A vulnerability where type-confusion in the IonMonkey just-in-time (JIT) compiler could potentially be used by malicious JavaScript to triggmozilla · firefox · CWE-617 | Kritik9,8 | — | %1,7 | 26 Nis 2019 |
39İzleyin | CVE-2020-3615İstismar yok | Valid deauth/disassoc frames is dropped in case if RMF is enabled and some rouge peer keep on sending rogue deauth/disassoc frames due to imqualcomm · apq8009 firmware · CWE-617 | Kritik9,8 | — | %0,8 | 2 Haz 2020 |
36İzleyin | CVE-2022-3488İstismar yok | named may terminate unexpectedly when processing ECS options in repeated responses to iterative queriesisc · bind · CWE-617 | Yüksek7,5 | — | %19,2 | 26 Oca 2023 |
36İzleyin | CVE-2020-12417İstismar yok | Due to confusion about ValueTags on JavaScript Objects, an object may pass through the type barrier, resulting in memory corruption and a pomozilla · firefox · CWE-617 | Yüksek8,8 | — | %2,7 | 9 Tem 2020 |
36İzleyin | CVE-2026-41584İstismar yok | ZEBRA: rk Identity Point Panic in Transaction Verificationzfnd · zebra-chain · CWE-617 | Kritik9,2 | — | %0,5 | 8 May 2026 |
35İzleyin | CVE-2022-3924İstismar yok | named configured to answer from stale cache may terminate unexpectedly at recursive-clients soft quotaisc · bind · CWE-617 | Yüksek7,5 | — | %16,1 | 26 Oca 2023 |
35İzleyin | CVE-2020-6623İstismar yok | stb stb_truetype.h through 1.22 has an assertion failure in stbtt__cff_get_index.nothings · stb truetype.h · CWE-617 | Yüksek8,8 | — | %1,5 | 8 Oca 2020 |
35İzleyin | CVE-2020-6619İstismar yok | stb stb_truetype.h through 1.22 has an assertion failure in stbtt__buf_seek.nothings · stb truetype.h · CWE-617 | Yüksek8,8 | — | %1,1 | 8 Oca 2020 |
35İzleyin | CVE-2020-6617İstismar yok | stb stb_truetype.h through 1.22 has an assertion failure in stbtt__cff_int.nothings · stb truetype.h · CWE-617 | Yüksek8,8 | — | %1,1 | 8 Oca 2020 |
35İzleyin | CVE-2026-31739İstismar yok | crypto: tegra - Add missing CRYPTO_ALG_ASYNClinux · linux kernel · CWE-617 | Yüksek8,8 | — | %0,6 | 1 May 2026 |
35İzleyin | CVE-2026-52952İstismar yok | iommu: Fix WARN_ON in __iommu_group_set_domain_nofail() due to resetlinux · linux kernel · CWE-617 | Yüksek8,8 | — | %0,2 | 24 Haz 2026 |
34İzleyin | CVE-2017-7478Kavram kanıtı | OpenVPN version 2.3.12 and newer is vulnerable to unauthenticated Denial of Service of server via received large control packet.openvpn · openvpn · CWE-617 | Yüksek7,5 | — | %13,8 | 15 May 2017 |
34İzleyin | CVE-2020-36230İstismar yok | A flaw was discovered in OpenLDAP before 2.4.57 leading in an assertion failure in slapd in the X.509 DN parsing in decode.c ber_next_elemenopenldap · openldap · CWE-617 | Yüksek7,5 | — | %12,3 | 26 Oca 2021 |
34İzleyin | CVE-2006-4095İstismar yok | BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote attackers to cause a denial of service (crash) via certain SIG queries, which cisc · bind · CWE-617 | Yüksek7,5 | — | %11,8 | 5 Eyl 2006 |
34İzleyin | CVE-2024-34235İstismar yok | Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface.open5gs · open5gs · CWE-617 | Yüksek8,6 | — | %0,8 | 22 Oca 2025 |
34İzleyin | CVE-2023-37017İstismar yok | Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface.open5gs · open5gs · CWE-617 | Yüksek8,6 | — | %0,8 | 22 Oca 2025 |
34İzleyin | CVE-2023-37015İstismar yok | Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface.open5gs · open5gs · CWE-617 | Yüksek8,6 | — | %0,8 | 22 Oca 2025 |
34İzleyin | CVE-2023-37016İstismar yok | Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface.open5gs · open5gs · CWE-617 | Yüksek8,6 | — | %0,8 | 22 Oca 2025 |
- CVE-2020-3622253Planlayın
A flaw was discovered in OpenLDAP before 2.4.57 leading to an assertion failure in slapd in the saslAuthzTo validation, resulting in denial
YüksekCVSS 7,5İstismar yokEPSS %77openldap · openldap26 Oca 2021
- CVE-2006-577953Planlayın
OpenLDAP before 2.3.29 allows remote attackers to cause a denial of service (daemon crash) via LDAP BIND requests with long authcid names, w
YüksekCVSS 7,5İstismar yokEPSS %76openldap · openldap7 Kas 2006
- CVE-2020-861751Planlayın
A logic error in code which checks TSIG validity can be used to trigger an assertion failure in tsig.c
OrtaCVSS 5,9SilahlaştırılmışEPSS %93isc · bind19 May 2020
- CVE-2021-2721249Planlayın
In OpenLDAP through 2.4.57 and 2.5.x through 2.5.1alpha, an assertion failure in slapd can occur in the issuerAndThisUpdateCheck function vi
YüksekCVSS 7,5İstismar yokEPSS %64openldap · openldap13 Şub 2021
- CVE-2018-574048Planlayın
A flaw in the "deny-answer-aliases" feature can cause an assertion failure in named
YüksekCVSS 7,5Kavram kanıtıEPSS %60isc · bind16 Oca 2019
- CVE-2016-886442Planlayın
named in ISC BIND 9.x before 9.9.9-P4, 9.10.x before 9.10.4-P4, and 9.11.x before 9.11.0-P1 allows remote attackers to cause a denial of ser
YüksekCVSS 7,5İstismar yokEPSS %39isc · bind2 Kas 2016
- CVE-2018-1254341Planlayın
In Eclipse Mosquitto versions 1.5 to 1.5.2 inclusive, if a message is published to Mosquitto that has a topic starting with $, but that is n
YüksekCVSS 7,5İstismar yokEPSS %36eclipse · mosquitto15 Kas 2018
- CVE-2019-979540Planlayın
A vulnerability where type-confusion in the IonMonkey just-in-time (JIT) compiler could potentially be used by malicious JavaScript to trigg
KritikCVSS 9,8İstismar yokEPSS %2mozilla · firefox26 Nis 2019
- CVE-2020-361539İzleyin
Valid deauth/disassoc frames is dropped in case if RMF is enabled and some rouge peer keep on sending rogue deauth/disassoc frames due to im
KritikCVSS 9,8İstismar yokEPSS %1qualcomm · apq8009 firmware2 Haz 2020
- CVE-2022-348836İzleyin
named may terminate unexpectedly when processing ECS options in repeated responses to iterative queries
YüksekCVSS 7,5İstismar yokEPSS %19isc · bind26 Oca 2023
- CVE-2020-1241736İzleyin
Due to confusion about ValueTags on JavaScript Objects, an object may pass through the type barrier, resulting in memory corruption and a po
YüksekCVSS 8,8İstismar yokEPSS %3mozilla · firefox9 Tem 2020
- CVE-2026-4158436İzleyin
ZEBRA: rk Identity Point Panic in Transaction Verification
KritikCVSS 9,2İstismar yokEPSS %0zfnd · zebra-chain8 May 2026
- CVE-2022-392435İzleyin
named configured to answer from stale cache may terminate unexpectedly at recursive-clients soft quota
YüksekCVSS 7,5İstismar yokEPSS %16isc · bind26 Oca 2023
- CVE-2020-662335İzleyin
stb stb_truetype.h through 1.22 has an assertion failure in stbtt__cff_get_index.
YüksekCVSS 8,8İstismar yokEPSS %1nothings · stb truetype.h8 Oca 2020
- CVE-2020-661935İzleyin
stb stb_truetype.h through 1.22 has an assertion failure in stbtt__buf_seek.
YüksekCVSS 8,8İstismar yokEPSS %1nothings · stb truetype.h8 Oca 2020
- CVE-2020-661735İzleyin
stb stb_truetype.h through 1.22 has an assertion failure in stbtt__cff_int.
YüksekCVSS 8,8İstismar yokEPSS %1nothings · stb truetype.h8 Oca 2020
- CVE-2026-3173935İzleyin
crypto: tegra - Add missing CRYPTO_ALG_ASYNC
YüksekCVSS 8,8İstismar yokEPSS %1linux · linux kernel1 May 2026
- CVE-2026-5295235İzleyin
iommu: Fix WARN_ON in __iommu_group_set_domain_nofail() due to reset
YüksekCVSS 8,8İstismar yokEPSS %0linux · linux kernel24 Haz 2026
- CVE-2017-747834İzleyin
OpenVPN version 2.3.12 and newer is vulnerable to unauthenticated Denial of Service of server via received large control packet.
YüksekCVSS 7,5Kavram kanıtıEPSS %14openvpn · openvpn15 May 2017
- CVE-2020-3623034İzleyin
A flaw was discovered in OpenLDAP before 2.4.57 leading in an assertion failure in slapd in the X.509 DN parsing in decode.c ber_next_elemen
YüksekCVSS 7,5İstismar yokEPSS %12openldap · openldap26 Oca 2021
- CVE-2006-409534İzleyin
BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote attackers to cause a denial of service (crash) via certain SIG queries, which c
YüksekCVSS 7,5İstismar yokEPSS %12isc · bind5 Eyl 2006
- CVE-2024-3423534İzleyin
Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface.
YüksekCVSS 8,6İstismar yokEPSS %1open5gs · open5gs22 Oca 2025
- CVE-2023-3701734İzleyin
Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface.
YüksekCVSS 8,6İstismar yokEPSS %1open5gs · open5gs22 Oca 2025
- CVE-2023-3701534İzleyin
Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface.
YüksekCVSS 8,6İstismar yokEPSS %1open5gs · open5gs22 Oca 2025
- CVE-2023-3701634İzleyin
Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface.
YüksekCVSS 8,6İstismar yokEPSS %1open5gs · open5gs22 Oca 2025