In the Linux kernel, the following vulnerability has been resolved: drm/gma500: Fix WARN_ON(lock->magic != lock) error
In the Linux kernel, the following vulnerability has been resolved: drm/i915/gt: Reset queue_priority_hint on parking
In the Linux kernel, the following vulnerability has been resolved: kprobes/x86: Use copy_from_kernel_nofault() to read
In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix WARN_ON in iommu probe path Commit
In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix missing hugetlb_lock for resv uncha
In the Linux kernel, the following vulnerability has been resolved: dma-buf/sync_file: Don't leak fences on merge failu
In the Linux kernel, the following vulnerability has been resolved: memory: fsl_ifc: fix leak of IO mapping on probe fa
In the Linux kernel, the following vulnerability has been resolved: cpu/hotplug: Don't offline the last non-isolated CP
In the Linux kernel, the following vulnerability has been resolved: drm/shmem-helper: Fix BUG_ON() on mmap(PROT_WRITE,
In the Linux kernel, the following vulnerability has been resolved: HID: core: remove unnecessary WARN_ON() in implemen
In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_queue: drop bogus WARN_ON Hap
In the Linux kernel, the following vulnerability has been resolved: mm: page_ref: remove folio_try_get_rcu() The below
In the Linux kernel, the following vulnerability has been resolved: closures: Change BUG_ON() to WARN_ON() If a BUG_ON
In the Linux kernel, the following vulnerability has been resolved: btrfs: handle errors from btrfs_dec_ref() properly
A flaw was found in QEMU. An assertion failure was present in the usb_ep_get() function in hw/net/core.c when trying to
In the Linux kernel, the following vulnerability has been resolved: media: atomisp: Add check for rgby_data memory allo
An unauthenticated user can trigger a fatal assertion in the server while generating ftdc diagnostic metrics due to atte
QuickJS commit 3b45d15 was discovered to contain an Assertion Failure via JS_FreeRuntime(JSRuntime *) at quickjs.c.
h2o is an HTTP server with support for HTTP/1.x, HTTP/2 and HTTP/3. When h2o is configured as a reverse proxy and HTTP/3
Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Incorrect Check of Function Return
Processing of repeated responses to the same query, where both responses contain ECS pseudo-options, but where the first
This issue can affect BIND 9 resolvers with `stale-answer-enable yes;` that also make use of the option `stale-answer-cl
In MPD before 0.23.8, as used on Automotive Grade Linux and other platforms, the PipeWire output plugin mishandles a Dra
Transient DOS due to reachable assertion in modem during MIB reception and SIB timeout
Transient DOS due to reachable assertion in modem when network repeatedly sent invalid message container for NR to LTE h
Transient DOS due to reachable assertion in Modem while processing SIB1 Message.
Transient DOS in modem due to reachable assertion.
Transient DOS due to reachable assertion in WLAN while processing PEER ID populated by TQM.
An issue found in TCPreplay tcprewrite v.4.4.3 allows a remote attacker to cause a denial of service via the tcpedit_dlt
An issue found in TCPrewrite v.4.4.3 allows a remote attacker to cause a denial of service via the ports2PORT function a
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the cidr2cidr function at th
A reachable assertion was found in Frrouting frr-bgpd 8.3.0 in the peek_for_as4_capability function. Attackers can malic
Transient DOS due to reachable assertion in Modem during OSI decode scheduling.
Transient DOS due to reachable assertion in Modem while processing config related to cross carrier scheduling, which is
Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network.
A flaw was found in the networking subsystem of the Linux kernel within the handling of the RPL protocol. This issue res
There is a vulnerability in the fizz library prior to v2023.01.30.00 where a CHECK failure can be triggered remotely. Th
Assertion occurs while processing Reconfiguration message due to improper validation
Transient DOS due to reachable assertion in Modem because of invalid network configuration.
Transient DOS due to reachable assertion in modem while processing sib with incorrect values from network.
There exists an vulnerability causing an abort() to be called in gRPC. The following headers cause gRPC's C++ implement
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the ecma_property_hashmap_create at
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the parser_parse_for_statement_start
eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prio
eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prio
An issue in weaviate v.1.20.0 allows a remote attacker to cause a denial of service via the handleUnbatchedGraphQLReques
Transient DOS in Modem while processing invalid System Information Block 1.
Transient DOS in Modem while processing RRC reconfiguration message.
A flaw in the networking code handling DNS-over-TLS queries may cause `named` to terminate unexpectedly due to an assert
In wlan firmware, there is a possible firmware assertion due to improper input handling. This could lead to remote denia
Frequently Asked Questions
What is CWE-617?
CWE-617 (CWE-617) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-617?
There are 926 CVE records associated with CWE-617 in our database. Of these, 4 are critical severity, 323 are high severity, and 439 are medium severity.
How can I protect against CWE-617 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-617 using AI-powered security agents.
Detect CWE-617 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-617 vulnerabilities across your infrastructure.
Get Started