Transient DOS in Modem while triggering a camping on an 5G cell.
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of servic
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of servic
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of servic
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of servic
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of servic
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of servic
The ACEManager component of ALEOS 4.16 and earlier does not perform input sanitization during authentication, which c
Under certain scenarios the WLAN Firmware will reach an assertion due to state confusion while looking up peer ids.
Transient DOS in Modem when a Beam switch request is made with a non-configured BWP.
Transient DOS in Data modem while handling TLB control messages from the Network.
StringEqual in TiXmlDeclaration::Parse in tinyxmlparser.cpp in TinyXML through 2.6.2 has a reachable assertion (and appl
libjpeg commit db33a6e was discovered to contain a reachable assertion via BitMapHook::BitMapHook at bitmaphook.cpp. Thi
Reachable Assertion vulnerability in upx before 4.0.0 allows attackers to cause a denial of service via crafted file pas
An issue was discovered in Poppler 22.07.0. There is a reachable abort which leads to denial of service because the main
A reachable Object::getString assertion in Poppler 22.07.0 allows attackers to cause a denial of service due to a failur
An issue was discovered in Poppler 22.08.0. There is a reachable assertion in Object.h, will lead to denial of service b
A Reachable Assertion vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evol
A vulnerability was found in Avahi, where a reachable assertion exists in avahi_dns_packet_append_record.
A vulnerability was found in Avahi. A reachable assertion exists in the avahi_escape_label() function.
A vulnerability was found in Avahi. A reachable assertion exists in the dbus_set_host_name function.
A vulnerability was found in Avahi. A reachable assertion exists in the avahi_rdata_parse() function.
A vulnerability was found in Avahi. A reachable assertion exists in the avahi_alternative_host_name() function.
Redis before 6cbea7d allows a replica to cause an assertion failure in a primary server by sending a non-administrative
A flaw was found in QEMU. The async nature of hot-unplug enables a race scenario where the net device backend is cleared
Redis is an in-memory database that persists on disk. Starting in version 7.0.8 and prior to version 7.0.10, authenticat
Redis is an open source, in-memory database that persists on disk. Authenticated users can use the `HINCRBYFLOAT` comman
llvm-project commit a0138390 was discovered to contain an assertion failure at !replacements.count(op) && "operation was
Jerryscript 3.0 *commit 1a2c047) was discovered to contain an Assertion Failure via the component parser_parse_class at
Jerryscript 3.0 (commit 1a2c047) was discovered to contain an Assertion Failure via the jmem_heap_finalize at jerry-core
Jerryscript 3.0 (commit 1a2c047) was discovered to contain an Assertion Failure via the parser_parse_function_arguments
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the jcontext_raise_exception at jerr
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the vm_loop at jerry-core/vm/vm.c.
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the ecma_big_uint_div_mod at jerry-c
A Reachable Assertion vulnerability in Routing Protocol Daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved a
An issue was discovered in Binutils readelf 2.38.50, reachable assertion failure in function display_debug_names allows
Rekor's goals are to provide an immutable tamper resistant ledger of metadata generated within a software projects suppl
Vapor is an HTTP web framework for Swift. There is a denial of service vulnerability impacting all users of affected ver
A flaw was found in libnbd, due to a malicious Network Block Device (NBD), a protocol for accessing Block Devices such a
Possible assertion in QOS request due to improper validation when multiple add or update request are received simultaneo
There is an Assertion `scaling_list_pred_matrix_id_delta==1' failed at sps.cc:925 in libde265 v1.0.8 when decoding file,
Possible assertion due to improper handling of IPV6 packet with invalid length in destination options header in Snapdrag
Possible assertion due to lack of input validation in PUSCH configuration in Snapdragon Auto, Snapdragon Compute, Snapdr
Possible assertion due to improper validation of symbols configured for PDCCH monitoring in Snapdragon Auto, Snapdragon
Possible denial of service due to improper validation of DNS response when DNS client requests with PTR, NAPTR or SRV qu
Improper validation of function pointer type with actual function signature can lead to assertion in Snapdragon Auto, Sn
Possible assertion due to improper size validation while processing the DownlinkPreemption IE in an RRC Reconfiguration/
When the vulnerability is triggered the BIND process will exit. BIND 9.18.0
Versions affected: BIND 9.18.0 When a vulnerable version of named receives a series of specific queries, the named proce
grpc-swift is the Swift language implementation of gRPC, a remote procedure call (RPC) framework. Prior to version 1.7.2
Frequently Asked Questions
What is CWE-617?
CWE-617 (CWE-617) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-617?
There are 926 CVE records associated with CWE-617 in our database. Of these, 4 are critical severity, 323 are high severity, and 439 are medium severity.
How can I protect against CWE-617 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-617 using AI-powered security agents.
Detect CWE-617 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-617 vulnerabilities across your infrastructure.
Get Started