In the Linux kernel, the following vulnerability has been resolved: iio: adc: rockchip_saradc: fix information leak in
In the Linux kernel, the following vulnerability has been resolved: iio: imu: kmx61: fix information leak in triggered
In the Linux kernel, the following vulnerability has been resolved: iio: light: bh1745: fix information leak in trigger
In the Linux kernel, the following vulnerability has been resolved: iio: light: vcnl4035: fix information leak in trigg
In the Linux kernel, the following vulnerability has been resolved: iio: dummy: iio_simply_dummy_buffer: fix informatio
In the Linux kernel, the following vulnerability has been resolved: iio: pressure: zpa2326: fix information leak in tri
In the Linux kernel, the following vulnerability has been resolved: pds_core: handle unsupported PDS_CORE_CMD_FW_CONTRO
VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability due to the usage of
In the Linux kernel, the following vulnerability has been resolved: hsr: Fix uninit-value access in fill_frame_info()
Use of uninitialized resource in Windows Kernel allows an authorized attacker to elevate privileges locally.
Microsoft Outlook Remote Code Execution Vulnerability
Windows COM Server Information Disclosure Vulnerability
Windows COM Server Information Disclosure Vulnerability
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to dis
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to dis
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to dis
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to dis
Helm is a package manager for Charts for Kubernetes. Prior to version 3.18.5, when parsing Chart.yaml and index.yaml fil
In BnAudioPolicyService::onTransact of IAudioPolicyService.cpp, there is a possible information disclosure due to uninit
In the Linux kernel, the following vulnerability has been resolved: arm64: ptrace: fix partial SETREGSET for NT_ARM_TAG
In the Linux kernel, the following vulnerability has been resolved: arm64: ptrace: fix partial SETREGSET for NT_ARM_POE
In the Linux kernel, the following vulnerability has been resolved: arm64: ptrace: fix partial SETREGSET for NT_ARM_FPM
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to discl
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to discl
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to discl
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to discl
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to discl
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to discl
In the Linux kernel, the following vulnerability has been resolved: media: dvb-frontends: dib3000mb: fix uninit-value i
In the Linux kernel, the following vulnerability has been resolved: ipvs: fix UB due to uninitialized stack access in i
In the Linux kernel, the following vulnerability has been resolved: ath11k: pci: fix crash on suspend if board file is
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtksdio: Fix kernel oops in btmtksdio_
In the Linux kernel, the following vulnerability has been resolved: ath9k_htc: fix uninit value bugs Syzbot reported 2
In the Linux kernel, the following vulnerability has been resolved: ALSA: firewire-lib: fix uninitialized flag for AV/C
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8712: fix uninit-value in r871xu_drv_in
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8712: fix uninit-value in usb_read8() a
In the Linux kernel, the following vulnerability has been resolved: rtl818x: Prevent using not initialized queues Usin
In the Linux kernel, the following vulnerability has been resolved: net: mdio: unexport __init-annotated mdio_bus_init(
In the Linux kernel, the following vulnerability has been resolved: tipc: check attribute length for bearer name syzbo
In the Linux kernel, the following vulnerability has been resolved: RDMA/hfi1: Prevent use of lock before it is initial
In the Linux kernel, the following vulnerability has been resolved: regulator: da9121: Fix uninit-value in da9121_assig
In the Linux kernel, the following vulnerability has been resolved: mm/mempolicy: fix uninit-value in mpol_rebind_polic
In the Linux kernel, the following vulnerability has been resolved: tick/nohz: unexport __init-annotated tick_nohz_full
In the Linux kernel, the following vulnerability has been resolved: clocksource: hyper-v: unexport __init-annotated hv_
In the Linux kernel, the following vulnerability has been resolved: vxlan: Fix uninit-value in vxlan_vnifilter_dump()
In the Linux kernel, the following vulnerability has been resolved: team: better TEAM_OPTION_TYPE_STRING validation sy
In the Linux kernel, the following vulnerability has been resolved: gpu: host1x: Fix a use of uninitialized mutex comm
In the Linux kernel, the following vulnerability has been resolved: drm/panthor: avoid garbage value in panthor_ioctl_d
In the Linux kernel, the following vulnerability has been resolved: drop_monitor: fix incorrect initialization order S
In the Linux kernel, the following vulnerability has been resolved: ipvlan: ensure network headers are in skb linear pa
Frequently Asked Questions
What is CWE-908?
CWE-908 (CWE-908) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-908?
There are 956 CVE records associated with CWE-908 in our database. Of these, 67 are critical severity, 244 are high severity, and 469 are medium severity.
How can I protect against CWE-908 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-908 using AI-powered security agents.
Detect CWE-908 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-908 vulnerabilities across your infrastructure.
Get Started