6 vulnerabilities classified as CWE-254 (7PK-安全功能). AI Chinese analysis included.
This page aggregates security vulnerabilities associated with the specific weakness class CWE-254, which addresses the "New Memory Was Referenced Before It Was Initialized" condition. The collection covers historical data regarding software components affected by this memory management flaw. The dataset spans advisories published over the last several years, focusing on instances where developers accessed uninitialized memory regions, potentially leading to unpredictable behavior or security breaches. Here, you can track a vendor's historical advisories related to this specific defect class. It also allows users to understand the technical implications of uninitialized memory access and examine the vulnerability history of specific products. By analyzing the aggregated data, users can identify recurring patterns in how this weakness manifests across different codebases. The page serves as a reference for understanding the scope of CWE-254 in the wild, facilitating risk assessment and remediation planning. No individual CVE identifiers are listed in this summary; the focus remains on the aggregate view of this weakness type.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2021-43177 | Devise-Two-Factor 安全漏洞 — devise-two-factor | 5.3 | - | 2022-04-11 |
| CVE-2021-40006 | Huawei HarmonyOS Wearables 加密问题漏洞 — HarmonyOS | 7.5 | - | 2022-01-07 |
| CVE-2018-6336 | Facebook osquery 安全特征问题漏洞 — osquery | 7.8 | - | 2018-12-31 |
| CVE-2018-0353 | Cisco Web Security Appliance AsyncOS 安全特征问题漏洞 — Cisco Web Security Appliance unknown | 6.5 | - | 2018-06-07 |
| CVE-2018-0110 | Cisco WebEx Meetings Server 安全漏洞 — Cisco WebEx Meetings Server | 8.1 | - | 2018-01-18 |
| CVE-2017-12353 | Cisco Email Security Appliance Cisco AsyncOS Software Multipurpose Internet Mail Extensions scanner 安全漏洞 — Cisco Email Security Appliance | 5.8 | - | 2017-11-30 |
Vulnerabilities classified as CWE-254 (7PK-安全功能) represent 6 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.