CWE-617: CWE-617

192
Total CVEs
0
Critical
107
High
6.8
Avg CVSS

Yearly Trend

2026
24
2025
82
2024
28
2023
21
2022
13

Top Affected Vendors

1 Open5gs 35
2 Linux 34
3 Qualcomm 29
4 Debian 18
5 Mediatek 15
6 Netapp 7
7 Fedoraproject 7
8 Linuxfoundation 7
9 Pexip 6
10 Isc 6

All CWE-617 CVEs (192)

CVE-2023-33041
7.5

This vulnerability in Qualcomm WLAN firmware allows attackers to cause denial of service through a firmware crash when specific wireless network condi...

Dec 5, 2023
CVE-2023-33043
7.5

This vulnerability allows a denial-of-service (DoS) attack on Qualcomm modems when a beam switch request is made with a non-configured bandwidth part ...

Dec 5, 2023
CVE-2023-40462
7.5

This vulnerability in Sierra Wireless ALEOS ACEManager allows unauthenticated attackers to cause a temporary denial of service by sending malformed au...

Dec 4, 2023
CVE-2023-32841
7.5

This vulnerability in MediaTek 5G modems allows remote attackers to cause a system crash via malformed RRC messages, leading to denial of service. No ...

Dec 4, 2023
CVE-2023-32843
7.5

This vulnerability in 5G modem firmware allows remote attackers to cause a system crash (denial of service) by sending malformed RRC (Radio Resource C...

Dec 4, 2023
CVE-2023-32845
7.5

This vulnerability in 5G modem firmware allows remote attackers to cause a system crash (denial of service) by sending malformed RRC messages. No user...

Dec 4, 2023
CVE-2023-32820
7.5

This vulnerability in MediaTek wlan firmware allows remote attackers to trigger a firmware assertion through improper input handling, causing denial o...

Oct 2, 2023
CVE-2023-4236
7.5

A denial-of-service vulnerability in BIND 9's DNS-over-TLS implementation causes the named service to crash when handling high volumes of DNS-over-TLS...

Sep 20, 2023
CVE-2023-21646
7.5

This vulnerability allows attackers to cause a denial-of-service condition in Qualcomm modems by sending specially crafted System Information Block 1 ...

Sep 5, 2023
CVE-2023-39534
7.5

A vulnerability in eprosima Fast DDS allows remote attackers to cause denial of service by sending a specially crafted GAP submessage that triggers an...

Aug 11, 2023
CVE-2023-34868
7.5

CVE-2023-34868 is an assertion failure vulnerability in Jerryscript's parser that can cause denial of service through application crashes. It affects ...

Jun 14, 2023
CVE-2023-1428
7.5

This vulnerability in gRPC's C++ implementation causes an abort() call when specific malformed HTTP/2 headers are sent, leading to denial of service. ...

Jun 9, 2023
CVE-2022-33251
7.5

This vulnerability allows attackers to cause a denial-of-service (DoS) condition in Qualcomm modems by sending invalid network configuration data. The...

Jun 6, 2023
CVE-2023-23759
7.5

This vulnerability in the fizz TLS library allows remote attackers to cause denial of service by triggering a CHECK failure when client cipher adverti...

May 18, 2023
CVE-2023-2156
7.5

This vulnerability in the Linux kernel's RPL protocol handling allows unauthenticated remote attackers to trigger an assertion failure by sending spec...

May 9, 2023
CVE-2022-40504
7.5

This vulnerability allows a denial-of-service (DoS) attack on mobile devices by sending a specially crafted Downlink Data Indication message to the mo...

May 2, 2023
CVE-2022-36440
7.5

This vulnerability allows attackers to cause a denial-of-service (DoS) in FRRouting's BGP daemon by sending specially crafted BGP open packets. The re...

Apr 3, 2023
CVE-2023-27789
7.5

A vulnerability in TCPprep v.4.4.3 allows remote attackers to cause denial of service via the cidr2cidr function. This affects systems running vulnera...

Mar 16, 2023
CVE-2023-27783
7.5

A denial-of-service vulnerability in TCPreplay's tcprewrite utility allows remote attackers to crash the application via a crafted packet. This affect...

Mar 16, 2023
CVE-2022-33272
7.5

CVE-2022-33272 is a reachable assertion vulnerability in Qualcomm modem firmware that can cause a denial of service (DoS) condition. When exploited, i...

Mar 10, 2023
CVE-2022-29228
7.5

This vulnerability in Envoy's OAuth filter allows memory corruption or crashes when the filter incorrectly continues processing after sending a local ...

Jun 9, 2022
CVE-2022-1183
7.5

This vulnerability causes the BIND DNS server to crash with an assertion failure when configured with HTTP references in listen-on statements. It affe...

May 19, 2022
CVE-2021-27498
7.5

A denial-of-service vulnerability in EIPStackGroup OpENer EtherNet/IP stack allows attackers to crash affected systems by sending specially crafted pa...

May 12, 2022
CVE-2022-29339
7.5

This vulnerability in GPAC's BS_ReadByte() function causes a failed assertion leading to denial of service when processing malformed media files. It a...

May 5, 2022
CVE-2022-27382
7.5

This vulnerability in MariaDB Server causes a segmentation fault through a specific component, potentially leading to denial of service. It affects Ma...

Apr 12, 2022
CVE-2021-30329
7.5

This vulnerability in Qualcomm Snapdragon chipsets allows attackers to trigger an assertion failure due to improper validation of TCI configuration. I...

Apr 1, 2022
CVE-2021-30332
7.5

This vulnerability in Qualcomm Snapdragon chipsets allows attackers to trigger a denial-of-service condition via improper validation of Over-The-Air (...

Apr 1, 2022
CVE-2022-0635
7.5

CVE-2022-0635 is a denial-of-service vulnerability in BIND 9.18.0 where specific DNS queries can trigger an assertion failure, causing the named proce...

Mar 23, 2022
CVE-2022-0667
7.5

CVE-2022-0667 is a denial-of-service vulnerability in BIND 9.18.0 where specially crafted queries cause the BIND process to exit, disrupting DNS servi...

Mar 22, 2022
CVE-2021-30326
7.5

This vulnerability in Qualcomm Snapdragon chipsets allows remote attackers to cause denial of service through improper size validation of DownlinkPree...

Feb 11, 2022
CVE-2021-30307
7.5

This vulnerability in Qualcomm Snapdragon chipsets allows denial of service attacks due to improper DNS response validation. When DNS clients request ...

Jan 13, 2022
CVE-2021-30353
7.5

This vulnerability in Qualcomm Snapdragon chipsets involves improper validation of function pointer types, which can trigger an assertion failure. It ...

Jan 13, 2022
CVE-2021-45290
7.5

This vulnerability in Binaryen 103 allows attackers to cause a Denial of Service (DoS) by triggering an assertion abort in the wasm::handle_unreachabl...

Dec 21, 2021
CVE-2021-1971
7.5

This vulnerability in Qualcomm Snapdragon chipsets allows attackers to trigger an assertion failure due to lack of physical layer state validation. It...

Sep 9, 2021
CVE-2021-38385
7.5

This vulnerability in Tor's signature verification implementation causes a remote assertion failure when processing specially crafted signatures. It a...

Aug 30, 2021
CVE-2021-21778
7.5

This vulnerability allows unauthenticated attackers to cause denial of service by sending specially crafted ASDU messages to lib60870.NET implementati...

Aug 25, 2021
CVE-2020-36420
7.5

CVE-2020-36420 is a denial-of-service vulnerability in Polipo, a caching web proxy, caused by a reachable assertion failure when parsing a malformed R...

Jul 15, 2021
CVE-2021-1953
7.5

This vulnerability in Qualcomm Snapdragon chipsets allows remote attackers to trigger a reachable assertion by sending malformed Fine Timing Measureme...

Jul 13, 2021
CVE-2021-1955
7.5

This vulnerability in Qualcomm Snapdragon chipsets allows denial of service attacks when connections are improperly handled during association rejecti...

Jul 13, 2021
CVE-2021-1938
7.5

This vulnerability in Qualcomm Snapdragon chipsets allows assertion failures due to improper verification during peer creation/deletion operations. It...

Jul 13, 2021
CVE-2021-1887
7.5

This vulnerability in Qualcomm Snapdragon chipsets allows attackers to trigger a denial-of-service condition via the Wi-Fi Fine Timing Measurement pro...

Jul 13, 2021
CVE-2020-23313
7.5

CVE-2020-23313 is a reachable assertion vulnerability in JerryScript's scanner_literal_is_created function that can cause denial of service through ap...

Jun 10, 2021
CVE-2020-23319
7.5

CVE-2020-23319 is an assertion failure vulnerability in JerryScript's parser that could lead to denial of service or potentially arbitrary code execut...

Jun 10, 2021
CVE-2020-23309
7.5

CVE-2020-23309 is a denial-of-service vulnerability in JerryScript's JavaScript parser where an assertion failure can be triggered by specially crafte...

Jun 10, 2021
CVE-2020-23311
7.5

CVE-2020-23311 is an assertion failure vulnerability in JerryScript's JavaScript parser that can cause denial of service through application crashes. ...

Jun 10, 2021
CVE-2021-1937
7.5

This vulnerability in Qualcomm Snapdragon chipsets allows an attacker to trigger a reachable assertion while processing WLAN peer association messages...

Jun 9, 2021
CVE-2020-25710
7.5

CVE-2020-25710 is an assertion failure vulnerability in OpenLDAP's csnNormalize23() function that allows remote attackers to crash the LDAP service by...

May 28, 2021
CVE-2020-25709
7.5

CVE-2020-25709 is an assertion failure vulnerability in OpenLDAP's slapd server that allows remote attackers to crash the service by sending specially...

May 18, 2021
CVE-2021-1925
7.5

This vulnerability in Qualcomm Snapdragon chipsets allows denial of service attacks through improper handling of group management action frames in wir...

May 7, 2021
CVE-2020-11274
7.5

This vulnerability allows denial of service attacks on Qualcomm Snapdragon modems due to improper handling of invalid configurations. When exploited, ...

May 7, 2021

About CWE-617 (CWE-617)

Our database tracks 192 CVEs classified as CWE-617, with 0 rated critical and 107 rated high severity. The average CVSS score for CWE-617 vulnerabilities is 6.8.

External reference: View CWE-617 on MITRE CWE →

Monitor CWE-617 Vulnerabilities

Get alerted when new CWE-617 CVEs affect your infrastructure.

Start Monitoring Free