CWE-665: CWE-665

54
Total CVEs
2
Critical
35
High
7.1
Avg CVSS

Yearly Trend

2026
3
2025
8
2024
13
2023
11
2022
11

Top Affected Vendors

1 Linux 5
2 Intel 5
3 Apple 4
4 Juniper 3
5 Fedoraproject 3
6 Gnu 3
7 Google 2
8 Openeuler 2
9 Apache 2
10 Parallels 2

All CWE-665 CVEs (54)

CVE-2021-33635
9.8

CVE-2021-33635 is a critical vulnerability in iSulad container runtime where pulling malicious container images can lead to arbitrary code execution. ...

Oct 29, 2023
CVE-2022-0947
9.0

This vulnerability in ABB ARG600 Wireless Gateway series allows remote attackers to connect to serial port gateways and protocol converters depending ...

May 10, 2022
CVE-2024-21807
8.8

An improper initialization vulnerability in Intel Ethernet Network Controller drivers allows authenticated local users to potentially escalate privile...

Aug 14, 2024
CVE-2023-28737
8.8

This vulnerability in Intel Aptio V UEFI Firmware Integrator Tools allows authenticated local users to potentially escalate privileges due to improper...

Nov 14, 2023
CVE-2023-27934
8.8

CVE-2023-27934 is a memory initialization vulnerability in macOS that could allow a remote attacker to cause application crashes or execute arbitrary ...

May 8, 2023
CVE-2022-36364
8.8

This vulnerability in Apache Calcite Avatica JDBC driver allows attackers with JDBC connection parameter privileges to execute arbitrary code by loadi...

Jul 28, 2022
CVE-2023-3242
8.6

An improper initialization vulnerability in the Portmapper component of B&R Industrial Automation Automation Runtime allows unauthenticated attackers ...

Jul 26, 2023
CVE-2021-33637
8.4

CVE-2021-33637 is a container escape vulnerability in iSulad's isula export command. When an attacker controls a container, they can exploit this flaw...

Oct 29, 2023
CVE-2021-44169
8.2

This vulnerability allows attackers to gain administrative privileges on Windows systems running vulnerable FortiClient versions by placing a maliciou...

Apr 6, 2022
CVE-2024-0089
7.8

This vulnerability in NVIDIA GPU Display Driver for Windows allows information disclosure between processes, potentially exposing sensitive data from ...

Jun 13, 2024
CVE-2023-27322
7.8

This vulnerability in Parallels Desktop Service allows local attackers with low-privileged access to escalate to root privileges due to improper envir...

May 3, 2024
CVE-2023-27324
7.8

This vulnerability allows local attackers to escalate privileges on affected Parallels Desktop installations by exploiting improper initialization of ...

May 3, 2024
CVE-2021-47194
7.8

This CVE describes a Linux kernel vulnerability in the cfg80211 wireless subsystem where switching from P2P_GO to ADHOC interface type fails to proper...

Apr 10, 2024
CVE-2022-46487
7.8

This vulnerability in SCONE for Intel SGX allows a local attacker to compromise floating-point operation integrity or access sensitive information via...

Dec 30, 2023
CVE-2022-26721
7.8

CVE-2022-26721 is a memory initialization vulnerability in macOS that allows a malicious application to gain root privileges. This affects macOS Catal...

May 26, 2022
CVE-2022-22657
7.8

CVE-2022-22657 is a memory initialization vulnerability in Apple's Logic Pro, GarageBand, and macOS Monterey that could allow arbitrary code execution...

Mar 18, 2022
CVE-2022-0847
7.8

CVE-2022-0847 (Dirty Pipe) is a Linux kernel vulnerability that allows unprivileged local users to write to read-only files in the page cache, enablin...

Mar 10, 2022
CVE-2021-0061
7.8

This vulnerability in Intel Graphics Drivers allows an authenticated local user to potentially escalate privileges due to improper initialization. It ...

Aug 11, 2021
CVE-2020-26886
7.8

This vulnerability in Softaculous allows attackers to execute arbitrary code on affected systems by exploiting improper initialization of trusted vari...

Mar 18, 2021
CVE-2021-1661
7.8

CVE-2021-1661 is a Windows Installer elevation of privilege vulnerability that allows authenticated attackers to execute arbitrary code with SYSTEM pr...

Jan 12, 2021
CVE-2026-21913
7.5

An unauthenticated attacker can cause a complete denial-of-service on vulnerable Juniper EX4000 switches by sending high volumes of traffic to the dev...

Jan 15, 2026
CVE-2024-28084
7.5

This vulnerability in iNet wireless daemon (IWD) allows attackers to cause denial of service through daemon crashes by exploiting initialization issue...

Mar 3, 2024
CVE-2023-49062
7.5

Katran, a high-performance layer 4 load balancer, could leak uninitialized kernel memory in IPv4 headers due to missing initialization of the Identifi...

Nov 28, 2023
CVE-2020-35342
7.5

CVE-2020-35342 is an uninitialized heap vulnerability in GNU Binutils' tic4x disassembler that allows attackers to leak sensitive information from mem...

Aug 22, 2023
CVE-2022-48352
7.5

CVE-2022-48352 is a data initialization vulnerability in some Huawei smartphones that can cause system panic (crash/reboot) when exploited. This affec...

Mar 27, 2023
CVE-2022-32231
7.5

This CVE describes an improper initialization vulnerability in BIOS firmware for certain Intel processors. It allows a privileged user with local acce...

Feb 16, 2023
CVE-2023-23555
7.5

This vulnerability affects F5 BIG-IP Virtual Edition and SPK systems with specific FastL4 profile configurations. Undisclosed network traffic can caus...

Feb 1, 2023
CVE-2022-29695
7.5

CVE-2022-29695 is a memory leak vulnerability in Unicorn Engine v2.0.0-rc7 caused by incomplete initialization. This allows attackers to cause denial ...

Jun 2, 2022
CVE-2022-22719
7.5

CVE-2022-22719 is a memory corruption vulnerability in Apache HTTP Server where a specially crafted request body can cause the server to read from ran...

Mar 14, 2022
CVE-2022-24316
7.5

This vulnerability in Schneider Electric's Interactive Graphical SCADA System Data Server allows attackers to expose sensitive information by sending ...

Feb 9, 2022
CVE-2021-20613
7.5

This vulnerability allows remote unauthenticated attackers to cause a denial-of-service condition in the communication function of affected MELSEC-F s...

Jan 14, 2022
CVE-2021-40025
7.5

CVE-2021-40025 is an uninitialized memory use vulnerability in the eID module of HarmonyOS. This allows attackers to potentially access sensitive info...

Jan 10, 2022
CVE-2021-0280
7.5

This vulnerability in Juniper Junos OS prevents DDoS protection configuration changes from taking effect on specific PTX and QFX10K platforms with Par...

Jul 15, 2021
CVE-2020-28019
7.5

This vulnerability in Exim mail servers allows remote attackers to cause a denial of service through stack consumption via specially crafted BDAT comm...

May 6, 2021
CVE-2021-0435
7.5

This vulnerability allows remote attackers to leak uninitialized heap memory from Android devices via Bluetooth AVRCP protocol without user interactio...

Apr 13, 2021
CVE-2021-29614
7.1

This vulnerability in TensorFlow's tf.io.decode_raw function allows out-of-bounds memory writes when combining fixed_length with wider datatypes, pote...

May 14, 2021
CVE-2021-0226
7.1

This vulnerability allows attackers to cause a denial of service on Juniper Junos OS Evolved devices by sending a specific IPv6 packet that terminates...

Apr 22, 2021
CVE-2023-40261
6.8

This vulnerability in Diebold Nixdorf Vynamic Security Suite allows physical attackers to bypass disk encryption by manipulating hard disk contents du...

Aug 8, 2024
CVE-2024-11158
6.7

An uninitialized variable vulnerability in Rockwell Automation Arena allows attackers to craft malicious DOE files that, when opened by a legitimate u...

Dec 5, 2024
CVE-2023-20591
6.5

This AMD processor vulnerability allows improper IOMMU re-initialization during DRTM events, enabling attackers to potentially read or modify hypervis...

Aug 13, 2024
CVE-2025-5745
5.6

A Power10-specific optimization bug in GNU C Library's strncmp function corrupts non-volatile vector registers, potentially altering program control f...

Jun 5, 2025
CVE-2025-5702
5.6

This vulnerability in GNU C Library's Power10-optimized strcmp function corrupts non-volatile vector registers, potentially altering program control f...

Jun 5, 2025
CVE-2025-25947
5.5

This vulnerability in Bento4 v1.6.0-641 allows attackers to cause a segmentation fault (crash) by providing a specially crafted MP4 file to the mp4enc...

Feb 19, 2025
CVE-2024-42078
5.5

A race condition in the Linux kernel's NFS server (nfsd) allows dereferencing an uninitialized mutex when creating new network namespaces, potentially...

Jul 29, 2024
CVE-2024-39485
5.5

This CVE describes a use-after-free vulnerability in the Linux kernel's V4L (Video for Linux) async subsystem. When a notifier is unregistered, dangli...

Jul 5, 2024
CVE-2024-39301
5.5

This CVE describes an uninitialized value vulnerability in the Linux kernel's 9p filesystem client. When p9_check_errors() fails early in p9_client_rp...

Jun 25, 2024
CVE-2023-45315
5.5

This vulnerability in Intel Power Gadget software for Windows allows authenticated local users to potentially cause denial of service through improper...

May 16, 2024
CVE-2024-31157
5.3

This vulnerability in UEFI firmware's OutOfBandXML module on certain Intel processors allows privileged users to potentially disclose sensitive inform...

Feb 12, 2025
CVE-2025-12902
4.4

An improper resource management vulnerability in Solidigm DC Products firmware allows attackers with local or physical access to bypass storage device...

Nov 7, 2025
CVE-2025-22834
4.2

This CVE describes an improper initialization vulnerability in AMI APTIOV BIOS that allows local attackers to leave system resources in unexpected sta...

Aug 12, 2025

About CWE-665 (CWE-665)

Our database tracks 54 CVEs classified as CWE-665, with 2 rated critical and 35 rated high severity. The average CVSS score for CWE-665 vulnerabilities is 7.1.

External reference: View CWE-665 on MITRE CWE →

Monitor CWE-665 Vulnerabilities

Get alerted when new CWE-665 CVEs affect your infrastructure.

Start Monitoring Free