CWE-665 初始化不恰当 类弱点 81 条 CVE 漏洞汇总,含 AI 中文分析。
CWE-665属于资源初始化不当漏洞,指程序未正确初始化资源,导致其处于意外状态。攻击者常利用此缺陷,通过读取未初始化的变量或内存,获取敏感信息或绕过身份验证逻辑。开发者应避免此类风险,确保在访问资源前对所有变量、指针及数据结构进行明确且正确的初始化,从而维持预期的安全状态。
private boolean initialized = true; public void someMethod() { if (!initialized) { // perform initialization tasks ... initialized = true; }$username = GetCurrentUser(); $state = GetStateData($username); if (defined($state)) { $uid = ExtractUserID($state); } # do stuff if ($uid == 0) { DoAdminThings(); }| CVE ID | 标题 | CVSS | 风险等级 | Published |
|---|---|---|---|---|
| CVE-2026-0940 | Lenovo ThinkPad 安全漏洞 — ThinkPad T14 Gen 5 BIOS | 6.7 | Medium | 2026-03-11 |
| CVE-2026-26958 | filippo.io/edwards25519 安全漏洞 — filippo.io/edwards25519 | 7.5AI | HighAI | 2026-02-19 |
| CVE-2025-48509 | AMD多款产品 安全漏洞 — AMD EPYC™ 9004 Series Processors | 2.3AI | LowAI | 2026-02-10 |
| CVE-2025-14955 | Open5GS 安全漏洞 — Open5GS | 3.7 | Low | 2025-12-19 |
| CVE-2025-12902 | Solidigm DC 安全漏洞 — D5-P5316, D5-P5430, D7-P5520/D7-P5620, D5-P5336 | 4.4 | Medium | 2025-11-07 |
| CVE-2024-36331 | AMD Embedded Processors和AMD Server Processor 安全漏洞 — AMD EPYC™ 9004 Series Processors | 3.2 | Low | 2025-09-06 |
| CVE-2025-22834 | AMI AptioV 安全漏洞 — AptioV | 4.2 | Medium | 2025-08-12 |
| CVE-2025-2149 | PyTorch 安全漏洞 — PyTorch | 2.5 | Low | 2025-03-10 |
| CVE-2024-11158 | Rockwell Automation Arena 安全漏洞 — Arena® | 7.8 | - | 2024-12-05 |
| CVE-2024-54129 | NASA Interplanetary Overlay Network 安全漏洞 — ION-DTN | 5.3 | - | 2024-12-05 |
| CVE-2024-45289 | FreeBSD 安全漏洞 — FreeBSD | 9.1AI | CriticalAI | 2024-11-12 |
| CVE-2023-32467 | Dell Edge Gateway 安全漏洞 — PowerSwitch Z9664F-ON BIOS | 5.7 | Medium | 2024-07-10 |
| CVE-2024-39864 | Apache CloudStack 安全漏洞 — Apache CloudStack | 9.1 | - | 2024-07-05 |
| CVE-2024-0089 | NVIDIA GPU Display Driver 安全漏洞 — GPU display driver, vGPU software, and Cloud Gaming | 7.8 | High | 2024-06-13 |
| CVE-2023-27324 | Corel Parallels Desktop 安全漏洞 — Desktop | 7.8 | - | 2024-05-03 |
| CVE-2023-27325 | Corel Parallels Desktop 安全漏洞 — Desktop | 7.8 | - | 2024-05-03 |
| CVE-2023-27322 | Corel Parallels Desktop 安全漏洞 — Desktop | 7.8AI | HighAI | 2024-05-03 |
| CVE-2023-4503 | JBoss Enterprise Application Platform 安全漏洞 — EAP 7.4.14 | 6.8 | Medium | 2024-02-06 |
| CVE-2023-1719 | Bitrix24 安全漏洞 — Bitrix24 | 7.5 | High | 2023-11-01 |
| CVE-2021-33638 | openEuler 安全漏洞 — iSulad | 8.4 | High | 2023-10-29 |
| CVE-2021-33637 | openEuler 安全漏洞 — iSulad | 8.4 | High | 2023-10-29 |
| CVE-2021-33636 | openEuler 安全漏洞 — iSulad | 8.4 | High | 2023-10-29 |
| CVE-2021-33635 | openEuler 安全漏洞 — iSulad | 9.8 | Critical | 2023-10-29 |
| CVE-2021-33634 | openEuler 安全漏洞 — lcr | 6.3 | Medium | 2023-10-29 |
| CVE-2023-5370 | FreeBSD 安全漏洞 — FreeBSD | 8.4 | - | 2023-10-04 |
| CVE-2023-40596 | Splunk 代码问题漏洞 — Splunk Enterprise | 7.0 | High | 2023-08-30 |
| CVE-2023-37479 | Open Enclave SDK 安全漏洞 — openenclave | 5.3 | Medium | 2023-07-17 |
| CVE-2023-1513 | Linux KVM 安全漏洞 — Linux kernel (KVM) | 3.3 | - | 2023-03-23 |
| CVE-2021-22283 | ABB REF615 IEC 安全漏洞 — Relion protection relays - 611 series | 6.2 | Medium | 2023-02-28 |
| CVE-2023-1048 | TechPowerUp Ryzen DRAM Calculator 安全漏洞 — Ryzen DRAM Calculator | 5.3 | Medium | 2023-02-26 |
CWE-665(初始化不恰当) 是常见的弱点类别,本平台收录该类弱点关联的 81 条 CVE 漏洞。