Skip to main content

CWE archive

CWE-14 CVEs

Programmatic archive

10 CVEs tagged with CWE-140 Critical, 0 High, 7 Medium, 3 Low, 0 Unrated.

CVE-2026-48984

Published Jun 18, 2026

pam_usb provides hardware authentication for Linux using ordinary removable media. In versions 0.9.1 and below, the xfree() memory release helper in calls free() without first zer…

CVSS 4.7 · Medium
evidence mentions
2
Buzz score
16.0

CVE-2025-64646

Published Mar 25, 2026

IBM Concert 1.0.0 through 2.2.0 could allow an attacker to access sensitive information in memory due to the buffer not properly clearing resources.

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-32100

Published May 18, 2023

Compiler removal of buffer clearing in sli_se_driver_mac_compute in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-32097

Published May 18, 2023

Compiler removal of buffer clearing in sli_crypto_transparent_aead_decrypt_tag in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication…

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-32096

Published May 18, 2023

Compiler removal of buffer clearing in sli_crypto_transparent_aead_encrypt_tag in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication…

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-2481

Published May 18, 2023

Compiler removal of buffer clearing in sli_se_opaque_import_key in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-1132

Published May 18, 2023

Compiler removal of buffer clearing in sli_se_driver_key_agreement in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-0965

Published May 18, 2023

Compiler removal of buffer clearing in sli_cryptoacc_transparent_key_agreement in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1