CWE-400

High likelihood

Uncontrolled Resource Consumption

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly control the allocation and maintenance of a limited resource.

3,152 vulnerabilities with CWE-400
CVE-2018-16310 MEDIUM
Technicolor TG588V V2 - Denial of Service via MAC Address Flooding
CVSS 6.5
CVE-2018-5391 HIGH
Linux Kernel >=3.9 <4.18 - Denial of Service via IP Fragment Reassembly
CVSS 7.5
CVE-2018-6923 HIGH
FreeBSD - Denial of Service via IP Fragment Reassembly Resource Consumption
CVSS 7.5
CVE-2018-6554 MEDIUM
Linux Kernel < 4.17 - Memory Leak in IrDA Socket Binding
CVSS 5.5
CVE-2018-10924 MEDIUM
glusterfs 3.12.11-3.12.13 - Authenticated Denial of Service via fsync Memory Leak
CVSS 5.3
CVE-2018-11056 MEDIUM
RSA BSAFE Micro Edition Suite < 4.1.6.1 and BSAFE Crypto-C Micro Edition < 4.0.5.3 - Denial of Service via ASN.1 Parsing
CVSS 6.5
CVE-2018-16131 HIGH
Lightbend Akka HTTP 10.0.0-10.0.13 and 10.1.0-10.1.4 - Denial of Service via ZIP Bomb
CVSS 7.5
CVE-2018-16132 HIGH
Signal < 2.29.0 - Denial of Service via Large Image Rendering
CVSS 8.6
CVE-2018-15907 MEDIUM
Technicolor TC8305C - Denial of Service via MAC Address Flooding
CVSS 6.5
CVE-2018-8005 MEDIUM
Apache Traffic Server <6.2.2, <7.1.3 - Info Disclosure
CVSS 5.3
CVE-2018-15853 MEDIUM
libxkbcommon < 0.8.1 - Denial of Service via Crafted Keymap File
CVSS 5.5
CVE-2018-15852 MEDIUM
Technicolor TC7200.20 - Denial of Service via MAC Address Flooding
CVSS 6.5
CVE-2018-1157 MEDIUM
Mikrotik RouterOS <6.42.7,6.40.9 - Memory Corruption
CVSS 6.5
CVE-2018-15671 MEDIUM
HDF5 1.10.2 - Denial of Service via Stack Overflow in H5P__get_cb
CVSS 6.5
CVE-2018-15607 MEDIUM
ImageMagick 7.0.8-11 Q16 - Denial of Service via Crafted File
CVSS 6.5
CVE-2018-5243 HIGH
Symantec Encryption Management Server <3.4.2 MP1 - DoS
CVSS 7.5
CVE-2018-15470 MEDIUM
Xen < 4.11.0 - Denial of Service via Uncontrolled Resource Consumption in oxenstored
CVSS 6.5
CVE-2018-15469 MEDIUM
Xen < 4.11.0 - Denial of Service via Grant Table v2 Request
CVSS 6.5
CVE-2018-0418 HIGH
Cisco IOS XR < 6.3.3_base - Unauthenticated Denial of Service via Malformed PTP Traffic
CVSS 8.6
CVE-2018-0410 HIGH
Cisco Web Security Appliance - Unauthenticated Denial of Service via TCP Connection Exhaustion
CVSS 8.6
CVE-2018-10864 MEDIUM
redhat-certification - Denial of Service via Unclosed XML File Handling
CVSS 5.3
CVE-2018-6922 MEDIUM
FreeBSD < 11.2-RELEASE-p1, 11.1-RELEASE-p12, 10.4-RELEASE-p10 - DoS via TCP Segment Reassembly
CVSS 5.3
CVE-2018-5390 HIGH
Linux kernel <4.9 - DoS
CVSS 7.5
CVE-2018-14940 HIGH
PHPCMS 9 - Denial of Service via Large Font Size Parameters in Checkcode API
CVSS 7.5
CVE-2018-10607 HIGH
Martem TELEM GW6/GWM <2018.04.18-linux_4-01-601cb47 - DoS
CVSS 7.5
Details
Vulnerabilities 3,152
Exploit Likelihood High