CWE-400

High likelihood

Uncontrolled Resource Consumption

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly control the allocation and maintenance of a limited resource.

3,152 vulnerabilities with CWE-400
CVE-2017-9259 MEDIUM
SoundTouch 1.9.2 - Denial of Service via Crafted WAV File
CVSS 5.5
CVE-2017-11530 MEDIUM
ImageMagick <6.9.9-0, <7.0.6-1 - DoS
CVSS 6.5
CVE-2017-11527 MEDIUM
ImageMagick <6.9.9-0, <7.0.6-1 - DoS
CVSS 6.5
CVE-2017-11526 MEDIUM
ImageMagick <6.9.9-0, <7.0.6-1 - DoS
CVSS 6.5
CVE-2017-11521 HIGH
reSIProcate - Denial of Service via SdpContents::Session::Medium::parse Memory Consumption
CVSS 7.5
CVE-2017-7063 HIGH
iPhone OS < 10.3.3 and watchOS < 3.2.3 - Denial of Service in Messages Component
CVSS 7.5
CVE-2017-7007 HIGH
iPhone OS < 10.3.3 - Denial of Service in EventKitUI
CVSS 7.5
CVE-2017-7684 HIGH
Apache OpenMeetings 1.0.0 - Denial of Service via Large File Upload
CVSS 7.5
CVE-2017-2348 HIGH
Juniper Networks Junos OS <15.1.1 - DoS
CVSS 7.5
CVE-2017-1000064 HIGH
kitto 0.5.1 - Denial of Service via Memory Exhaustion in Router
CVSS 7.5
CVE-2017-9845 HIGH
SAP NetWeaver 7.40 - Denial of Service via DIAG Request
CVSS 7.5
CVE-2017-7670 HIGH
Apache Traffic Control - Denial of Service via Slowloris Attack
CVSS 7.5
CVE-2017-11142 HIGH
PHP < 5.6.31, 7.x < 7.0.17, 7.1.x < 7.1.3 - Denial of Service via Long Form Variables
CVSS 7.5
CVE-2017-11140 MEDIUM
GraphicsMagick - Denial of Service via Crafted JPEG File
CVSS 5.5
CVE-2017-9627 HIGH
Schneider Electric Wonderware ArchestrA Logger <2017.426.2307.1 - DoS
CVSS 8.6
CVE-2017-0690 MEDIUM
Android 4.4.4 5.0.2 5.1.1 6.0 6.0.1 7.0 7.1.1 7.1.2 - Denial of Service in Media Framework
CVSS 5.5
CVE-2017-10922 HIGH
Xen < 4.8.1 - Denial of Service via Grant-Table MMIO Region Grant References
CVSS 7.5
CVE-2017-10800 MEDIUM
GraphicsMagick - Denial of Service via MATLAB Image Processing
CVSS 5.5
CVE-2017-10799 MEDIUM
GraphicsMagick - Denial of Service via DPX Image Processing
CVSS 5.5
CVE-2017-6017 HIGH
Schneider Electric Modicon M340 PLC - Resource Exhaustion via Crafted Packet Sequence
CVSS 7.5
CVE-2017-7521 MEDIUM
OpenVPN < 2.4.3 and < 2.3.17 - Remote Denial of Service via Memory Leak in extract_x509_extension()
CVSS 5.9
CVE-2017-6043 HIGH
Trihedral VTScada < 11.2.26 - Uncontrolled Resource Consumption
CVSS 7.5
CVE-2017-9129 MEDIUM
Freeware Advanced Audio Coder (FAAC) 1.28 - DoS
CVSS 5.5
CVE-2017-1000378 CRITICAL
NetBSD < 7.1 - Uncontrolled Resource Consumption in qsort()
CVSS 9.8
CVE-2017-1000373 MEDIUM
OpenBSD < 6.1 - Uncontrolled Resource Consumption via qsort() Recursion
CVSS 6.5
Details
Vulnerabilities 3,152
Exploit Likelihood High