CWE-400

High likelihood

Uncontrolled Resource Consumption

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly control the allocation and maintenance of a limited resource.

3,134 vulnerabilities with CWE-400
CVE-2024-21142 MEDIUM
MySQL Server: Security: Privileges < 8.0.37 and <= 8.4.0 - Authenticated Denial of Service
CVSS 4.9
CVE-2024-21130 MEDIUM
MySQL Server < 8.0.37 and <= 8.4.0 - Denial of Service in Optimizer
CVSS 4.9
CVE-2024-21127 MEDIUM
MySQL Server < 8.0.37 and 8.4.0 - Denial of Service in DDL Component
CVSS 4.9
CVE-2024-21126 MEDIUM
Oracle Database Server 19.3-19.23 and 21.3-21.14 - Unauthenticated Partial Denial of Service via DNS
CVSS 5.8
CVE-2024-20996 MEDIUM
MySQL < 8.0.37 and 8.4.0 - Denial of Service in InnoDB
CVSS 4.9
CVE-2024-5795 HIGH
GitHub Enterprise Server < 3.14 - Denial of Service via Large Payload to Git Server
CVSS 7.7
CVE-2024-39908 MEDIUM
REXML < 3.3.2 - Denial of Service via Malformed XML Parsing
CVSS 4.3
CVE-2024-38360 MEDIUM
Discourse < 3.3.0 - Uncontrolled Resource Consumption via Watched Words
CVSS 4.9
CVE-2024-39551 HIGH
Juniper Junos OS Multiple Versions - Unauthenticated DoS via H.323 ALG Packet Processing
CVSS 7.5
CVE-2024-39548 HIGH
Juniper Junos OS Evolved Multiple Versions - Unauthenticated DoS via Memory Consumption in aftmand
CVSS 7.5
CVE-2024-6036 CRITICAL
gaizhenbiao chuanhuchatgpt 20240410 - Unauthenticated Denial of Service via /queue/join Endpoint
CVSS 9.1
CVE-2024-39557 MEDIUM
Juniper Junos OS Evolved DoS via L2ALD Memory Leak
CVSS 6.5
CVE-2024-39693 HIGH
Next.js 13.3.1-13.4.19 - Denial of Service via Resource Consumption
CVSS 7.5
CVE-2024-21526 HIGH
speaker - Denial of Service via Channels Property Assertion Failure
CVSS 7.5
CVE-2024-21523 HIGH
npm/images - Denial of Service via Unexpected Input Types
CVSS 7.5
CVE-2024-21521 HIGH
@discordjs/opus - Denial of Service via toString Property Manipulation
CVSS 7.5
CVE-2024-6501 LOW
Red Hat Enterprise Linux 9 - Denial of Service via Malformed LLDP Packet
CVSS 3.1
CVE-2024-29153 HIGH
Samsung Exynos Mobile/Wearable Processors - Resource Consumption via LTE NAS Bypass
CVSS 8.1
CVE-2024-5652 MEDIUM
Docker Desktop < 4.31.0 - Denial of Service via Exec-Path Configuration
CVSS 6.1
CVE-2024-38068 HIGH
Windows Online Certificate Status Protocol (OCSP) Server - Denial of Service
CVSS 7.5
CVE-2024-38067 HIGH
Microsoft Windows OCSP Server - Denial of Service
CVSS 7.5
CVE-2024-38031 HIGH
Windows Server 2008-2022 DoS via OCSP Server
CVSS 7.5
CVE-2024-38027 MEDIUM
Windows Line Printer Daemon Service - DoS
CVSS 6.5
CVE-2024-38015 HIGH
Windows Remote Desktop Gateway RD Gateway - DoS
CVSS 7.5
CVE-2024-35270 MEDIUM
Windows iSCSI Service - Denial of Service via Uncontrolled Resource Consumption
CVSS 5.3
Details
Vulnerabilities 3,134
Exploit Likelihood High