CWE-400

High likelihood

Uncontrolled Resource Consumption

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly control the allocation and maintenance of a limited resource.

3,141 vulnerabilities with CWE-400
CVE-2022-30858 MEDIUM
ngiflib 0.4 - Denial of Service via Crafted GIF File
CVSS 6.5
CVE-2022-4952 LOW
OmniSharp csharp-language-server-protocol < 0.19.7 - Uncontrolled Resource Consumption in JSON Serializer
CVSS 3.5
CVE-2022-33168 HIGH
IBM Security Directory Suite VA <8.0.1 - DoS
CVSS 7.5
CVE-2022-33303 MEDIUM
Qualcomm WCN685X-5 Firmware - Denial of Service via Malformed Gunyah Resource Manager Messages
CVSS 5.5
CVE-2022-39374 MEDIUM
Synapse 1.62.0-1.67.9 - Denial of Service via Malicious Homeserver State Manipulation
CVSS 6.5
CVE-2022-36326 MEDIUM
Western Digital My Cloud <OS 5 - DoS
CVSS 4.4
CVE-2022-36329 MEDIUM
Western Digital My Cloud Home/Duo & SanDisk ibi <9.4.0-191 - DoS
CVSS 4.4
CVE-2022-46645 MEDIUM
Intel Smart Campus < 9.9 - Authenticated Denial of Service via Uncontrolled Resource Consumption
CVSS 5.0
CVE-2022-41801 MEDIUM
Intel Connect M < 1.82 - Authenticated Denial of Service via Uncontrolled Resource Consumption
CVSS 5.0
CVE-2022-4008 MEDIUM
Octopus Server 0.9-2022.3.11043 - Denial of Service via Zipbomb Upload
CVSS 5.5
CVE-2022-24109 MEDIUM
ONOS 2.5.1 - Uncontrolled Resource Consumption via Duplicate Intent Removal
CVSS 6.5
CVE-2022-24035 HIGH
ONOS 2.5.1 - Uncontrolled Resource Consumption in Intent Framework
CVSS 7.5
CVE-2022-40946 HIGH
D-Link DIR-819 Firmware 1.06 - Denial of Service via sys_token Parameter
CVSS 7.5
CVE-2022-4899 HIGH
zstd <1.4.10 - Buffer Overflow
CVSS 7.5
CVE-2022-48351 HIGH
Huawei EMUI and HarmonyOS - Denial of Service via Secure OS Configuration Defects
CVSS 7.5
CVE-2022-45003 HIGH
gophish < 0.12.1 - Denial of Service via Autofocus Payload
CVSS 7.5
CVE-2022-41333 HIGH
FortiRecorder < 6.0.11 - Unauthenticated Denial of Service via Crafted GET Requests
CVSS 7.5
CVE-2022-3277 MEDIUM
openstack-neutron < 18.6.0 and >=19.0.0.0rc1 <19.5.0 - Authenticated Denial of Service via Security Group Query
CVSS 6.5
CVE-2022-38734 HIGH
StorageGRID < 11.6.0.8 - Denial of Service via Local Distribution Router Crash
CVSS 7.5
CVE-2022-41724 HIGH
TLS <1.3-1.2 - DoS
CVSS 7.5
CVE-2022-20455 MEDIUM
Android - Local Denial of Service via ZenModeHelper Resource Exhaustion
CVSS 5.5
CVE-2022-3759 MEDIUM
GitLab 14.3-15.6.6, 15.7-15.7.5, 15.8 - Denial of Service via Crafted CI Job Artifact Zip File
CVSS 4.3
CVE-2022-3411 MEDIUM
GitLab 12.4-15.6.6, 15.7-15.7.5, 15.8-15.8.0 - Authenticated Denial of Service via Large Issue Description
CVSS 6.5
CVE-2022-47370 MEDIUM
Android - Denial of Service via Missing Parameter Check in WLAN Driver
CVSS 5.5
CVE-2022-47356 MEDIUM
Android - Local Denial of Service via Missing Permission Check in Log Service
CVSS 5.5
Details
Vulnerabilities 3,141
Exploit Likelihood High