CWE-400

High likelihood

Uncontrolled Resource Consumption

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly control the allocation and maintenance of a limited resource.

3,146 vulnerabilities with CWE-400
CVE-2022-22101 MEDIUM
Qualcomm Snapdragon Auto Firmware - Denial of Service via HAB Message Parsing
CVSS 6.2
CVE-2022-39194 MEDIUM
MediaWiki < 1.38.2 - Denial of Service via GrowthExperiments Community Configuration
CVSS 4.9
CVE-2022-2764 MEDIUM
Redhat Integration Camel K < 2.2.19 - Denial of Service
CVSS 4.9
CVE-2022-1677 MEDIUM
OpenShift Container Platform - Uncontrolled Resource Consumption via Malformed Route Payload
CVSS 6.3
CVE-2022-36055 MEDIUM
Helm 3.0.0-3.9.3 - Denial of Service via strvals Parser Memory Exhaustion
CVSS 6.5
CVE-2022-2004 HIGH
AutomationDirect DirectLOGIC D0-06 Series < 2.72 - Denial of Service via Crafted Packet Flood
CVSS 7.5
CVE-2022-1325 MEDIUM
cimg < 3.1.0 - Denial of Service via Malicious Pandore or BMP File
CVSS 5.5
CVE-2022-1259 HIGH
Redhat Build OF Quarkus < 2.2.17 - Denial of Service
CVSS 7.5
CVE-2022-36034 HIGH
nitrado.js < 0.2.5 - Inefficient Regular Expression Complexity via Malicious Input
CVSS 7.5
CVE-2022-0669 MEDIUM
DPDK 20.02-22.03 - Denial of Service via VHOST_USER_GET_INFLIGHT_FD Ancillary Data
CVSS 6.5
CVE-2022-24375 HIGH
node-opcua < 2.74.0 - Denial of Service via Multiple CloseSession Requests
CVSS 7.5
CVE-2022-33142 HIGH
WordPlus WordPress Better Messages <1.9.10.57 - DoS
CVSS 7.7
CVE-2022-35013 MEDIUM
PNGDec - Denial of Service via SaveBMP Floating-Point Exception
CVSS 6.5
CVE-2022-38150 HIGH
Varnish Cache 7.0.0-7.0.2 7.1.0 - Denial of Service via Crafted HTTP/1 Backend Response
CVSS 7.5
CVE-2022-35776 MEDIUM
Azure Site Recovery VMware to Azure < 9.50.6419.1 - Denial of Service
CVSS 6.2
CVE-2022-35769 HIGH
Windows Point-to-Point Protocol - Denial of Service
CVSS 7.5
CVE-2022-34701 HIGH
Windows SSTP - Denial of Service via Uncontrolled Resource Consumption
CVSS 7.5
CVE-2022-28880 MEDIUM
F-Secure Atlant & WithSecure Elements EDR - DoS via Fuzzed PE32-bit File
CVSS 4.3
CVE-2022-2053 HIGH
Redhat Integration Camel K < 2.2.19 - Denial of Service
CVSS 7.5
CVE-2022-35241 MEDIUM
F5 NGINX Instance Manager 1.x and 2.x < 2.3.1 - Uncontrolled Resource Consumption
CVSS 6.5
CVE-2022-35236 HIGH
F5 BIG-IP 14.1.0-14.1.4 - Uncontrolled Resource Consumption via HTTP2 Profile
CVSS 7.5
CVE-2022-33203 HIGH
BIG-IP <16.1.3, 15.1.6.1, 14.1.5 - DoS
CVSS 7.5
CVE-2022-35923 HIGH
v8n <1.5.1 - Denial of Service
CVSS 7.5
CVE-2022-35922 HIGH
Rust-WebSocket <0.26.5 - Memory Corruption
CVSS 7.5
CVE-2022-35915 MEDIUM
OpenZeppelin Contracts <4.7.2 - Info Disclosure
CVSS 5.3
Details
Vulnerabilities 3,146
Exploit Likelihood High