CWE-401

Medium likelihood

Missing Release of Memory after Effective Lifetime

Parent: CWE-772 - Missing Release of Resource after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

1,736 vulnerabilities with CWE-401
CVE-2026-48059 HIGH
Netty HAProxy: Unbalanced Reference Count in Nested PP2_TYPE_SSL TLV Parsing Leads to Memory Exhaustion
CVSS 7.5
CVE-2026-48043 MEDIUM
netty-codec-http2: ByteBuf Reference-Count Leak in DelegatingDecompressorFrameListener Leads to Memory Exhaustion
CVSS 5.3
CVE-2026-48006 HIGH
Netty's Lack of Lifecycle Cleanup Leads to Pooled ByteBuf Leak in RedisArrayAggregator
CVSS 7.5
CVE-2026-20746 MEDIUM
PingDirectory copying of virtual attributes leads to memory exhaustion
CVE-2026-53464 MEDIUM
ImageMagick: Memory Leak in wand option parser when providing invalid arguments
CVSS 4.0
CVE-2026-46679 HIGH
libp2p: Memory DoS via subscription flood of unique topics
CVSS 7.5
CVE-2026-45682 MEDIUM
OpenTelemetry eBPF Instrumentation: CappedConcurrentHashMap leaks keys after removals
CVSS 5.1
CVE-2026-47326 MEDIUM
Memory leak in Ubuntu Linux AppArmor large notification response allocation
CVSS 5.5
CVE-2026-46228 MEDIUM
spi: ch341: fix devres lifetime
CVSS 5.5
CVE-2026-46224 MEDIUM
drm/xe: Fix bo leak in xe_dma_buf_init_obj() on allocation failure
CVSS 5.5
CVE-2026-46221 MEDIUM
EDAC/versalnet: Fix device name memory leak
CVSS 5.5
CVE-2026-46207 MEDIUM
vsock/virtio: fix empty payload in tap skb for non-linear buffers
CVSS 5.5
CVE-2026-46201 HIGH
drm/xe: Fix dma-buf attachment leak in xe_gem_prime_import()
CVSS 7.8
CVE-2026-46182 MEDIUM
pseries/papr-hvpipe: Prevent kernel stack memory leak to userspace
CVSS 5.5
CVE-2026-46178 HIGH
RDMA/mlx4: Fix resource leak on error in mlx4_ib_create_srq()
CVSS 7.8
CVE-2026-46171 MEDIUM
riscv: kvm: fix vector context allocation leak
CVSS 5.5
CVE-2026-46151 MEDIUM
usb: usblp: fix heap leak in IEEE 1284 device ID via short response
CVSS 5.5
CVE-2026-46147 MEDIUM
KVM: arm64: Fix pin leak and publication ordering in __pkvm_init_vcpu()
CVSS 5.5
CVE-2026-44660 HIGH
UltraJSON: Memory Leak in ujson.dump() on Write Failure
CVSS 7.5
CVE-2026-9572 LOW
GPAC MP4Box media.c Media_GetSample memory leak
CVSS 3.3
CVE-2026-35424 HIGH
Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability
CVSS 7.5
CVE-2026-43457 MEDIUM
Linux Kernel MCTP I2C - skb Memory Leak
CVSS 5.5
CVE-2026-43451 MEDIUM
netfilter: nfnetlink_queue: fix entry leak in bridge verdict error path
CVSS 5.5
CVE-2026-43445 MEDIUM
e1000/e1000e: Fix leak in DMA error cleanup
CVSS 5.5
CVE-2026-43432 MEDIUM
usb: xhci: Fix memory leak in xhci_disable_slot()
CVSS 5.5
Details
Vulnerabilities 1,736
Exploit Likelihood Medium