CWE-401

Medium likelihood

Missing Release of Memory after Effective Lifetime

Parent: CWE-772 - Missing Release of Resource after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

1,641 vulnerabilities with CWE-401
CVE-2026-23444 HIGH
wifi: mac80211: always free skb on ieee80211_tx_prepare_skb() failure
CVSS 7.8
CVE-2026-23431 MEDIUM
spi: amlogic-spisg: Fix memory leak in aml_spisg_probe()
CVSS 5.5
CVE-2026-23430 MEDIUM
drm/vmwgfx: Don't overwrite KMS surface dirty tracker
CVSS 5.5
CVE-2026-23423 MEDIUM
btrfs: free pages on error in btrfs_uring_read_extent()
CVSS 5.5
CVE-2026-23414 HIGH
tls: Purge async_hold in tls_decrypt_async_wait()
CVSS 7.5
CVE-2026-23403 MEDIUM
apparmor: fix memory leak in verify_header
CVSS 5.5
CVE-2026-21714 MEDIUM
Node.js 20-25 - Memory Leak
CVSS 5.3
CVE-2026-23399 MEDIUM
nf_tables: nft_dynset: fix possible stateful expression memleak in error path
CVSS 5.5
CVE-2026-3650 HIGH
Grassroots DICOM Missing release of memory after effective lifetime
CVSS 7.5
CVE-2026-4247 HIGH
TCP: remotely exploitable DoS vector (mbuf leak)
CVSS 7.5
CVE-2026-20012 HIGH
Cisco Ios < 15.2(4)S2 - Denial of Service
CVSS 8.6
CVE-2026-23389 MEDIUM
Linux kernel - Memory Leak in ice_set_ringparam()
CVSS 5.5
CVE-2026-23384 MEDIUM
RDMA/ionic: Fix kernel stack leak in ionic_create_cq()
CVSS 5.5
CVE-2026-23360 MEDIUM
nvme: fix admin queue leak on controller reset
CVSS 5.5
CVE-2026-23350 HIGH
drm/xe/queue: Call fini on exec queue creation fail
CVSS 7.8
CVE-2026-23339 MEDIUM
nfc: nci: free skb on nci_transceive early error paths
CVSS 5.5
CVE-2026-23337 MEDIUM
pinctrl: pinconf-generic: Fix memory leak in pinconf_generic_parse_dt_config()
CVSS 5.5
CVE-2026-23335 MEDIUM
RDMA/irdma: Fix kernel stack leak in irdma_create_user_ah()
CVSS 5.5
CVE-2026-23330 MEDIUM
nfc: nci: complete pending data exchange on device close
CVSS 5.5
CVE-2026-33852 HIGH
Missing Release of Memory after Effective Lifetime in MolotovCherry Android-ImageMagick7
CVSS 7.5
CVE-2026-33856 HIGH
Missing Release of Memory after Effective Lifetime in MolotovCherry Android-ImageMagick7
CVSS 7.5
CVE-2026-32874 HIGH
UltraJSON has a Memory Leak parsing large integers allows DoS
CVSS 7.5
CVE-2026-30873 MEDIUM
OpenWrt Project jsonpath: Memory leak when processing strings, labels, and regexp tokens
CVSS 4.9
CVE-2026-0639 LOW
liteos_a has a missing release of memory vulnerability
CVSS 3.3
CVE-2026-1605 HIGH
Eclipse Jetty 12.0.0-12.0.31/12.1.0-12.0.5 - Memory Corruption
CVSS 7.5
Details
Vulnerabilities 1,641
Exploit Likelihood Medium