CWE-401

Medium likelihood

Missing Release of Memory after Effective Lifetime

Parent: CWE-772 - Missing Release of Resource after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

1,867 vulnerabilities with CWE-401
CVE-2026-47482 HIGH
Nvidia Triton Inference Server < 26.04 - Missing Release of Memory after Effective Lifetime
CVSS 7.5
CVE-2026-44806 MEDIUM
Microsoft Windows 10 Version 1607 - Windows Secure Channel Denial of Service Vulnerability
CVSS 5.3
CVE-2026-53365 MEDIUM
vsock/virtio: fix zerocopy completion for multi-skb sends
CVSS 5.5
CVE-2026-53364 MEDIUM
Bluetooth: hci_conn: Fix memory leak in hci_le_big_terminate()
CVSS 5.5
CVE-2026-61870 LOW
ImageMagick before 7.1.2-26 Memory Leak via VIFF Encoder
CVSS 2.9
CVE-2026-56366 LOW
ImageMagick - Memory Leak in META Reader APP1JPEG Error Path
CVSS 3.3
CVE-2026-57027 MEDIUM
Junos OS: EX4100 Series, EX4400: With sFlow configured in a VC scenario multicast traffic leads to an FPC crash
CVSS 6.5
CVE-2026-10699 HIGH
Memory leak in SFTP service can result in a denial of service in MOVEit Transfer
CVSS 7.5
CVE-2026-13698 HIGH
OpenVPN - Missing Release of Memory after Effective Lifetime
CVSS 7.5
CVE-2026-13708 HIGH
Imager::File::JPEG versions before 1.003 for Perl leak heap memory when reading a JPEG with repeated APP13 markers in i_readjpeg_wiol
CVSS 7.5
CVE-2026-53345 MEDIUM
KVM: Don't WARN if memory is dirtied without a vCPU when the VM is dying
CVSS 5.5
CVE-2026-56365 LOW
ImageMagick - Memory Leak in PNG Encoder via MNG Image Writing
CVSS 3.7
CVE-2026-56364 LOW
ImageMagick - Memory Leak in LoadOpenCLDeviceBenchmark() via Malformed XML
CVSS 1.9
CVE-2026-50254 HIGH
OFFIS DCMTK Toolkit Missing Release of Memory after Effective Lifetime
CVSS 7.5
CVE-2026-35505 HIGH
OFFIS DCMTK Toolkit Missing Release of Memory after Effective Lifetime
CVSS 7.5
CVE-2026-13474 HIGH
NetScaler - Denial of Service via Malformed HTTP/2 Requests
CVSS 7.5
CVE-2026-56018 HIGH
JavaScript::Minifier::XS versions before 0.16 for Perl leak memory on every call to minify(), allowing unbounded memory growth
CVSS 7.5
CVE-2026-53429 MEDIUM
Unbounded native memory leak in mdex escaped-tag rendering enables unauthenticated denial of service
CVE-2026-13593 MEDIUM
CSS::Minifier::XS versions before 0.14 for Perl have a memory leak when the entire document is minified away
CVSS 6.5
CVE-2026-53308 MEDIUM
power: supply: max77705: Free allocated workqueue and fix removal order
CVSS 5.5
CVE-2026-53261 MEDIUM
devlink: Release nested relation on devlink free
CVSS 5.5
CVE-2026-53258 MEDIUM
wifi: fix leak if split 6 GHz scanning fails
CVSS 5.5
CVE-2026-53252 MEDIUM
Bluetooth: fix memory leak in error path of hci_alloc_dev()
CVSS 5.5
CVE-2026-53229 HIGH
net/mlx5e: xsk: Fix DMA and xdp_frame leak on XDP_TX xmit failure
CVSS 7.5
CVE-2026-53227 MEDIUM
net: openvswitch: fix possible kfree_skb of ERR_PTR
CVSS 5.5
Details
Vulnerabilities 1,867
Exploit Likelihood Medium