CWE-401
Medium likelihoodMissing Release of Memory after Effective Lifetime
The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.
1,867 vulnerabilities with CWE-401
CVE-2026-52923
HIGH
ipc: limit next_id allocation to the valid ID range
CVSS 7.8
CVE-2026-56116
MEDIUM
dhcpcd Memory Leak DoS via IPv6 Router Advertisement Handling
CVSS 6.5
CVE-2026-56371
MEDIUM
ImageMagick - Memory Leak in TXT File Processing via Texture Attribute
CVSS 5.3
CVE-2026-48141
MEDIUM
Memory leak in NI grpc-device BeginSidebandStream
CVSS 5.3
CVE-2026-0646
HIGH
Rockwell FLEX I/O 1794-AENTR v2.012 - CIP Request Denial of Service
CVE-2026-48059
HIGH
Netty HAProxy: Unbalanced Reference Count in Nested PP2_TYPE_SSL TLV Parsing Leads to Memory Exhaustion
CVSS 7.5
CVE-2026-48043
MEDIUM
netty-codec-http2: ByteBuf Reference-Count Leak in DelegatingDecompressorFrameListener Leads to Memory Exhaustion
CVSS 5.3
CVE-2026-48006
HIGH
Netty's Lack of Lifecycle Cleanup Leads to Pooled ByteBuf Leak in RedisArrayAggregator
CVSS 7.5
CVE-2026-20746
MEDIUM
PingDirectory copying of virtual attributes leads to memory exhaustion
CVE-2026-53464
MEDIUM
ImageMagick: Memory Leak in wand option parser when providing invalid arguments
CVSS 4.0
CVE-2026-46679
HIGH
libp2p: Memory DoS via subscription flood of unique topics
CVSS 7.5
CVE-2026-52904
MEDIUM
drm/nouveau: fix nvkm_device leak on aperture removal failure
CVSS 5.5
CVE-2026-41840
MEDIUM
Spring Framework Denial of Service via Multipart Requests in WebFlux
CVSS 5.9
CVE-2026-46309
HIGH
drm/xe/uapi: Reject coh_none PAT index for CPU cached memory in madvise
CVSS 7.0
CVE-2026-46303
HIGH
isofs: validate Rock Ridge CE continuation extent against volume size
CVSS 8.2
CVE-2026-46289
CRITICAL
lib/scatterlist: fix length calculations in extract_kvec_to_sg
CVSS 9.8
CVE-2026-45682
MEDIUM
OpenTelemetry eBPF Instrumentation: CappedConcurrentHashMap leaks keys after removals
CVSS 5.1
CVE-2026-47326
MEDIUM
Memory leak in Ubuntu Linux AppArmor large notification response allocation
CVSS 5.5
CVE-2026-46228
MEDIUM
spi: ch341: fix devres lifetime
CVSS 5.5
CVE-2026-46224
MEDIUM
drm/xe: Fix bo leak in xe_dma_buf_init_obj() on allocation failure
CVSS 5.5
CVE-2026-46221
MEDIUM
EDAC/versalnet: Fix device name memory leak
CVSS 5.5
CVE-2026-46207
MEDIUM
vsock/virtio: fix empty payload in tap skb for non-linear buffers
CVSS 5.5
CVE-2026-46201
HIGH
drm/xe: Fix dma-buf attachment leak in xe_gem_prime_import()
CVSS 7.8
CVE-2026-46182
MEDIUM
pseries/papr-hvpipe: Prevent kernel stack memory leak to userspace
CVSS 5.5
CVE-2026-46178
HIGH
RDMA/mlx4: Fix resource leak on error in mlx4_ib_create_srq()
CVSS 7.8
Details
Vulnerabilities
1,867
Exploit Likelihood
Medium