CWE-401

Medium likelihood

Missing Release of Memory after Effective Lifetime

Parent: CWE-772 - Missing Release of Resource after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

1,757 vulnerabilities with CWE-401
CVE-2022-4132 MEDIUM
Network Security Services for Java - Denial of Service via Memory Leak
CVSS 5.9
CVE-2022-48541 HIGH
ImageMagick 7.0.10-45 and 6.9.11-22 - Denial of Service via Memory Leak in 'identify -help' Command
CVSS 7.1
CVE-2022-48065 MEDIUM
GNU Binutils < 2.40 - Use-After-Free in find_abstract_instance
CVSS 5.5
CVE-2022-47011 MEDIUM
Binutils 2.34-2.38 - Denial of Service via Memory Leak in parse_stab_struct_fields
CVSS 5.5
CVE-2022-47010 MEDIUM
Binutils 2.34-2.38 - Denial of Service via Memory Leak in pr_function_type
CVSS 5.5
CVE-2022-47008 MEDIUM
Binutils 2.34-2.38 - Denial of Service via Memory Leak in make_tempdir and make_tempname
CVSS 5.5
CVE-2022-47007 MEDIUM
Binutils 2.34-2.38 - Denial of Service via Memory Leak in stab_demangle_v3_arg
CVSS 5.5
CVE-2022-4139 HIGH
Linux Kernel - Use-After-Free in i915 GPU Driver
CVSS 7.8
CVE-2022-45920 HIGH
Softing uaToolkit Embedded < 1.41 - Memory Leak via Malformed CreateMonitoredItems Request
CVSS 7.5
CVE-2022-4743 HIGH
Libsdl Simple Directmedia Layer < 2.26.0 - Memory Leak
CVSS 7.5
CVE-2022-46490 MEDIUM
gpac < 2.2.0 - Memory Leak in afrt_box_read
CVSS 5.5
CVE-2022-46489 MEDIUM
GPAC < 2.2.0 - Memory Leak in gf_isom_box_parse_ex
CVSS 5.5
CVE-2022-47941 HIGH
Linux Kernel 5.15-5.19 - Memory Leak in ksmbd SMB2 Negotiate Error Handling
CVSS 7.5
CVE-2022-23471 MEDIUM
containerd < 1.5.16 - Memory Leak via CRI Stream Server Goroutine
CVSS 5.7
CVE-2022-43272 HIGH
DCMTK 3.6.7 - Memory Leak in T_ASC_Association Object
CVSS 7.5
CVE-2022-45204 MEDIUM
GPAC < 2.2.0 - Memory Leak in dimC_box_read Function
CVSS 5.5
CVE-2022-3957 MEDIUM
GPAC < 2.2.0 - Memory Leak in SVG Parser via svg_parse_preserveaspectratio
CVSS 4.3
CVE-2022-29515 MEDIUM
Intel Server Platform Services Firmware < SPS_E3_06.00.03.035.0 - Use-After-Free via Local Access
CVSS 6.0
CVE-2022-43255 MEDIUM
GPAC < 2.2.0 - Memory Leak in gf_odf_new_iod
CVSS 5.5
CVE-2022-43254 MEDIUM
GPAC < 2.2.0 - Memory Leak in gf_list_new
CVSS 5.5
CVE-2022-3812 MEDIUM
Bento4 - Memory Leak in AP4_ContainerAtom Function
CVSS 4.3
CVE-2022-43223 HIGH
open5gs v2.4.11 - Denial of Service via Memory Leak in ngap-handler.c
CVSS 7.5
CVE-2022-43222 HIGH
open5gs v2.4.11 - Denial of Service via Memory Leak in PFCP Packet Handling
CVSS 7.5
CVE-2022-43221 HIGH
open5gs v2.4.11 - Denial of Service via Memory Leak in PFCP Packet Handling
CVSS 7.5
CVE-2022-42326 MEDIUM
Xen >=4.9.0 - Use-After-Free in Xenstore Node Transaction Handling
CVSS 5.5
Details
Vulnerabilities 1,757
Exploit Likelihood Medium