CWE-401

Medium likelihood

Missing Release of Memory after Effective Lifetime

Parent: CWE-772 - Missing Release of Resource after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

1,757 vulnerabilities with CWE-401
CVE-2022-42325 MEDIUM
Xen >= 4.9.0 - Use-After-Free in Xenstore Node Transaction Handling
CVSS 5.5
CVE-2022-42323 MEDIUM
Xen - Use-After-Free via Xenstore Node Ownership Transfer
CVSS 5.5
CVE-2022-42322 MEDIUM
Xen - Use-After-Free via Xenstore Node Ownership Transfer
CVSS 5.5
CVE-2022-42319 MEDIUM
Xen >= 4.9.0 - Denial of Service via Xenstore Memory Leak
CVSS 6.5
CVE-2022-43151 MEDIUM
timg v1.4.4 - Memory Leak in timg::QueryBackgroundColor()
CVSS 5.5
CVE-2022-3669 MEDIUM
Bento4 - Memory Leak in AP4_AvccAtom::Create
CVSS 5.3
CVE-2022-3668 MEDIUM
Bento4 - Memory Leak in AP4_AtomFactory::CreateAtomFromStream
CVSS 5.3
CVE-2022-3646 LOW
Linux Kernel - Memory Leak in nilfs_attach_log_writer
CVSS 3.1
CVE-2022-3633 LOW
Linux Kernel - Memory Leak in j1939_session_destroy Function
CVSS 3.5
CVE-2022-3630 LOW
Linux Kernel - Memory Leak in IPsec Cookie Processing
CVSS 3.1
CVE-2022-3629 LOW
Linux Kernel - Memory Leak in vsock_connect Function
CVSS 2.6
CVE-2022-3624 LOW
Linux Kernel - Memory Leak in rlb_arp_xmit Function
CVSS 3.5
CVE-2022-3619 LOW
Linux Kernel - Memory Leak in Bluetooth L2CAP Core
CVSS 3.5
CVE-2022-3577 HIGH
Linux kernel's Kid-friendly Wired Controller driver < - Memory Corr...
CVSS 7.8
CVE-2022-41832 HIGH
BIG-IP <17.0.0.1, <16.1.3.1, <15.1.6.1, <14.1.5.1, <13.1.5.1 - Info...
CVSS 7.5
CVE-2022-41624 HIGH
BIG-IP 13.1.0-13.1.5.1 14.1.0-14.1.5.2 15.1.0-15.1.7 16.1.0-16.1.3.2 17.0.0 - Use-After-Free via Sideband iRule
CVSS 7.5
CVE-2022-40884 MEDIUM
Bento4 1.6.0 - Memory Leak in mp4fragment
CVSS 5.5
CVE-2022-43037 MEDIUM
Bento4 1.6.0-639 - Memory Leak in AP4_File::ParseStream
CVSS 6.5
CVE-2022-43032 MEDIUM
Bento4 1.6.0-639 - Memory Leak in AP4_DescriptorFactory
CVSS 6.5
CVE-2022-22240 MEDIUM
Juniper Networks Junos OS/Junos OS Evolved - DoS
CVSS 5.5
CVE-2022-3551 LOW
X.org Server < 21.1.6 - Use-After-Free in ProcXkbGetKbdByName
CVSS 3.5
CVE-2022-3543 LOW
Linux Kernel < 6.1 - Memory Leak in unix_sock_destructor/unix_release_sock
CVSS 3.5
CVE-2022-3526 MEDIUM
Linux Kernel 5.13-5.15.35 - Memory Leak in macvlan_handle_frame
CVSS 5.3
CVE-2022-3524 MEDIUM
Linux Kernel < 2.6.12 - Memory Leak in IPv6 Handler
CVSS 4.3
CVE-2022-2963 HIGH
jasper - Use-After-Free in cmdopts_parse
CVSS 7.5
Details
Vulnerabilities 1,757
Exploit Likelihood Medium