CWE-401

Medium likelihood

Missing Release of Memory after Effective Lifetime

Parent: CWE-772 - Missing Release of Resource after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

1,759 vulnerabilities with CWE-401
CVE-2022-3524 MEDIUM
Linux Kernel < 2.6.12 - Memory Leak in IPv6 Handler
CVSS 4.3
CVE-2022-2963 HIGH
jasper - Use-After-Free in cmdopts_parse
CVSS 7.5
CVE-2022-38371 HIGH
APOGEE MBC/MEC/PXC Compact/Modular & Desigo - Info Disclosure
CVSS 7.5
CVE-2022-41556 HIGH
lighttpd 1.4.56-1.4.66 - Denial of Service via RDHUP Mishandling in HTTP/1.1 Chunked Requests
CVSS 7.5
CVE-2022-41427 MEDIUM
Bento4 <1.6.0-639 - Memory Corruption
CVSS 6.5
CVE-2022-41426 MEDIUM
Bento4 <1.6.0-639 - Memory Corruption
CVSS 6.5
CVE-2022-41424 MEDIUM
Bento4 <1.6.0-639 - Memory Corruption
CVSS 6.5
CVE-2022-41419 MEDIUM
Bento4 <1.6.0-639 - Memory Corruption
CVSS 6.5
CVE-2022-41847 MEDIUM
Bento4 1.6.0-639 - Memory Corruption
CVSS 5.5
CVE-2022-35894 MEDIUM
Insyde InsydeH2O <5.5 - Info Disclosure
CVSS 6.0
CVE-2022-38178 HIGH
BIND >=9.9.12 <9.9.13 - Denial of Service via Malformed EdDSA Signature
CVSS 7.5
CVE-2022-38177 HIGH
BIND >=9.8.4 <9.16.32 - Use-After-Free via Malformed ECDSA Signature
CVSS 7.5
CVE-2022-2906 HIGH
BIND 9.18.0-9.18.6 - Denial of Service via Memory Exhaustion
CVSS 7.5
CVE-2022-35085 MEDIUM
SWFTools - Memory Leak in /lib/mem.c
CVSS 5.5
CVE-2022-39005 HIGH
Huawei EMUI and HarmonyOS - Memory Leak in MPTCP Module
CVSS 7.5
CVE-2022-39004 HIGH
Huawei EMUI and HarmonyOS - Memory Leak in MPTCP Module
CVSS 7.5
CVE-2022-38600 MEDIUM
Mplayer SVN-r38374-13.0.1 - Memory Corruption
CVSS 5.5
CVE-2022-40439 MEDIUM
Bento4 v1.6.0-639 - Memory Leak in AP4_StdcFileByteStream::Create
CVSS 6.5
CVE-2022-31222 LOW
Dell BIOS < 1.1.66 - Authenticated Denial of Service via Memory Exhaustion
CVSS 2.3
CVE-2022-40281 HIGH
Samsung TizenRT through 3.0_GBM - Information Disclosure via Missing X509_free in cyassl_connect_step2
CVSS 7.5
CVE-2022-22067 HIGH
Snapdragon Auto-Compute-Mobile - Memory Corruption
CVSS 7.5
CVE-2022-36152 MEDIUM
tifig v0.2.2 - Memory Leak via operator new[]
CVSS 5.5
CVE-2022-35433 MEDIUM
ffjpeg < 2021-12-16 - Memory Leak in jfif.c
CVSS 6.5
CVE-2022-35110 MEDIUM
swftools - Memory Leak in /lib/mem.c
CVSS 5.5
CVE-2022-1012 HIGH
Linux Kernel < 5.18 - Memory Leak and Denial of Service via TCP Source Port Generation
CVSS 8.2
Details
Vulnerabilities 1,759
Exploit Likelihood Medium