CWE-401

Medium likelihood

Missing Release of Memory after Effective Lifetime

Parent: CWE-772 - Missing Release of Resource after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

1,759 vulnerabilities with CWE-401
CVE-2021-3736 MEDIUM
Linux Kernel < 5.14.20 - Memory Leak in VFIO Mediated Device mbochs_ioctl
CVSS 5.5
CVE-2021-3690 HIGH
Redhat Fuse < 2.0.40 - Memory Leak
CVSS 7.5
CVE-2021-33646 HIGH
libtar < 1.2.21 - Use-After-Free in th_read Function
CVSS 7.5
CVE-2021-33645 HIGH
libtar < 1.2.21 - Use-After-Free in th_read Function
CVSS 7.5
CVE-2021-33452 MEDIUM
NASM 2.16rc0 - Memory Leak in nasm_malloc
CVSS 5.5
CVE-2021-33451 MEDIUM
long_range_zip 0.641 - Use-After-Free in fill_buffer
CVSS 5.5
CVE-2021-33450 MEDIUM
NASM 2.16rc0 - Memory Leak in nasm_calloc
CVSS 5.5
CVE-2021-33437 MEDIUM
mjs < 2.20.0 - Use-After-Free in frozen_cb
CVSS 5.5
CVE-2021-4135 MEDIUM
Linux Kernel < 5.16 - Memory Leak in eBPF Simulated Networking Device Driver
CVSS 5.5
CVE-2021-41690 HIGH
DCMTK < 3.6.6 - Denial of Service via Memory Leak in dcmqrdb
CVSS 7.5
CVE-2021-41687 HIGH
DCMTK < 3.6.6 - Denial of Service via Memory Leak in dcmqrdb
CVSS 7.5
CVE-2021-41490 HIGH
Open Motion Planning Library 1.5.0 - Memory Leak in LazyPRM.cpp
CVSS 7.5
CVE-2021-40633 HIGH
giflib 5.1.4 - Denial of Service via Memory Leak in gif2rgb
CVSS 8.8
CVE-2021-35078 HIGH
Qualcomm AQT1000 Firmware - Memory Leak via Certificate Chain Length Validation
CVSS 7.5
CVE-2021-42197 HIGH
swftools < 2020-12-22 - Use-After-Free via swfdump
CVSS 7.8
CVE-2021-42218 HIGH
Rice Open Motion Planning Library - Memory Leak
CVSS 7.5
CVE-2021-41959 HIGH
JerryScript - Memory Leak in RegExp Object Handling
CVSS 7.5
CVE-2021-40047 HIGH
Huawei EMUI - Use-After-Free in Bastet Module
CVSS 7.5
CVE-2021-3744 MEDIUM
Linux Kernel < 5.15 - Use-After-Free in ccp_run_aes_gcm_cmd
CVSS 5.5
CVE-2021-4002 MEDIUM
Linux Kernel < 5.16 - Use-After-Free in hugetlbfs Memory Mapping
CVSS 4.4
CVE-2021-44961 MEDIUM
libslic3r 1.3.0 and Master Commit b1a5500 - Memory Leak in PerimeterGenerator
CVSS 5.5
CVE-2021-46082 HIGH
Moxa TN-5900 < 3.1, MGate 5109 < 2.2, MGate 5101-PBM-MN < 2.1 - Denial of Service via Memory Leak
CVSS 7.5
CVE-2021-45346 MEDIUM
SQLite 3.35.1 and 3.37.0 - Memory Leak via Maliciously Crafted SQL Queries
CVSS 4.3
CVE-2021-37205 HIGH
SIMATIC Drive Controller, ET 200SP, S7-1200/1500 CPU - DoS via Port 102/tcp
CVSS 7.5
CVE-2021-46481 MEDIUM
jsish 3.5.0 - Memory Leak in linenoise
CVSS 5.5
Details
Vulnerabilities 1,759
Exploit Likelihood Medium