CWE-401

Medium likelihood

Missing Release of Memory after Effective Lifetime

Parent: CWE-772 - Missing Release of Resource after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

1,759 vulnerabilities with CWE-401
CVE-2021-34431 MEDIUM
Eclipse Mosquitto 1.6-2.0.10 - Authenticated Denial of Service via MQTT v5 CONNECT Message
CVSS 6.5
CVE-2021-25701 MEDIUM
PCoIP Software Client < 21.07.0 - Denial of Service via fUSBHub Driver IOCTL Handling
CVSS 5.5
CVE-2021-20108 HIGH
ManageEngine Asset Explorer Agent 1.0.34 - Denial of Service via Memory Leak in AEAgent.cpp
CVSS 7.5
CVE-2021-0293 MEDIUM
Juniper Networks Junos OS - Memory Corruption
CVSS 5.5
CVE-2021-26090 MEDIUM
FortiMail 6.2.0-6.2.6 and 6.4.0-6.4.4 - Unauthenticated Memory Exhaustion via Webmail Login Requests
CVSS 5.3
CVE-2021-1598 MEDIUM
Cisco Video Surveillance 7000 Series IP Cameras < 2.12.4 - Unauthenticated Denial of Service via LLDP Packet Processing
CVSS 6.5
CVE-2021-1597 MEDIUM
Cisco Video Surveillance 7000 Series IP Cameras < 2.12.4 - Unauthenticated Denial of Service via LLDP Packet Processing
CVSS 6.5
CVE-2021-1596 MEDIUM
Cisco Video Surveillance 7000 Series IP Cameras < 2.12.4 - Unauthenticated Denial of Service via LLDP Packet Processing
CVSS 6.5
CVE-2021-1595 MEDIUM
Cisco Video Surveillance 7000 Series IP Cameras < 2.12.4 - Unauthenticated Denial of Service via LLDP Packet Processing
CVSS 6.5
CVE-2021-22341 MEDIUM
Huawei IPS/NGFW/NIP/USG Modules - Memory Leak via Resource Management Weakness
CVSS 4.9
CVE-2021-34389 MEDIUM
NVIDIA Jetson Linux < 32.5.1 - Information Disclosure via Trusty OTE Protocol Message Parsing
CVSS 5.0
CVE-2021-1564 MEDIUM
Cisco Video Surveillance 7000 Series IP Cameras < 2.12.3 - DoS via Cisco Discovery Protocol and LLDP
CVSS 6.5
CVE-2021-1563 MEDIUM
Cisco Video Surveillance 7000 Series IP Cameras < 2.12.3 - DoS via Cisco Discovery Protocol and LLDP
CVSS 6.5
CVE-2021-3544 MEDIUM
QEMU <= 6.0.0 - Memory Leak in vhost-user-gpu Device
CVSS 6.5
CVE-2021-26111 MEDIUM
FortiSwitch 6.4.0-6.4.6, 6.2.0-6.2.6, 6.0.0-6.0.6, <=3.6.11 - Use-After-Free via LLDP/CDP/EDP Packets
CVSS 6.5
CVE-2021-20237 HIGH
libzmq 4.2.0-4.3.2 - Unauthenticated Memory Leak via Crafted PUB Messages
CVSS 7.5
CVE-2021-28652 MEDIUM
Squid < 4.15 and 5.x < 5.0.6 - Authenticated Denial of Service via Cache Manager API Short Query String
CVSS 4.9
CVE-2021-28651 HIGH
Squid < 4.15 and 5.x < 5.0.6 - Denial of Service via URN Scheme Memory Leak
CVSS 7.5
CVE-2021-20209 HIGH
Privoxy < 3.0.29 - Memory Leak in show-status CGI Handler
CVSS 7.5
CVE-2021-32032 HIGH
Trusted Firmware-M < 1.3.0 - Memory Leak via Multi-Part Cryptographic Operation Abort Failure
CVSS 7.5
CVE-2021-27386 HIGH
SIMATIC and SINAMICS Products - Denial of Service via SmartVNC Device Layout Handler
CVSS 7.5
CVE-2021-28665 HIGH
Stormshield Network Security < 3.7.18, 3.8.0-3.11.5 - Denial of Service in SNMP Plugin
CVSS 7.5
CVE-2021-0272 MEDIUM
Juniper Junos OS DoS via Kernel Memory Leak in QFX10002/10008/10016
CVSS 6.5
CVE-2021-0257 MEDIUM
Juniper Networks MX/EX Series - Memory Corruption
CVSS 6.5
CVE-2021-0230 HIGH
Juniper Networks SRX Series - Info Disclosure
CVSS 7.5
Details
Vulnerabilities 1,759
Exploit Likelihood Medium