CWE-401

Medium likelihood

Missing Release of Memory after Effective Lifetime

Parent: CWE-772 - Missing Release of Resource after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

1,759 vulnerabilities with CWE-401
CVE-2021-31256 MEDIUM
GPAC - Memory Leak in stbl_GetSampleInfos Function
CVSS 5.5
CVE-2021-3492 HIGH
Ubuntu Linux < 18.04 and < 20.10 - Use-After-Free in Shiftfs
CVSS 8.8
CVE-2021-22312 MEDIUM
Huawei IPS Module, NGFW Module, Secospace USG6300, USG6500, USG6600, and USG9500 - Memory Leak
CVSS 6.5
CVE-2021-1309 HIGH
Cisco RV Series Routers - Unauthenticated Remote Code Execution or Denial of Service via LLDP
CVSS 7.4
CVE-2021-1308 HIGH
Cisco RV Series Routers - Unauthenticated Remote Code Execution or Denial of Service via LLDP
CVSS 7.4
CVE-2021-1251 HIGH
Cisco RV Series Routers - Unauthenticated Remote Code Execution or Denial of Service via LLDP
CVSS 7.4
CVE-2021-30141 HIGH
Friendica <2021.01 - Info Disclosure
CVSS 7.5
CVE-2021-30002 MEDIUM
Linux Kernel < 5.11.3 - Memory Leak in V4L2 IOCTL Handler
CVSS 6.2
CVE-2021-20234 MEDIUM
libzmq < 4.3.3 - Memory Leak in Pipe Connection Handling
CVSS 6.5
CVE-2021-29649 MEDIUM
Linux Kernel < 5.11.11 - Use-After-Free in User Mode Driver
CVSS 5.5
CVE-2021-20193 LOW
GNU tar < 1.33 - Out-of-bounds Read via Crafted Input File
CVSS 3.3
CVE-2021-20216 HIGH
Privoxy < 3.0.31 - Denial of Service via Memory Leak on Decompression Failure
CVSS 7.5
CVE-2021-20215 HIGH
Privoxy < 3.0.29 - Denial of Service via Memory Leak in show-status CGI Handler
CVSS 7.5
CVE-2021-20214 HIGH
Privoxy < 3.0.29 - Denial of Service via Client-Tags CGI Handler Memory Leak
CVSS 7.5
CVE-2021-20212 HIGH
Privoxy < 3.0.29 - Denial of Service via Memory Leak in Filter Execution
CVSS 7.5
CVE-2021-20211 HIGH
Privoxy < 3.0.29 - Denial of Service via Memory Leak in Client Tag Handling
CVSS 7.5
CVE-2021-20210 HIGH
Privoxy < 3.0.29 - Memory Leak in show-status CGI Handler
CVSS 7.5
CVE-2021-20265 MEDIUM
Linux Kernel - Use-After-Free in unix_stream_recvmsg
CVSS 5.5
CVE-2021-21724 MEDIUM
ZTE ZXR10 8900E Firmware < 3.03.20r2b30p1 - Memory Leak via Optical Signal Attenuation
CVSS 4.4
CVE-2021-1387 HIGH
Cisco NX-OS - Denial of Service via IPv6 Packet Processing
CVSS 8.6
CVE-2021-1229 MEDIUM
Cisco NX-OS - Unauthenticated Denial of Service via ICMPv6 Packet Processing
CVSS 5.8
CVE-2021-22173 LOW
Wireshark 3.4.0-3.4.2 - Denial of Service via USB HID Dissector Memory Leak
CVSS 3.7
CVE-2021-1313 HIGH
Cisco IOS XR 5.0.0-5.2.6 - Unauthenticated Denial of Service via Ingress Packet Processing
CVSS 8.6
CVE-2021-21723 HIGH
ZTE ZXR10 9904/9908/9916/9904-S/9908-S Firmware < V1.01.10.B12 - Denial of Service via Memory Leak
CVSS 7.5
CVE-2021-1353 MEDIUM
Cisco StarOS < 21.22.0 - Unauthenticated Denial of Service via IPv4 Packet Processing Memory Leak
CVSS 5.8
Details
Vulnerabilities 1,759
Exploit Likelihood Medium