CWE-401

Medium likelihood

Missing Release of Memory after Effective Lifetime

Parent: CWE-772 - Missing Release of Resource after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

1,759 vulnerabilities with CWE-401
CVE-2020-22040 MEDIUM
FFmpeg 4.2 - Denial of Service via Memory Leak in v_frame_alloc
CVSS 6.5
CVE-2020-22039 MEDIUM
FFmpeg 4.2 - Denial of Service via Memory Leak in inavi_add_ientry
CVSS 6.5
CVE-2020-22038 MEDIUM
FFmpeg 4.2 - Denial of Service via Memory Leak in v4l2_m2m.c
CVSS 6.5
CVE-2020-22037 MEDIUM
FFmpeg 4.2 - Denial of Service via Memory Leak in avcodec_alloc_context3
CVSS 6.5
CVE-2020-25672 HIGH
Linux Kernel - Use-After-Free in llcp_sock_connect
CVSS 7.5
CVE-2020-20451 HIGH
FFmpeg 4.2 - Denial of Service via Resource Management Errors in cmdutils.c
CVSS 7.5
CVE-2020-21839 MEDIUM
GNU LibreDWG 0.10 - Memory Leak in dwg_decode_eed
CVSS 6.5
CVE-2020-11255 HIGH
Qualcomm APQ8009 Firmware - Denial of Service via RTCP Packet Processing
CVSS 7.5
CVE-2020-36312 MEDIUM
Linux Kernel < 5.8.10 - Memory Leak in KVM I/O Bus Device Unregistration
CVSS 5.5
CVE-2020-35502 HIGH
Privoxy < 3.0.29 - Denial of Service via Memory Leak in Response Buffer
CVSS 7.5
CVE-2020-25340 MEDIUM
nfstream 5.2.0 - Denial of Service via Memory Leak
CVSS 5.5
CVE-2020-35893 HIGH
simple-slab < 0.3.3 - Use-After-Free via remove() Off-by-One Error
CVSS 7.5
CVE-2020-9124 HIGH
Huawei CloudEngine 12800 5800 6800 7800 Firmware - Unauthenticated Memory Leak via Specific Message
CVSS 7.5
CVE-2020-35679 HIGH
OpenSMTPD < 6.8.0p1 - Memory Leak via Regex Lookup
CVSS 7.5
CVE-2020-27725 MEDIUM
BIG-IP DNS Memory Leak in Zone Listing
CVSS 4.3
CVE-2020-29485 MEDIUM
Xen 4.6-4.14.x - Denial of Service via XS_RESET_WATCHES Memory Leak
CVSS 5.5
CVE-2020-27038 MEDIUM
Android - Denial of Service via Memory Leak in C2SoftVorbisDec.cpp
CVSS 6.5
CVE-2020-0491 MEDIUM
Android 11 - Denial of Service in MatroskaExtractor
CVSS 6.5
CVE-2020-27713 HIGH
BIG-IP Advanced Firewall Manager 13.1.3.4 - Memory Leak in Traffic Management Microkernel
CVSS 7.5
CVE-2020-26420 LOW
Wireshark <3.4.0, 3.2.0-3.2.8 - DoS
CVSS 3.1
CVE-2020-26419 LOW
Wireshark 3.4.0 - Denial of Service via Memory Leak in Dissection Engine
CVSS 3.1
CVE-2020-26418 LOW
Wireshark <3.4.0, 3.2.0-3.2.8 - DoS
CVSS 3.1
CVE-2020-27755 LOW
ImageMagick < 6.9.10-69 - Memory Leak in SetImageExtent
CVSS 3.3
CVE-2020-27753 MEDIUM
ImageMagick < 6.9.10-69 - Memory Leak in MIFF Coder
CVSS 5.5
CVE-2020-27822 MEDIUM
Wildfly 19.0.0.Final-21.0.0.Final - Use-After-Free in OpenTracing Java-Interceptors
CVSS 5.9
Details
Vulnerabilities 1,759
Exploit Likelihood Medium