CWE-401

Medium likelihood

Missing Release of Memory after Effective Lifetime

Parent: CWE-772 - Missing Release of Resource after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

1,772 vulnerabilities with CWE-401
CVE-2019-19047 MEDIUM
Linux Kernel < 5.3.11 - Denial of Service via Memory Leak in mlx5_fw_fatal_reporter_dump
CVSS 5.5
CVE-2019-19046 MEDIUM
Linux kernel <5.3.11 - Memory Corruption
CVSS 6.5
CVE-2019-19045 MEDIUM
Linux Kernel <5.3.11 - Memory Corruption
CVSS 4.4
CVE-2019-19044 HIGH
Linux Kernel < 5.3.11 - Denial of Service via v3d_submit_cl_ioctl Memory Leak
CVSS 7.5
CVE-2019-19043 MEDIUM
Linux Kernel < 5.3.11 - Memory Leak in i40e_setup_macvlans
CVSS 5.5
CVE-2019-14818 HIGH
DPDK 16.04-16.11.9, 17.0.0-17.11.7, 18.0.0-18.11.3, 19.0.0-19.08.0 - Use-After-Free via VRING_SET_NUM Messages
CVSS 7.5
CVE-2019-5293 MEDIUM
Huawei AR/NetEngine16EX Firmware Memory Leak via Message Handling
CVSS 6.5
CVE-2019-18813 HIGH
Linux Kernel < 4.19.84 - Memory Leak in dwc3_pci_probe
CVSS 7.5
CVE-2019-18812 HIGH
Linux Kernel 5.3-5.3.9 - Memory Leak in sof_dfsentry_write()
CVSS 7.5
CVE-2019-18811 MEDIUM
Linux Kernel <5.3.9 - Memory Corruption
CVSS 5.5
CVE-2019-18810 HIGH
Linux Kernel 5.3-5.3.7 - Denial of Service via komeda_wb_connector_add Memory Leak
CVSS 7.5
CVE-2019-18809 MEDIUM
Linux Kernel < 5.3.9 - Use-After-Free in af9005_identify_state
CVSS 4.6
CVE-2019-18808 MEDIUM
Linux Kernel < 5.3.9 - Memory Leak in ccp_run_sha_cmd
CVSS 5.5
CVE-2019-18807 HIGH
Linux Kernel < 5.3.5 - Denial of Service via Memory Leak in sja1105_static_config_upload
CVSS 7.5
CVE-2019-18806 MEDIUM
Linux Kernel < 5.3.5 - Denial of Service via Memory Leak in qla3xxx Driver
CVSS 5.5
CVE-2019-5023 MEDIUM
PaX <4.9.24-test7 - Memory Corruption
CVSS 5.9
CVE-2019-0059 HIGH
Juniper Junos OS 18.1 < 18.1R2-S4, 18.1 < 18.1R3-S1, 18.1X75 - Denial of Service via BGP State Processing
CVSS 7.5
CVE-2019-17371 MEDIUM
gif2png 2.5.13 - Memory Leak in writefile Function
CVSS 6.5
CVE-2019-17340 HIGH
Xen 3.2.0-4.11.1 - Denial of Service or Privilege Escalation via Grant-Table Transfer Request Mishandling
CVSS 8.8
CVE-2019-17178 HIGH
FreeRDP < 1.0.2 - Memory Leak in HuffmanTree_makeFromFrequencies
CVSS 7.5
CVE-2019-17177 HIGH
FreeRDP < 1.0.2 - Use-After-Free in region.c
CVSS 7.5
CVE-2019-16995 HIGH
Linux Kernel 3.17-5.0.2 - Use-After-Free in HSR Device Finalization
CVSS 7.5
CVE-2019-16994 MEDIUM
Linux Kernel < 5.0 - Denial of Service via Memory Leak in sit_init_net()
CVSS 4.7
CVE-2019-4141 MEDIUM
IBM WebSphere MQ DoS via Memory Leak in Clustering Code
CVSS 6.5
CVE-2019-16713 MEDIUM
ImageMagick 7.0.8-43 - Memory Corruption
CVSS 6.5
Details
Vulnerabilities 1,772
Exploit Likelihood Medium