CWE-404

Medium likelihood

Improper Resource Shutdown or Release

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not release or incorrectly releases a resource before it is made available for re-use.

723 vulnerabilities with CWE-404
CVE-2022-3606 LOW
Linux Kernel < 6.2 - Null Pointer Dereference in BPF find_prog_by_sec_insn
CVSS 3.5
CVE-2022-3594 MEDIUM
Linux Kernel < 6.1 - Denial of Service via BPF Intr Callback Excessive Logging
CVSS 5.3
CVE-2022-3563 LOW
Linux Kernel - Null Pointer Dereference
CVSS 3.5
CVE-2022-3553 LOW
X.org Server - Denial of Service in xquartz X11Controller
CVSS 3.5
CVE-2022-3551 LOW
X.org Server < 21.1.6 - Use-After-Free in ProcXkbGetKbdByName
CVSS 3.5
CVE-2022-3544 LOW
Linux Kernel < 6.0 - Memory Leak in Netfilter damon_sysfs_add_target
CVSS 3.5
CVE-2022-3543 LOW
Linux Kernel < 6.1 - Memory Leak in unix_sock_destructor/unix_release_sock
CVSS 3.5
CVE-2022-3533 LOW
Linux Kernel < 6.2 - Memory Leak in BPF USDT Argument Parsing
CVSS 3.5
CVE-2022-3526 MEDIUM
Linux Kernel 5.13-5.15.35 - Memory Leak in macvlan_handle_frame
CVSS 5.3
CVE-2022-3524 MEDIUM
Linux Kernel < 2.6.12 - Memory Leak in IPv6 Handler
CVSS 4.3
CVE-2022-28887 MEDIUM
F-Secure Elements Endpoint Detection and Response - Denial of Service via aerdl.dll Unpacker Handler
CVSS 4.3
CVE-2022-33747 LOW
Xen - Unbounded Memory Consumption via P2M Mapping Manipulation
CVSS 3.8
CVE-2022-33746 MEDIUM
Xen 4.13.0-4.16.0 - Denial of Service via P2M Pool Freeing
CVSS 6.5
CVE-2022-32589 HIGH
Yocto - Remote Denial of Service via Wi-Fi Driver Resource Release
CVSS 7.5
CVE-2022-40890 HIGH
open5gs < 2.4.10 - Denial of Service in AMF Context Handler
CVSS 7.5
CVE-2022-3354 LOW
open5gs < 2.4.10 - Denial of Service in UDP Packet Handler
CVSS 3.5
CVE-2022-3299 MEDIUM
Open5GS 2.4.0-2.4.10 - Denial of Service in AMF SBI Client
CVSS 4.3
CVE-2022-35191 MEDIUM
D-Link DSL-3782 Firmware 1.01 - Unauthenticated Denial of Service via Crafted HTTP Connection Request
CVSS 6.5
CVE-2022-37133 HIGH
D-Link DIR-816 A2_v1.10CNB04 - Unauthenticated Denial of Service via doReboot Endpoint
CVSS 7.5
CVE-2022-2776 MEDIUM
Gym Management System - Denial of Service via delete_user Parameter
CVSS 5.4
CVE-2022-35272 HIGH
BIG-IP 16.1.0-16.1.3.1 and 17.0.0 - Denial of Service via MRF Virtual Server Source-Port Preserve-Strict Configuration
CVSS 7.5
CVE-2022-35240 HIGH
BIG-IP 14.1.0-14.1.4 - Memory Resource Exhaustion via MQTT Profile
CVSS 7.5
CVE-2022-31182 MEDIUM
Discourse < 2.8.7 - Denial of Service via Malicious Static Asset Request
CVSS 5.3
CVE-2022-2591 HIGH
TEM FLEX-1085 1.6.0 - Denial of Service via /sistema/flash/reboot
CVSS 7.5
CVE-2022-2191 HIGH
Eclipse Jetty <11.0.9 - Memory Corruption
CVSS 7.5
Details
Vulnerabilities 723
Exploit Likelihood Medium