CWE-404

Medium likelihood

Improper Resource Shutdown or Release

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not release or incorrectly releases a resource before it is made available for re-use.

723 vulnerabilities with CWE-404
CVE-2021-40833 MEDIUM
F-Secure Atlant - Denial of Service via UPX File Unpacking
CVSS 5.5
CVE-2021-43611 HIGH
Belle-sip < 5.0.20 - Denial of Service via From Header Display Name
CVSS 7.5
CVE-2021-40122 MEDIUM
Cisco Meeting Server < 3.1 - Unauthenticated Denial of Service via Call Bridge API
CVSS 5.9
CVE-2021-38623 HIGH
deferred_image_processing < 1.0.2 - Denial of Service via FAL API Disk Consumption
CVSS 7.5
CVE-2021-1093 MEDIUM
NVIDIA GPU Display Driver - Use After Free
CVSS 6.2
CVE-2021-1098 HIGH
NVIDIA vGPU <12.3-11.5-8.8 - Info Disclosure/DoS
CVSS 7.8
CVE-2021-21003 MEDIUM
Phoenix Contact FL SWITCH SMCS - DoS
CVSS 5.3
CVE-2021-29962 MEDIUM
Firefox for Android < 89.0 - Denial of Service via Excessive Popup Handling
CVSS 4.3
CVE-2021-1077 MEDIUM
NVIDIA GPU Display Driver - Memory Corruption
CVSS 6.6
CVE-2021-27458 HIGH
JTEKT Corporation TOYOPUC - Path Traversal
CVSS 7.5
CVE-2021-26906 MEDIUM
Asterisk 13.0.0-13.38.1, 14.x-16.16.0, 17.x-17.9.1, 18.x-18.2.0 DoS via SDP Negotiation
CVSS 5.9
CVE-2020-28874 HIGH
ProjectSend < r1295 - Unauthenticated Password Reset via Invalid Token Handling
CVSS 7.5
CVE-2020-27283 MEDIUM
Crimson <3119.001 - Info Disclosure
CVSS 5.3
CVE-2020-24360 HIGH
Arista EOS <4.24.2.4F, <4.23.4M, <4.22.6M - Kernel Crash
CVSS 7.4
CVE-2020-0467 MEDIUM
Android - Local Information Disclosure via Vpn.java Logic Issue
CVSS 5.5
CVE-2020-26411 MEDIUM
Gitlab <13.4.7, <13.5.5, <13.6.2 - DoS
CVSS 4.3
CVE-2020-26070 HIGH
Cisco IOS XR < 6.7.2 - Unauthenticated Denial of Service via Ingress Packet Processing
CVSS 8.6
CVE-2020-28327 MEDIUM
Certified Asterisk < 16.8-cert5 - Denial of Service via SIP Dialog Race Condition
CVSS 5.3
CVE-2020-3555 MEDIUM
Cisco Adaptive Security Appliance and Firepower Threat Defense - Denial of Service via SIP Traffic
CVSS 6.8
CVE-2020-4756 MEDIUM
IBM Spectrum Scale 4.2.0.0-4.2.3.23 & 5.0.0.0-5.0.5.2 / ESS 6.0.0.0-6.0.1.0 - DoS via Invalid Ioctl
CVSS 5.5
CVE-2020-0414 MEDIUM
Android 10-11 - Remote Information Disclosure via AudioFlinger RecordThread
CVSS 6.5
CVE-2020-16233 HIGH
CodeMeter < 7.10 - Heap Data Exposure via Crafted Packet
CVSS 7.5
CVE-2020-16100 HIGH
Gallagher Command Centre < 8.00.1228, 8.10 < 8.10.1211, 8.20 < 8.20.1166 - DoS via DCOM WebSocket
CVSS 7.5
CVE-2020-3644 MEDIUM
Qualcomm Snapdragon - Information Disclosure via Secure Touch Session Handling
CVSS 5.5
CVE-2020-3643 MEDIUM
Partial secure display-touch session tear-down - Info Disclosure
CVSS 5.5
Details
Vulnerabilities 723
Exploit Likelihood Medium