CWE-404

Medium likelihood

Improper Resource Shutdown or Release

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not release or incorrectly releases a resource before it is made available for re-use.

723 vulnerabilities with CWE-404
CVE-2017-6627 HIGH KEV
Cisco IOS 15.1-15.2, 15.4 and IOS XE 3.14-3.18 - Unauthenticated Denial of Service via UDP Port 0 Packets
CVSS 7.5
CVE-2017-0733 MEDIUM
Android 5.0.2 5.1.1 6.0 6.0.1 7.0 7.1.1 7.1.2 - Denial of Service in Media Framework
CVSS 5.5
CVE-2017-1000369 MEDIUM
Exim <= 4.89 - Use-After-Free via Multiple -p Command Line Arguments
CVSS 4.0
CVE-2017-9059 MEDIUM
Linux Kernel < 4.11.1 - Denial of Service via NFSv4 Channel Callback Shutdown
CVSS 5.5
CVE-2017-8925 MEDIUM
Linux Kernel < 4.10.4 - Denial of Service via Omninet Driver Reference Count Mishandling
CVSS 5.5
CVE-2017-7472 MEDIUM
Linux kernel < 4.10.13 - Denial of Service via KEY_REQKEY_DEFL_THREAD_KEYRING Keyctl Calls
CVSS 5.5
CVE-2017-8071 MEDIUM
Linux Kernel 4.9.x < 4.9.9 - Denial of Service via HID cp2112 Driver Spinlock Deadlock
CVSS 5.5
CVE-2017-5650 HIGH
Apache Tomcat 8.5.0-8.5.12 and 9.0.0.M1-9.0.0.M18 - Denial of Service via HTTP/2 GOAWAY Frame Handling
CVSS 7.5
CVE-2017-1145 HIGH
IBM WebSphere MQ 8.0.0.6 - Denial of Service via Channel Agent Resource Exhaustion
CVSS 8.6
CVE-2016-15024 LOW
doomsider_shadow < 2016-06-09 - Denial of Service
CVSS 2.5
CVE-2016-10363 HIGH
Logstash < 2.3.3 - Denial of Service via Netflow Codec Plugin
CVSS 7.5
CVE-2016-8212 HIGH
EMC RSA BSAFE Crypto-J <6.2.2 - Improper OCSP Validation
CVSS 7.5
CVE-2015-10085 LOW
GoPistolet - Denial of Service in MTA
CVSS 3.5
CVE-2015-10025 LOW
miniconf < 1.7.6 - Denial of Service in URL Scanning Component
CVSS 3.5
CVE-2015-10002 MEDIUM
Kiddoware Kids Place - Denial of Service via Home Button Protection
CVSS 5.3
CVE-2015-3415
SQLite <3.8.9 - DoS
CVE-2014-125066 MEDIUM
yuko-bot < 11-13-2014 - Denial of Service via Title Argument Manipulation
CVSS 4.3
CVE-2013-1055 MEDIUM
unity-firefox-extension < 3.0.0+14.04.20140416-0ubuntu1.14.04.1 - Use-After-Free via Launcher Action Callback
CVSS 4.3
CVE-2013-1054 MEDIUM
unity-firefox-extension < 3.0.0+14.04.20140416-0ubuntu1.14.04.1 - Denial of Service via Event Loop Spin
CVSS 4.3
CVE-2013-4133 HIGH
kde-workspace < 4.10.5 - Memory Leak in Plasma Desktop
CVSS 7.5
CVE-2012-2805 HIGH
FFmpeg 0.10 - Denial of Service
CVSS 7.5
CVE-2010-10001 MEDIUM
Shemes GrabIt < 1.7.2 - Denial of Service via NZB Date Parser
CVSS 5.3
CVE-2010-4038 HIGH
Chrome < 7.0.517.41 - Denial of Service via Web Sockets Shutdown
CVSS 7.5
Details
Vulnerabilities 723
Exploit Likelihood Medium