CWE-459

Incomplete Cleanup

Parent: CWE-404 - Improper Resource Shutdown or Release

The product does not properly "clean up" and remove temporary or supporting resources after they have been used.

189 vulnerabilities with CWE-459
CVE-2022-0171 MEDIUM
Linux Kernel < 5.18 - Denial of Service via KVM SEV API
CVSS 5.5
CVE-2022-37428 MEDIUM
PowerDNS Recursor <= 4.5.9, 4.6.2, 4.7.1 - Denial of Service via Protobuf Logging
CVSS 6.5
CVE-2022-26074 MEDIUM
Intel(R) SPS <SPS_E3_04.08.04.330.0-SPS_E3_04.01.04.530.0 - DoS
CVSS 4.4
CVE-2022-2307 LOW
GitLab CE/EE <15.0.5-15.2.1 - Info Disclosure
CVSS 3.5
CVE-2022-21166 MEDIUM
Xen < 1.14.100.3 - Information Disclosure
CVSS 5.5
CVE-2022-21127 MEDIUM
Xen < 1.14.100.3 - Information Disclosure
CVSS 5.5
CVE-2022-21125 MEDIUM
Xen - Incomplete Cleanup of Microarchitectural Fill Buffers
CVSS 5.5
CVE-2022-21123 MEDIUM
Xen - Incomplete Cleanup Information Disclosure
CVSS 5.5
CVE-2022-29160 LOW
Nextcloud Android <3.19.0 - Info Disclosure
CVSS 2.8
CVE-2022-1473 HIGH
OpenSSL 3.0.0-3.0.2 - Denial of Service via OPENSSL_LH_flush Memory Leak
CVSS 7.5
CVE-2022-0646 HIGH
Linux Kernel <5.17-rc5 - Use After Free
CVSS 7.8
CVE-2022-23035 MEDIUM
Xen >=4.6.0 - Use-After-Free in Passed-Through Device IRQ Cleanup
CVSS 4.6
CVE-2021-47365 MEDIUM
Linux Kernel 5.13-5.14.9 - Memory Leak in AFS Writeback Page Handling
CVSS 5.5
CVE-2021-47178 MEDIUM
Linux Kernel 5.11-5.12.9 - Incomplete Cleanup in SCSI Target Core
CVSS 5.5
CVE-2021-47143 MEDIUM
Linux Kernel - Use-After-Free in SMC Device List Handling
CVSS 5.5
CVE-2021-47110 HIGH
Linux Kernel < 5.4.125 - Incomplete Cleanup in KVM Clock Shutdown
CVSS 7.1
CVE-2021-46766 LOW
AMD EPYC 9004 Series Firmware < genoaPI_1.0.0.4 - Incomplete Cleanup of Secret Keys in ASP Bootloader
CVSS 2.5
CVE-2021-36205 HIGH
Metasys Application and Data Server 10.0-10.1.5 - Incomplete Session Token Cleanup on Logout
CVSS 8.1
CVE-2021-4002 MEDIUM
Linux Kernel < 5.16 - Use-After-Free in hugetlbfs Memory Mapping
CVSS 4.4
CVE-2021-45330 CRITICAL
Gitea <1.15.7 - Privilege Escalation
CVSS 9.8
CVE-2021-4032 MEDIUM
Linux Kernel < 5.15 rc7 - Denial of Service in KVM VCPU Construction
CVSS 4.4
CVE-2021-45706 CRITICAL
zeroize_derive <1.1.1 - Memory Corruption
CVSS 9.8
CVE-2021-37092 HIGH
Huawei Smartphone - Memory Corruption
CVSS 7.5
CVE-2021-37089 HIGH
HarmonyOS < 2.0 - Incomplete Cleanup
CVSS 7.5
CVE-2021-37080 HIGH
Huawei Smartphone - Memory Corruption
CVSS 7.5
Details
Vulnerabilities 189