CWE-770

High likelihood

Allocation of Resources Without Limits or Throttling

Parent: CWE-400 - Uncontrolled Resource Consumption

The product allocates a reusable resource or group of resources on behalf of an actor without imposing any intended restrictions on the size or number of resources that can be allocated.

1,867 vulnerabilities with CWE-770
CVE-2024-44083 HIGH
Hex-Rays IDA Pro < 8.4 - Denial of Service via Malformed Section Jumps
CVSS 7.5
CVE-2024-43856 MEDIUM
Linux Kernel - Use-After-Free in dmam_free_coherent
CVSS 5.5
CVE-2024-6098 MEDIUM
PTC Kepware ThingWorx Kepware Server V6 - Denial of Service via ControlLogix Tag Generation
CVSS 5.3
CVE-2024-6004 MEDIUM
Lenovo Printers - Unauthenticated Denial of Service
CVSS 6.5
CVE-2024-5210 MEDIUM
Lenovo Printers - Unauthenticated Denial of Service
CVSS 6.5
CVE-2024-5209 MEDIUM
Lenovo Printers - Unauthenticated Denial of Service
CVSS 6.5
CVE-2024-4782 MEDIUM
Lenovo Printers - Unauthenticated Denial of Service
CVSS 6.5
CVE-2024-4781 MEDIUM
Lenovo Printers - Unauthenticated Denial of Service
CVSS 6.5
CVE-2024-41727 HIGH
F5 BIG-IP - Resource Exhaustion via Undisclosed Traffic
CVSS 7.5
CVE-2024-7113 HIGH
AVEVA SuiteLink Server - Denial of Service via Resource Exhaustion
CVE-2024-42258 MEDIUM
Linux Kernel - Denial of Service via Huge Page Alignment Issue
CVSS 5.5
CVE-2024-36462 HIGH
Uncontrolled Resource Consumption - DoS
CVSS 7.5
CVE-2024-42247 MEDIUM
Linux Kernel - Denial of Service via Unaligned Memory Access in WireGuard AllowedIPs
CVSS 5.5
CVE-2024-42242 MEDIUM
Linux Kernel 6.9-6.9.9 - Denial of Service via Incorrect MMC Segment Size Validation
CVSS 5.5
CVE-2024-42241 MEDIUM
Linux Kernel 5.17-6.6.40, 6.7-6.9.9, 6.10 - Denial of Service via PMD-sized Page Cache Handling
CVSS 5.5
CVE-2024-39944 HIGH
Dahuasecurity Nvr4104-4ks2/l Firmware - Improper Input Validation
CVSS 7.5
CVE-2024-42145 MEDIUM
Linux Kernel < 4.19.318, 4.20.0-6.9.9 - DoS via Unbounded UMAD Receive List
CVSS 5.5
CVE-2024-42082 MEDIUM
Linux Kernel < 4.18 - Denial of Service via Memory Allocation Failure in XDP Memory Registration
CVSS 5.5
CVE-2024-1975 HIGH
BIND 9.0.0-9.11.37, 9.16.0-9.16.50, 9.18.0-9.18.27, 9.19.0-9.19.24 - CPU Exhaustion via SIG(0)
CVSS 7.5
CVE-2024-1737 HIGH
BIND 9 DoS via RRSet Overload (9.11.0-9.11.37, 9.16.0-9.16.50, 9.18.0-9.18.27, 9.19.0-9.19.24)
CVSS 7.5
CVE-2024-0760 HIGH
BIND 9 9.18.1-9.18.27, 9.19.0-9.19.24, 9.18.11-S1-9.18.27-S1 - Denial of Service via DNS over TCP Flood
CVSS 7.5
CVE-2024-41132 MEDIUM
ImageSharp < 2.1.9 - Denial of Service via Gif Decoder
CVSS 5.3
CVE-2024-6504 MEDIUM
Rapid7 InsightVM Console <6.6.260 - DoS
CVSS 4.3
CVE-2024-41009 MEDIUM
Linux Kernel 5.8-6.9.7 - BPF Ring Buffer Resource Allocation Without Limits
CVSS 5.5
CVE-2024-21174 LOW
Oracle Database Server 19.3-19.23, 21.3-21.14, 23.4 - Partial Denial of Service in Java VM
CVSS 3.1
Details
Vulnerabilities 1,867
Exploit Likelihood High