CWE-770

High likelihood

Allocation of Resources Without Limits or Throttling

Parent: CWE-400 - Uncontrolled Resource Consumption

The product allocates a reusable resource or group of resources on behalf of an actor without imposing any intended restrictions on the size or number of resources that can be allocated.

1,881 vulnerabilities with CWE-770
CVE-2023-22403 HIGH
Juniper Junos OS QFX10K < 20.2R3-S7/20.4R3-S4/21.1R3-S3/21.2R3-S1/21.3R3/21.4R3/22.1R2 DoS via ICCP
CVSS 7.5
CVE-2023-22397 MEDIUM
Juniper Networks Junos OS Evolved PTX10003 - Memory Corruption
CVSS 6.1
CVE-2022-50799 HIGH
Fetch Softworks Fetch FTP Client 5.8.2 - Denial of Service via Long FTP Server Response
CVSS 7.5
CVE-2022-50695 HIGH
SOUND4 IMPACT/FIRST/PULSE/Eco 2.x - DoS
CVSS 7.5
CVE-2022-22491 MEDIUM
IBM App Connect Enterprise Certified Container - DoS
CVSS 5.5
CVE-2022-49035 MEDIUM
Linux Kernel - Allocation of Resources Without Limits or Throttling in s5p_cec Message Length Handling
CVSS 5.5
CVE-2022-28656 MEDIUM
Apport < 2.21.0 - Denial of Service via RAM Consumption in is_closing_session()
CVSS 5.5
CVE-2022-28655 HIGH
Ubuntu Apport is_closing_session - Arbitrary TCP D-Bus Connections
CVSS 7.1
CVE-2022-28654 MEDIUM
is_closing_session() - Info Disclosure
CVSS 5.5
CVE-2022-34357 MEDIUM
Netapp Oncommand Insight < 11.1.7 - Resource Allocation Without Limits
CVSS 6.5
CVE-2022-47562 HIGH
Ormazabal ekorCCP and ekorRCI Firmware - Denial of Service via RCPbind Service
CVSS 7.5
CVE-2022-48064 MEDIUM
GNU Binutils < 2.40 - Denial of Service via bfd_dwarf2_find_nearest_line_with_alt
CVSS 5.5
CVE-2022-46485 HIGH
Data Illusion Survey Software Solutions ngSurvey <2.4.28 - DoS
CVSS 7.5
CVE-2022-48498 HIGH
Huawei EMUI - Denial of Service via Secure OS Module Configuration Defects
CVSS 7.5
CVE-2022-48441 MEDIUM
Android - Missing Authorization in Dialer Service
CVSS 5.5
CVE-2022-48440 MEDIUM
Android - Missing Authorization in Dialer Service
CVSS 5.5
CVE-2022-43768 HIGH
SIMATIC CP 1242-7 V2 < V3.4.29 - Denial of Service via Webserver
CVSS 7.5
CVE-2022-48357 HIGH
Huawei EMUI and HarmonyOS - Denial of Service via Double Fetch Vulnerability
CVSS 7.5
CVE-2022-46416 CRITICAL
Parrot Bebop 4.7.1 - Denial of Service via DHCP IP Address Pool Exhaustion
CVSS 9.1
CVE-2022-42334 MEDIUM
xen 4.11.0-4.16.x - Unbounded Resource Allocation in HVM Pinned Cache Attributes
CVSS 6.5
CVE-2022-42333 HIGH
Xen 4.11.0-4.16.x - Denial of Service via HVM Pinned Cache Attributes
CVSS 8.6
CVE-2022-41727 MEDIUM
Go TIFF Decoder - Denial of Service via Malformed Image
CVSS 5.5
CVE-2022-41725 HIGH
Go net/http/mime - DoS
CVSS 7.5
CVE-2022-31394 HIGH
hyper < 0.14.19 - Denial of Service via HTTP/2 Header List Size Limit
CVSS 7.5
CVE-2022-20494 MEDIUM
Android - Denial of Service via AutomaticZenRule Resource Exhaustion
CVSS 5.5
Details
Vulnerabilities 1,881
Exploit Likelihood High