CWE-770

High likelihood

Allocation of Resources Without Limits or Throttling

Parent: CWE-400 - Uncontrolled Resource Consumption

The product allocates a reusable resource or group of resources on behalf of an actor without imposing any intended restrictions on the size or number of resources that can be allocated.

1,885 vulnerabilities with CWE-770
CVE-2019-5419 HIGH
Action View (Rails) <5.2.2.1-5.0.7.2 - DoS
CVSS 7.5
CVE-2019-9705 MEDIUM
Vixie Cron < 3.0pl1-133 - Denial of Service via Large Crontab File
CVSS 5.5
CVE-2019-1599 HIGH
Cisco NX-OS 9.2-9.2(2) - Unauthenticated Denial of Service via Crafted TCP Streams
CVSS 8.6
CVE-2019-9076 MEDIUM
GNU Binutils - Denial of Service via Excessive Memory Allocation in elf_read_notes
CVSS 5.5
CVE-2019-9073 MEDIUM
GNU Binutils - Denial of Service via Excessive Memory Allocation in BFD Library
CVSS 5.5
CVE-2019-9072 MEDIUM
GNU Binutils - Denial of Service via Excessive Memory Allocation in BFD Library
CVSS 5.5
CVE-2019-8955 HIGH
Tor < 0.3.3.12, 0.3.4.x < 0.3.4.11, 0.3.5.x < 0.3.5.8, 0.4.x < 0.4.0.2-alpha - Remote DoS via KIST Cell Scheduler
CVSS 7.5
CVE-2019-6975 HIGH
Django <1.11.19, <2.0.11, <2.1.6 - Memory Corruption
CVSS 7.5
CVE-2019-7704 MEDIUM
Binaryen 1.38.22 - Memory Corruption
CVSS 6.5
CVE-2019-7698 MEDIUM
Bento4 <1.5.1-627 - Memory Corruption
CVSS 6.5
CVE-2019-7582 HIGH
libming < 0.4.8 - Denial of Service via Crafted SWF File
CVSS 8.8
CVE-2019-7581 HIGH
libming < 0.4.8 - Denial of Service via Crafted SWF File
CVSS 8.8
CVE-2019-7148 MEDIUM
elfutils - Denial of Service via Crafted ELF Input in read_long_names
CVSS 6.5
CVE-2019-6988 MEDIUM
OpenJPEG 2.3.0 - Denial of Service via Excessive Memory Allocation in opj_calloc
CVSS 6.5
CVE-2019-6966 MEDIUM
Bento4 1.5.1-628 - Memory Corruption
CVSS 6.5
CVE-2019-6486 HIGH
GO < 1.10.8 - Resource Allocation Without Limits
CVSS 8.2
CVE-2019-1644 HIGH
Cisco IoT Field Network Director - Denial of Service via UDP Packet Flood
CVSS 7.5
CVE-2019-0010 HIGH
Junos OS SRX Series DoS via Crafted HTTP Traffic
CVSS 7.5
CVE-2019-0005 MEDIUM
Juniper Junos OS - IPv6 Firewall Filter Bypass via Extension Header Mismatch
CVSS 5.3
CVE-2018-25112 HIGH
PHOENIX CONTACT ILC 131, ILC 151, ILC 171, ILC 191 ETH - Unauthenticated Denial of Service via Network Traffic Flood
CVSS 7.5
CVE-2018-25108 HIGH
WAGO 750-8100 PFC100 <02.05.23(08) - DoS via Uncontrolled Resource Consumption
CVSS 7.5
CVE-2018-15472 HIGH
GitLab < 11.1.7, 11.2.x < 11.2.4, 11.3.x < 11.3.1 - Denial of Service via Rouge Diff Formatter
CVSS 7.5
CVE-2018-10790 HIGH
Bento4 1.5.1.0 - Denial of Service via AP4_CttsAtom Memory Allocation Failure
CVSS 7.5
CVE-2018-21035 HIGH
Qt < 5.14.1 - Denial of Service via WebSocket Frame and Message Size Limits
CVSS 7.5
CVE-2018-5743 HIGH
BIND <9.10.8-P1-9.11.6-9.12.0 - DoS
CVSS 7.5
Details
Vulnerabilities 1,885
Exploit Likelihood High