CWE-772

High likelihood

Missing Release of Resource after Effective Lifetime

Parent: CWE-404 - Improper Resource Shutdown or Release

The product does not release a resource after its effective lifetime has ended, i.e., after the resource is no longer needed.

453 vulnerabilities with CWE-772
CVE-2015-8568 MEDIUM
QEMU < 2.5.1 - Denial of Service via VMXNET3 NIC Emulator Memory Leak
CVSS 6.5
CVE-2015-8631 MEDIUM
MIT Kerberos 5 < 1.13.4 and 1.14.x < 1.14.1 - Authenticated Denial of Service via NULL Principal Name Request
CVSS 6.5
CVE-2015-6704
Adobe Acrobat and Reader Information Disclosure via Animations Property
CVE-2015-6703
Adobe Acrobat and Reader Information Disclosure via loadFlashMovie Function
CVE-2015-6702
Adobe Acrobat and Reader Information Disclosure via createSquareMesh Function
CVE-2015-6701
Adobe Acrobat and Reader Information Disclosure via ambientIlluminationColor Property
CVE-2015-6700
Adobe Acrobat and Reader Information Disclosure via setBackground Function
CVE-2015-6699
Adobe Acrobat and Reader Information Disclosure via addForegroundSprite Function
CVE-2015-6697
Adobe Acrobat and Reader Information Disclosure via Color Object Memory Leak
CVE-2013-6707
Cisco Adaptive Security Appliance Software < 9.1(3) - Denial of Service via Management Session Requests
CVE-2011-2498 MEDIUM
Linux Kernel 2.3.36-2.6.39 - Denial of Service via PTE Page Creation
CVSS 5.5
CVE-2011-4661 HIGH
Cisco IOS < 15.2(1)T - Memory Leak in HTTP PROXY Server Process
CVSS 7.5
CVE-2011-1490 MEDIUM
rsyslog < 5.7.6 - Denial of Service via Memory Leak in Ruleset Processing
CVSS 5.5
CVE-2011-1489 MEDIUM
rsyslog < 5.7.6 - Denial of Service via Memory Leak in Multi-Ruleset Log Processing
CVSS 5.5
CVE-2011-1488 MEDIUM
rsyslog < 5.7.6 - Denial of Service via Repeated Message Reduction Memory Leak
CVSS 5.5
CVE-2010-4657 HIGH
PHP < 5.4.4 - Memory Leak via xmlTextWriterWriteAttribute
CVSS 7.5
CVE-2010-5321 MEDIUM
Linux kernel <4.x - Memory Corruption
CVSS 4.3
CVE-2010-4683
Cisco IOS < 15.0(1)XA5 - Denial of Service via SIP REGISTER Message
CVE-2009-5039
Cisco IOS < 15.0(1)XA - Denial of Service via H.323 Call Memory Leak
CVE-2009-3519
OpenSolaris < snv_109 and Solaris 8-10 - Denial of Service via IP Module Memory Leak
CVE-2009-2903
Linux Kernel 2.4.0-2.4.37.6 and 2.6.x through 2.6.31 - Denial of Service via IP-DDP Datagram Memory Leak
CVE-2008-3799
Cisco IOS <12.5 - Memory Corruption
CVE-2008-2122 HIGH
IBM Rational Build Forge 7.0.2 - Denial of Service via Port Scan
CVSS 7.5
CVE-2007-4103 HIGH
Asterisk Open <1.2.23, 1.4.x <1.4.9 - DoS
CVSS 7.5
CVE-2007-0897 HIGH
ClamAV < 0.90 - Denial of Service via CAB Archive Header Parsing
CVSS 7.5
Details
Vulnerabilities 453
Exploit Likelihood High