CWE-401 · 1 845 записей
Missing Release of Memory after Effective Lifetime
CVE этого класса
1 847 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
49В плане | CVE-2020-13934Эксплойта нет | An h2c direct connection to Apache Tomcat 10.0.0-M1 to 10.0.0-M6, 9.0.0.M5 to 9.0.36 and 8.5.1 to 8.5.56 did not release the HTTP/1.1 procesapache · tomcat · CWE-401 | Высокая7,5 | — | 64,1 % | 14 июл. 2020 г. |
49В плане | CVE-2016-6304Эксплойта нет | Multiple memory leaks in t1_lib.c in OpenSSL before 1.0.1u, 1.0.2 before 1.0.2i, and 1.1.0 before 1.1.0a allow remote attackers to cause a dopenssl · openssl · CWE-401 | Высокая7,5 | — | 63,0 % | 26 сент. 2016 г. |
43В плане | CVE-2023-26083Готовый эксплойт | Memory leak vulnerability in Mali GPU Kernel Driver in Midgard GPU Kernel Driver all versions from r6p0 - r32p0, Bifrost GPU Kernel Driver aarm · 5th gen gpu architecture kernel driver · CWE-401 | Низкая3,3 | KEV | 1,2 % | 6 апр. 2023 г. |
41В плане | CVE-2016-4232Proof of concept | Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X and before 11.2.202.632 on Linux allows attadobe · flash player desktop runtime · CWE-401 | Высокая7,5 | — | 36,5 % | 12 июл. 2016 г. |
39Наблюдать | CVE-2019-12265Эксплойта нет | Wind River VxWorks 6.5, 6.6, 6.7, 6.8, 6.9.3 and 6.9.4 has a Memory Leak in the IGMPv3 client component.windriver · vxworks · CWE-401 | Средняя5,3 | — | 59,8 % | 9 авг. 2019 г. |
39Наблюдать | CVE-2026-46289Эксплойта нет | lib/scatterlist: fix length calculations in extract_kvec_to_sglinux · linux kernel · CWE-401 | Критическая9,8 | — | 0,7 % | 8 июн. 2026 г. |
36Наблюдать | CVE-2019-6128Эксплойта нет | The TIFFFdOpen function in tif_unix.c in LibTIFF 4.0.10 has a memory leak, as demonstrated by pal2rgb.libtiff · libtiff · CWE-401 | Высокая8,8 | — | 3,9 % | 11 янв. 2019 г. |
36Наблюдать | CVE-2021-40633Эксплойта нет | A memory leak (out-of-memory) in gif2rgb in util/gif2rgb.c in giflib 5.1.4 allows remote attackers trigger an out of memory exception or dengiflib project · giflib · CWE-401 | Высокая8,8 | — | 1,7 % | 14 июн. 2022 г. |
36Наблюдать | CVE-2026-87078Эксплойта нет | Net::IDN::Punycode versions from 2.302 before 2.590 for Perl leak the output buffer on every rejected label in decode_punycodeCWE-401 | Критическая9,1 | — | 0,7 % | 22 сент. 2026 г. |
35Наблюдать | CVE-2023-33718Эксплойта нет | mp4v2 v2.1.3 was discovered to contain a memory leak via MP4File::ReadString() at mp4file_io.cppmp4v2 project · mp4v2 · CWE-401 | Высокая8,8 | — | 0,7 % | 31 мая 2023 г. |
35Наблюдать | CVE-2024-25450Эксплойта нет | imlib2 v1.9.1 was discovered to mishandle memory allocation in the function init_imlib_fonts().enlightenment · imlib2 · CWE-401 | Высокая8,8 | — | 0,7 % | 9 февр. 2024 г. |
35Наблюдать | CVE-2019-17340Эксплойта нет | An issue was discovered in Xen through 4.11.x allowing x86 guest OS users to cause a denial of service or gain privileges because grant-tablxen · xen · CWE-401 | Высокая8,8 | — | 0,4 % | 7 окт. 2019 г. |
34Наблюдать | CVE-2021-1387Эксплойта нет | Cisco NX-OS Software IPv6 Netstack Denial of Service Vulnerabilitycisco · unified computing system · CWE-401 | Высокая8,6 | — | 1,4 % | 24 февр. 2021 г. |
34Наблюдать | CVE-2021-1353Эксплойта нет | Cisco StarOS IPv4 Denial of Service Vulnerabilitycisco · staros · CWE-401 | Высокая8,6 | — | 1,3 % | 20 янв. 2021 г. |
34Наблюдать | CVE-2023-38380Эксплойта нет | A vulnerability has been identified in SIMATIC CP 1242-7 V2 (incl.siemens · 6gk7243-8rx30-0xe0 firmware · CWE-401 | Высокая8,7 | — | 1,0 % | 12 дек. 2023 г. |
34Наблюдать | CVE-2026-48059Эксплойта нет | Netty HAProxy: Unbalanced Reference Count in Nested PP2_TYPE_SSL TLV Parsing Leads to Memory Exhaustionnetty · netty · CWE-401 | Высокая8,7 | — | 0,9 % | 12 июн. 2026 г. |
34Наблюдать | CVE-2026-48006Эксплойта нет | Netty's Lack of Lifecycle Cleanup Leads to Pooled ByteBuf Leak in RedisArrayAggregatornetty · netty · CWE-401 | Высокая8,7 | — | 0,8 % | 12 июн. 2026 г. |
34Наблюдать | CVE-2025-20133Эксплойта нет | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Authentication Targeted Denial of Service Vucisco · cisco adaptive security appliance (asa) software · CWE-401 | Высокая8,6 | — | 0,8 % | 14 авг. 2025 г. |
34Наблюдать | CVE-2026-93436Эксплойта нет | vLLM through 0.29.0 Memory Exhaustion via Rejected Requestsvllm · vllm · CWE-401 | Высокая8,7 | — | 0,8 % | 17 сент. 2026 г. |
34Наблюдать | CVE-2026-50254Эксплойта нет | OFFIS DCMTK Toolkit Missing Release of Memory after Effective Lifetimeoffis dicom · dcmtk toolkit · CWE-401 | Высокая8,7 | — | 0,6 % | 30 июн. 2026 г. |
34Наблюдать | CVE-2026-35505Эксплойта нет | OFFIS DCMTK Toolkit Missing Release of Memory after Effective Lifetimeoffis dicom · dcmtk toolkit · CWE-401 | Высокая8,7 | — | 0,6 % | 30 июн. 2026 г. |
34Наблюдать | CVE-2026-44660Эксплойта нет | UltraJSON: Memory Leak in ujson.dump() on Write Failureultrajson project · ultrajson · CWE-401 | Высокая8,7 | — | 0,6 % | 27 мая 2026 г. |
34Наблюдать | CVE-2026-94627Эксплойта нет | vLLM through 0.29.0 GPU KV Cache Leak via Mooncake Transfer ID Collisionvllm · vllm · CWE-401 | Высокая8,7 | — | 0,6 % | 21 сент. 2026 г. |
34Наблюдать | CVE-2025-20239Эксплойта нет | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Software, Secure Firewall Adaptive Secucisco · ios · CWE-401 | Высокая8,6 | — | 0,6 % | 14 авг. 2025 г. |
34Наблюдать | CVE-2025-21599Эксплойта нет | Junos OS Evolved: Receipt of specifically malformed IPv6 packets causes kernel memory exhaustion leading to Denial of Servicejuniper · junos os evolved · CWE-401 | Высокая8,7 | — | 0,6 % | 9 янв. 2025 г. |
- CVE-2020-1393449В плане
An h2c direct connection to Apache Tomcat 10.0.0-M1 to 10.0.0-M6, 9.0.0.M5 to 9.0.36 and 8.5.1 to 8.5.56 did not release the HTTP/1.1 proces
ВысокаяCVSS 7,5Эксплойта нетEPSS 64 %apache · tomcat14 июл. 2020 г.
- CVE-2016-630449В плане
Multiple memory leaks in t1_lib.c in OpenSSL before 1.0.1u, 1.0.2 before 1.0.2i, and 1.1.0 before 1.1.0a allow remote attackers to cause a d
ВысокаяCVSS 7,5Эксплойта нетEPSS 63 %openssl · openssl26 сент. 2016 г.
- CVE-2023-2608343В плане
Memory leak vulnerability in Mali GPU Kernel Driver in Midgard GPU Kernel Driver all versions from r6p0 - r32p0, Bifrost GPU Kernel Driver a
НизкаяCVSS 3,3KEVГотовый эксплойтEPSS 1 %arm · 5th gen gpu architecture kernel driver6 апр. 2023 г.
- CVE-2016-423241В плане
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X and before 11.2.202.632 on Linux allows att
ВысокаяCVSS 7,5Proof of conceptEPSS 36 %adobe · flash player desktop runtime12 июл. 2016 г.
- CVE-2019-1226539Наблюдать
Wind River VxWorks 6.5, 6.6, 6.7, 6.8, 6.9.3 and 6.9.4 has a Memory Leak in the IGMPv3 client component.
СредняяCVSS 5,3Эксплойта нетEPSS 60 %windriver · vxworks9 авг. 2019 г.
- CVE-2026-4628939Наблюдать
lib/scatterlist: fix length calculations in extract_kvec_to_sg
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %linux · linux kernel8 июн. 2026 г.
- CVE-2019-612836Наблюдать
The TIFFFdOpen function in tif_unix.c in LibTIFF 4.0.10 has a memory leak, as demonstrated by pal2rgb.
ВысокаяCVSS 8,8Эксплойта нетEPSS 4 %libtiff · libtiff11 янв. 2019 г.
- CVE-2021-4063336Наблюдать
A memory leak (out-of-memory) in gif2rgb in util/gif2rgb.c in giflib 5.1.4 allows remote attackers trigger an out of memory exception or den
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %giflib project · giflib14 июн. 2022 г.
- CVE-2026-8707836Наблюдать
Net::IDN::Punycode versions from 2.302 before 2.590 for Perl leak the output buffer on every rejected label in decode_punycode
КритическаяCVSS 9,1Эксплойта нетEPSS 1 %22 сент. 2026 г.
- CVE-2023-3371835Наблюдать
mp4v2 v2.1.3 was discovered to contain a memory leak via MP4File::ReadString() at mp4file_io.cpp
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %mp4v2 project · mp4v231 мая 2023 г.
- CVE-2024-2545035Наблюдать
imlib2 v1.9.1 was discovered to mishandle memory allocation in the function init_imlib_fonts().
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %enlightenment · imlib29 февр. 2024 г.
- CVE-2019-1734035Наблюдать
An issue was discovered in Xen through 4.11.x allowing x86 guest OS users to cause a denial of service or gain privileges because grant-tabl
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %xen · xen7 окт. 2019 г.
- CVE-2021-138734Наблюдать
Cisco NX-OS Software IPv6 Netstack Denial of Service Vulnerability
ВысокаяCVSS 8,6Эксплойта нетEPSS 1 %cisco · unified computing system24 февр. 2021 г.
- CVE-2021-135334Наблюдать
Cisco StarOS IPv4 Denial of Service Vulnerability
ВысокаяCVSS 8,6Эксплойта нетEPSS 1 %cisco · staros20 янв. 2021 г.
- CVE-2023-3838034Наблюдать
A vulnerability has been identified in SIMATIC CP 1242-7 V2 (incl.
ВысокаяCVSS 8,7Эксплойта нетEPSS 1 %siemens · 6gk7243-8rx30-0xe0 firmware12 дек. 2023 г.
- CVE-2026-4805934Наблюдать
Netty HAProxy: Unbalanced Reference Count in Nested PP2_TYPE_SSL TLV Parsing Leads to Memory Exhaustion
ВысокаяCVSS 8,7Эксплойта нетEPSS 1 %netty · netty12 июн. 2026 г.
- CVE-2026-4800634Наблюдать
Netty's Lack of Lifecycle Cleanup Leads to Pooled ByteBuf Leak in RedisArrayAggregator
ВысокаяCVSS 8,7Эксплойта нетEPSS 1 %netty · netty12 июн. 2026 г.
- CVE-2025-2013334Наблюдать
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Authentication Targeted Denial of Service Vu
ВысокаяCVSS 8,6Эксплойта нетEPSS 1 %cisco · cisco adaptive security appliance (asa) software14 авг. 2025 г.
- CVE-2026-9343634Наблюдать
vLLM through 0.29.0 Memory Exhaustion via Rejected Requests
ВысокаяCVSS 8,7Эксплойта нетEPSS 1 %vllm · vllm17 сент. 2026 г.
- CVE-2026-5025434Наблюдать
OFFIS DCMTK Toolkit Missing Release of Memory after Effective Lifetime
ВысокаяCVSS 8,7Эксплойта нетEPSS 1 %offis dicom · dcmtk toolkit30 июн. 2026 г.
- CVE-2026-3550534Наблюдать
OFFIS DCMTK Toolkit Missing Release of Memory after Effective Lifetime
ВысокаяCVSS 8,7Эксплойта нетEPSS 1 %offis dicom · dcmtk toolkit30 июн. 2026 г.
- CVE-2026-4466034Наблюдать
UltraJSON: Memory Leak in ujson.dump() on Write Failure
ВысокаяCVSS 8,7Эксплойта нетEPSS 1 %ultrajson project · ultrajson27 мая 2026 г.
- CVE-2026-9462734Наблюдать
vLLM through 0.29.0 GPU KV Cache Leak via Mooncake Transfer ID Collision
ВысокаяCVSS 8,7Эксплойта нетEPSS 1 %vllm · vllm21 сент. 2026 г.
- CVE-2025-2023934Наблюдать
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Software, Secure Firewall Adaptive Secu
ВысокаяCVSS 8,6Эксплойта нетEPSS 1 %cisco · ios14 авг. 2025 г.
- CVE-2025-2159934Наблюдать
Junos OS Evolved: Receipt of specifically malformed IPv6 packets causes kernel memory exhaustion leading to Denial of Service
ВысокаяCVSS 8,7Эксплойта нетEPSS 1 %juniper · junos os evolved9 янв. 2025 г.