Vulnerability index

Browse CVEs

1,784 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory LeakCWE-401 × clear
Boring MEDIUM 5.3
CVE-2023-6180

The tokio-boring library in version 4.0.0 is affected by a memory leak issue that can lead to excessive resource consumption and potential DoS by res…

Mitigation only
Fix from $1,600 2023-12-05
Itext MEDIUM 6.5
CVE-2023-6299

A vulnerability, which was classified as problematic, has been found in Apryse iText 8.0.1. This issue affects some unknown processing of the file Pd…

Mitigation only
Fix from $1,600 2023-11-26
Gpac MEDIUM 5.5
CVE-2023-48039

GPAC 2.3-DEV-rev617-g671976fcc-master is vulnerable to memory leak in gf_mpd_parse_string media_tools/mpd.c:75.

No fix yet
Fix from $1,600 2023-11-20
Gpac HIGH 7.1
CVE-2023-48090

GPAC 2.3-DEV-rev617-g671976fcc-master is vulnerable to memory leaks in extract_attributes media_tools/m3u8.c:329.

No fix yet
Fix from $1,950 2023-11-20
Opennds HIGH 7.5
CVE-2023-41102

An issue was discovered in the captive portal in OpenNDS before version 10.1.3. It has multiple memory leaks due to not freeing up allocated memory. …

Fix: 10.1.3+
Fix from $1,950 2023-11-17
Gpac MEDIUM 5.5
CVE-2023-47384

MP4Box GPAC v2.3-DEV-rev617-g671976fcc-master was discovered to contain a memory leak in the function gf_isom_add_chapter at /isomedia/isom_write.c. …

Mitigation only
Fix from $1,600 2023-11-14
Vault HIGH 7.5
CVE-2023-5954

HashiCorp Vault and Vault Enterprise inbound client requests triggering a policy check can lead to an unbounded consumption of memory. A large number…

Fix: 1.13.10 / 1.14.6+
Fix from $1,950 2023-11-09
Powerscale Onefs MEDIUM 6.5
CVE-2023-43076

Dell PowerScale OneFS 8.2.x,9.0.0.x-9.5.0.x contains a denial-of-service vulnerability. A low privilege remote attacker could potentially exploit thi…

Fix: 9.2.1.24 / 9.4.0.15+
Fix from $1,600 2023-11-02
Junos HIGH 7.5
CVE-2023-44192

An Improper Input Validation vulnerability in the Packet Forwarding Engine of Juniper Networks Junos OS allows an unauthenticated, network-based atta…

Fix: 20.4+
Fix from $1,950 2023-10-13
Junos MEDIUM 5.5
CVE-2023-44193

An Improper Release of Memory Before Removing Last Reference vulnerability in Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows a lo…

Fix: 20.4+
Fix from $1,600 2023-10-13
Junos MEDIUM 5.3
CVE-2023-44183

An Improper Input Validation vulnerability in the VxLAN packet forwarding engine (PFE) of Juniper Networks Junos OS on QFX5000 Series, EX4600 Series …

Mitigation only
Fix from $1,600 2023-10-13
Junos MEDIUM 6.5
CVE-2023-22392

A Missing Release of Memory after Effective Lifetime vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an adjac…

Fix: 20.4+
Fix from $1,600 2023-10-12
Tsmuxer MEDIUM 5.5
CVE-2023-45511

A memory leak in tsMuxer version git-2539d07 allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.

No fix yet
Fix from $1,600 2023-10-12
Big Ip Access Policy Manager HIGH 7.5
CVE-2023-40534

When a client-side HTTP/2 profile and the HTTP MRF Router option are enabled for a virtual server, and an iRule using the HTTP_REQUEST event or Local…

Fix: 16.1.4.1+
Fix from $1,950 2023-10-10
Gifsicle MEDIUM 5.5
CVE-2023-44821

Gifsicle through 1.94, if deployed in a way that allows untrusted input to affect Gif_Realloc calls, might allow a denial of service (memory consumpt…

Fix: after 1.94
Fix from $1,600 2023-10-09
Fedora MEDIUM 5.5
CVE-2023-3576

A memory leak flaw was found in Libtiff's tiffcrop utility. This issue occurs when tiffcrop operates on a TIFF image file, allowing an attacker to pa…

Fix: 4.5.1+
Fix from $1,600 2023-10-04
Enterprise Linux MEDIUM 5.9
CVE-2022-4132

A flaw was found in JSS. A memory leak in JSS requires non-standard configuration but is a low-effort DoS vector if configured that way (repeatedly h…

Fix: 5.5.0+
Fix from $1,600 2023-10-04
Mosquitto HIGH 7.5
CVE-2023-3592

In Mosquitto before 2.0.16, a memory leak occurs when clients send v5 CONNECT packets with a will message that contains invalid property types.

Fix: 2.0.16+
Fix from $1,950 2023-10-02
Mobility Express Software MEDIUM 5.3
CVE-2023-20251

A vulnerability in the memory buffer of Cisco Wireless LAN Controller (WLC) AireOS Software could allow an unauthenticated, adjacent attacker to caus…

Mitigation only
Fix from $1,600 2023-09-27
Firefox HIGH 7.4
CVE-2023-5170

In canvas rendering, a compromised content process could have caused a surface to change unexpectedly, leading to a memory leak of a privileged proce…

Fix: 118.0+
Fix from $1,950 2023-09-27
Enterprise Linux HIGH 7.5
CVE-2023-5156

A flaw was found in the GNU C Library. A recent fix for CVE-2023-4806 introduced the potential for a memory leak, which may result in an application …

Fix: 2.39+
Fix from $1,950 2023-09-25
Cimg HIGH 8.1
CVE-2023-41484

An issue in cimg.eu Cimg Library v2.9.3 allows an attacker to obtain sensitive information via a crafted JPEG file.

No fix yet
Fix from $1,950 2023-09-20
Mosquitto HIGH 7.5
CVE-2023-28366

The broker in Eclipse Mosquitto 1.3.2 through 2.x before 2.0.16 has a memory leak that can be abused remotely when a client sends many QoS 2 messages…

Fix: 2.0.16+
Fix from $1,950 2023-09-01
Linux Kernel MEDIUM 5.5
CVE-2023-4569

A memory leak flaw was found in nft_set_catchall_flush in net/netfilter/nf_tables_api.c in the Linux Kernel. This issue may allow a local attacker to…

Fix: 6.5+
Fix from $1,600 2023-08-28
Wireshark HIGH 7.5
CVE-2023-4513

BT SDP dissector memory leak in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file

Fix: after 4.0.7
Fix from $1,950 2023-08-24
Fedora MEDIUM 5.5
CVE-2022-48065

GNU Binutils before 2.40 was discovered to contain a memory leak vulnerability var the function find_abstract_instance in dwarf2.c.

Fix: 2.40+
Fix from $1,600 2023-08-22
Fedora HIGH 7.1
CVE-2022-48541

A memory leak in ImageMagick 7.0.10-45 and 6.9.11-22 allows remote attackers to perform a denial of service via the "identify -help" command.

No fix yet
Fix from $1,950 2023-08-22
Binutils MEDIUM 5.5
CVE-2022-47007

An issue was discovered function stab_demangle_v3_arg in stabs.c in Binutils 2.34 thru 2.38, allows attackers to cause a denial of service due to mem…

Fix: after 2.38
Fix from $1,600 2023-08-22
Binutils MEDIUM 5.5
CVE-2022-47008

An issue was discovered function make_tempdir, and make_tempname in bucomm.c in Binutils 2.34 thru 2.38, allows attackers to cause a denial of servic…

Fix: after 2.38
Fix from $1,600 2023-08-22
Binutils MEDIUM 5.5
CVE-2022-47010

An issue was discovered function pr_function_type in prdbg.c in Binutils 2.34 thru 2.38, allows attackers to cause a denial of service due to memory …

Fix: after 2.38
Fix from $1,600 2023-08-22