Vulnerabilities > Allocation of Resources Without Limits or Throttling

DATE CVE VULNERABILITY TITLE RISK
2022-01-21 CVE-2022-23837 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
In api.rb in Sidekiq before 5.2.10 and 6.4.0, there is no limit on the number of days when requesting stats for the graph.
network
low complexity
contribsys debian CWE-770
7.5
2022-01-19 CVE-2022-22153 Allocation of Resources Without Limits or Throttling vulnerability in Juniper Junos
An Insufficient Algorithmic Complexity combined with an Allocation of Resources Without Limits or Throttling vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX Series and MX Series with SPC3 allows an unauthenticated network attacker to cause latency in transit packet processing and even packet loss.
network
low complexity
juniper CWE-770
5.0
2022-01-10 CVE-2021-46050 Allocation of Resources Without Limits or Throttling vulnerability in Webassembly Binaryen 103
A Stack Overflow vulnerability exists in Binaryen 103 via the printf_common function.
local
low complexity
webassembly CWE-770
5.5
2022-01-10 CVE-2020-9059 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
Z-Wave devices based on Silicon Labs 500 series chipsets using S0 authentication are susceptible to uncontrolled resource consumption leading to battery exhaustion.
low complexity
silabs schlage CWE-770
6.1
2022-01-06 CVE-2021-28714 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
Guest can force Linux netback driver to hog large amounts of kernel memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Incoming data packets for a guest in the Linux kernel's netback driver are buffered until the guest is ready to process them.
local
low complexity
linux debian CWE-770
6.5
2022-01-06 CVE-2021-28715 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
Guest can force Linux netback driver to hog large amounts of kernel memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Incoming data packets for a guest in the Linux kernel's netback driver are buffered until the guest is ready to process them.
local
low complexity
linux debian CWE-770
6.5
2022-01-06 CVE-2021-43045 Allocation of Resources Without Limits or Throttling vulnerability in Apache Avro
A vulnerability in the .NET SDK of Apache Avro allows an attacker to allocate excessive resources, potentially causing a denial-of-service attack.
network
low complexity
apache CWE-770
7.5
2022-01-06 CVE-2021-44590 Allocation of Resources Without Limits or Throttling vulnerability in Libming 0.4.8
In libming 0.4.8, a memory exhaustion vulnerability exist in the function cws2fws in util/main.c.
network
libming CWE-770
4.3
2022-01-06 CVE-2021-44591 Allocation of Resources Without Limits or Throttling vulnerability in Libming 0.4.8
In libming 0.4.8, the parseSWF_DEFINELOSSLESS2 function in util/parser.c lacks a boundary check that would lead to denial-of-service attacks via a crafted SWF file.
network
libming CWE-770
4.3
2022-01-03 CVE-2021-37111 Allocation of Resources Without Limits or Throttling vulnerability in Huawei Emui, Harmonyos and Magic UI
There is a Memory leakage vulnerability in Smartphone.Successful exploitation of this vulnerability may cause memory exhaustion.
network
low complexity
huawei CWE-770
5.0