Vulnerabilities > Allocation of Resources Without Limits or Throttling

DATE CVE VULNERABILITY TITLE RISK
2022-06-28 CVE-2021-40607 Allocation of Resources Without Limits or Throttling vulnerability in Gpac
The schm_box_size function in GPAC 1.0.1 allows attackers to cause a denial of service via a crafted file in the MP4Box command.
local
low complexity
gpac CWE-770
5.5
2022-06-28 CVE-2021-40609 Allocation of Resources Without Limits or Throttling vulnerability in Gpac
The GetHintFormat function in GPAC 1.0.1 allows attackers to cause a denial of service via a crafted file in the MP4Box command.
local
low complexity
gpac CWE-770
5.5
2022-06-28 CVE-2022-34750 Allocation of Resources Without Limits or Throttling vulnerability in Mediawiki
An issue was discovered in MediaWiki through 1.38.1.
network
low complexity
mediawiki CWE-770
7.5
2022-06-27 CVE-2021-40941 Allocation of Resources Without Limits or Throttling vulnerability in Axiosys Bento4 1.6.0638
In Bento4 1.6.0-638, there is an allocator is out of memory in the function AP4_Array<AP4_TrunAtom::Entry>::EnsureCapacity in Ap4Array.h:172, as demonstrated by GPAC.
network
low complexity
axiosys CWE-770
7.5
2022-06-25 CVE-2022-31016 Allocation of Resources Without Limits or Throttling vulnerability in Argoproj Argo CD
Argo CD is a declarative continuous deployment for Kubernetes.
network
low complexity
argoproj CWE-770
6.5
2022-06-21 CVE-2022-22979 Allocation of Resources Without Limits or Throttling vulnerability in VMWare Spring Cloud Function
In Spring Cloud Function versions prior to 3.2.6, it is possible for a user who directly interacts with framework provided lookup functionality to cause a denial-of-service condition due to the caching issue in the Function Catalog component of the framework.
network
low complexity
vmware CWE-770
7.5
2022-06-21 CVE-2022-27871 Allocation of Resources Without Limits or Throttling vulnerability in Autodesk products
Autodesk AutoCAD product suite, Revit, Design Review and Navisworks releases using PDFTron prior to 9.1.17 version may be used to write beyond the allocated buffer while parsing PDF files.
local
low complexity
autodesk CWE-770
7.8
2022-06-20 CVE-2022-2134 Allocation of Resources Without Limits or Throttling vulnerability in Inventree Project Inventree
Allocation of Resources Without Limits or Throttling in GitHub repository inventree/inventree prior to 0.8.0.
network
low complexity
inventree-project CWE-770
6.5
2022-06-16 CVE-2022-29863 Allocation of Resources Without Limits or Throttling vulnerability in Opcfoundation UA .Net Standard Stack
OPC UA .NET Standard Stack 1.04.368 allows remote attacker to cause a crash via a crafted message that triggers excessive memory allocation.
network
low complexity
opcfoundation CWE-770
7.5
2022-06-15 CVE-2022-20143 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In addAutomaticZenRule of ZenModeHelper.java, there is a possible permanent denial of service due to resource exhaustion.
local
low complexity
google CWE-770
5.5