Vulnerabilities > Allocation of Resources Without Limits or Throttling

DATE CVE VULNERABILITY TITLE RISK
2022-06-21 CVE-2022-22979 Allocation of Resources Without Limits or Throttling vulnerability in VMWare Spring Cloud Function
In Spring Cloud Function versions prior to 3.2.6, it is possible for a user who directly interacts with framework provided lookup functionality to cause a denial-of-service condition due to the caching issue in the Function Catalog component of the framework.
network
low complexity
vmware CWE-770
7.5
2022-06-21 CVE-2022-27871 Allocation of Resources Without Limits or Throttling vulnerability in Autodesk products
Autodesk AutoCAD product suite, Revit, Design Review and Navisworks releases using PDFTron prior to 9.1.17 version may be used to write beyond the allocated buffer while parsing PDF files.
local
low complexity
autodesk CWE-770
7.8
2022-06-16 CVE-2022-29863 Allocation of Resources Without Limits or Throttling vulnerability in Opcfoundation UA .Net Standard Stack
OPC UA .NET Standard Stack 1.04.368 allows remote attacker to cause a crash via a crafted message that triggers excessive memory allocation.
network
low complexity
opcfoundation CWE-770
7.5
2022-06-15 CVE-2022-20143 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In addAutomaticZenRule of ZenModeHelper.java, there is a possible permanent denial of service due to resource exhaustion.
local
low complexity
google CWE-770
5.5
2022-06-14 CVE-2022-32559 Allocation of Resources Without Limits or Throttling vulnerability in Couchbase Server
An issue was discovered in Couchbase Server before 7.0.4.
network
low complexity
couchbase CWE-770
critical
9.1
2022-06-14 CVE-2021-35096 Allocation of Resources Without Limits or Throttling vulnerability in Qualcomm products
Improper memory allocation during counter check DLM handling can lead to denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile
network
low complexity
qualcomm CWE-770
7.5
2022-06-10 CVE-2022-31285 Allocation of Resources Without Limits or Throttling vulnerability in Axiosys Bento4 1.2
An issue was discovered in Bento4 1.2.
local
low complexity
axiosys CWE-770
5.5
2022-06-10 CVE-2022-31287 Allocation of Resources Without Limits or Throttling vulnerability in Axiosys Bento4 1.2
An issue was discovered in Bento4 v1.2.
local
low complexity
axiosys CWE-770
5.5
2022-06-09 CVE-2022-29404 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
In Apache HTTP Server 2.4.53 and earlier, a malicious request to a lua script that calls r:parsebody(0) may cause a denial of service due to no default limit on possible input size.
network
low complexity
apache fedoraproject netapp CWE-770
7.5
2022-06-09 CVE-2022-30522 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
If Apache HTTP Server 2.4.53 is configured to do transformations with mod_sed in contexts where the input to mod_sed may be very large, mod_sed may make excessively large memory allocations and trigger an abort.
network
low complexity
apache netapp fedoraproject CWE-770
7.5