Vulnerabilities > Allocation of Resources Without Limits or Throttling

DATE CVE VULNERABILITY TITLE RISK
2023-10-14 CVE-2023-45862 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
An issue was discovered in drivers/usb/storage/ene_ub6250.c for the ENE UB6250 reader driver in the Linux kernel before 6.2.5.
local
low complexity
linux netapp CWE-770
5.5
2023-10-13 CVE-2023-45130 Allocation of Resources Without Limits or Throttling vulnerability in Parity Frontier
Frontier is Substrate's Ethereum compatibility layer.
network
low complexity
parity CWE-770
7.5
2023-10-13 CVE-2023-5573 Allocation of Resources Without Limits or Throttling vulnerability in Vrite
Allocation of Resources Without Limits or Throttling in GitHub repository vriteio/vrite prior to 0.3.0.
network
low complexity
vrite CWE-770
6.5
2023-10-13 CVE-2023-44191 Allocation of Resources Without Limits or Throttling vulnerability in Juniper Junos
An Allocation of Resources Without Limits or Throttling vulnerability in Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause Denial of Service (DoS). On all Junos OS QFX5000 Series and EX4000 Series platforms, when a high number of VLANs are configured, a specific DHCP packet will cause PFE hogging which will lead to dropping of socket connections. This issue affects: Juniper Networks Junos OS on QFX5000 Series and EX4000 Series * 21.1 versions prior to 21.1R3-S5; * 21.2 versions prior to 21.2R3-S5; * 21.3 versions prior to 21.3R3-S5; * 21.4 versions prior to 21.4R3-S4; * 22.1 versions prior to 22.1R3-S3; * 22.2 versions prior to 22.2R3-S1; * 22.3 versions prior to 22.3R2-S2, 22.3R3; * 22.4 versions prior to 22.4R2. This issue does not affect Juniper Networks Junos OS versions prior to 21.1R1
network
low complexity
juniper CWE-770
7.5
2023-10-12 CVE-2023-45142 Allocation of Resources Without Limits or Throttling vulnerability in Opentelemetry 0.43.0
OpenTelemetry-Go Contrib is a collection of third-party packages for OpenTelemetry-Go.
network
low complexity
opentelemetry CWE-770
7.5
2023-10-12 CVE-2023-5072 Allocation of Resources Without Limits or Throttling vulnerability in Json-Java Project Json-Java
Denial of Service in JSON-Java versions up to and including 20230618.
network
low complexity
json-java-project CWE-770
7.5
2023-10-11 CVE-2023-39325 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
A malicious HTTP/2 client which rapidly creates requests and immediately resets them can cause excessive server resource consumption.
network
low complexity
golang fedoraproject netapp CWE-770
7.5
2023-10-10 CVE-2023-45129 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation.
network
low complexity
matrix fedoraproject CWE-770
4.9
2023-10-10 CVE-2023-40542 Allocation of Resources Without Limits or Throttling vulnerability in F5 products
When TCP Verified Accept is enabled on a TCP profile that is configured on a Virtual Server, undisclosed requests can cause an increase in memory resource utilization.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated
network
low complexity
f5 CWE-770
7.5
2023-10-09 CVE-2023-25822 Allocation of Resources Without Limits or Throttling vulnerability in Reportportal Service-Api
ReportPortal is an AI-powered test automation platform.
network
low complexity
reportportal CWE-770
6.5