Vulnerabilities > Allocation of Resources Without Limits or Throttling

DATE CVE VULNERABILITY TITLE RISK
2021-06-03 CVE-2021-28848 Allocation of Resources Without Limits or Throttling vulnerability in Mintty Project Mintty
Mintty before 3.4.5 allows remote servers to cause a denial of service (Windows GUI hang) by telling the Mintty window to change its title repeatedly at high speed, which results in many SetWindowTextA or SetWindowTextW calls.
network
low complexity
mintty-project CWE-770
7.5
2021-05-27 CVE-2021-22360 Allocation of Resources Without Limits or Throttling vulnerability in Huawei Usg9500 Firmware V500R001C60Spc500/V500R005C00Spc100/V500R005C00Spc200
There is a resource management error vulnerability in the verisions V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200 of USG9500.
network
low complexity
huawei CWE-770
4.9
2021-05-26 CVE-2021-3527 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
A flaw was found in the USB redirector device (usb-redir) of QEMU.
local
low complexity
qemu redhat debian CWE-770
5.5
2021-05-24 CVE-2021-21000 Allocation of Resources Without Limits or Throttling vulnerability in Wago products
On WAGO PFC200 devices in different firmware versions with special crafted packets an attacker with network access to the device could cause a denial of service for the login service of the runtime.
network
low complexity
wago CWE-770
7.5
2021-05-06 CVE-2021-22210 Allocation of Resources Without Limits or Throttling vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2.
network
low complexity
gitlab CWE-770
5.3
2021-04-28 CVE-2020-22785 Allocation of Resources Without Limits or Throttling vulnerability in Etherpad
Etherpad < 1.8.3 is affected by a missing lock check which could cause a denial of service.
network
low complexity
etherpad CWE-770
7.5
2021-04-23 CVE-2021-22207 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
Excessive memory consumption in MS-WSP dissector in Wireshark 3.4.0 to 3.4.4 and 3.2.0 to 3.2.12 allows denial of service via packet injection or crafted capture file
network
low complexity
wireshark fedoraproject oracle debian CWE-770
6.5
2021-04-22 CVE-2021-0242 Allocation of Resources Without Limits or Throttling vulnerability in Juniper Junos
A vulnerability due to the improper handling of direct memory access (DMA) buffers on EX4300 switches on Juniper Networks Junos OS allows an attacker sending specific unicast frames to trigger a Denial of Service (DoS) condition by exhausting DMA buffers, causing the FPC to crash and the device to restart.
low complexity
juniper CWE-770
6.5
2021-04-22 CVE-2021-0224 Allocation of Resources Without Limits or Throttling vulnerability in Juniper Junos
A vulnerability in the handling of internal resources necessary to bring up a large number of Layer 2 broadband remote access subscriber (BRAS) nodes in Juniper Networks Junos OS can cause the Access Node Control Protocol daemon (ANCPD) to crash and restart, leading to a Denial of Service (DoS) condition.
low complexity
juniper CWE-770
6.5
2021-04-19 CVE-2021-29453 Allocation of Resources Without Limits or Throttling vulnerability in Matrix-Media-Repo Project Matrix-Media-Repo
matrix-media-repo is an open-source multi-domain media repository for Matrix.
network
low complexity
matrix-media-repo-project CWE-770
6.5