Vulnerabilities > Allocation of Resources Without Limits or Throttling

DATE CVE VULNERABILITY TITLE RISK
2021-07-21 CVE-2020-19463 Allocation of Resources Without Limits or Throttling vulnerability in Flowpaper Pdf2Json 0.70
An issue has been found in function vfprintf in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a stack overflow.
local
low complexity
flowpaper CWE-770
5.5
2021-07-21 CVE-2020-19464 Allocation of Resources Without Limits or Throttling vulnerability in Flowpaper Pdf2Json 0.70
An issue has been found in function XRef::fetch in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a stack overflow .
local
low complexity
flowpaper CWE-770
5.5
2021-07-20 CVE-2021-33910 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacker) that results in an operating system crash.
5.5
2021-07-15 CVE-2021-29725 Allocation of Resources Without Limits or Throttling vulnerability in IBM products
IBM Secure External Authentication Server 2.4.3.2, 6.0.1, 6.0.2 and IBM Secure Proxy 3.4.3.2, 6.0.1, 6.0.2 could allow a remote user to consume resources causing a denial of service due to a resource leak.
network
low complexity
ibm CWE-770
7.5
2021-07-13 CVE-2020-28400 Allocation of Resources Without Limits or Throttling vulnerability in Siemens products
Affected devices contain a vulnerability that allows an unauthenticated attacker to trigger a denial of service condition.
network
low complexity
siemens CWE-770
7.5
2021-07-13 CVE-2021-35516 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
When reading a specially crafted 7Z archive, Compress can be made to allocate large amounts of memory that finally leads to an out of memory error even for very small inputs.
network
low complexity
apache netapp oracle CWE-770
7.5
2021-07-13 CVE-2021-35517 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
When reading a specially crafted TAR archive, Compress can be made to allocate large amounts of memory that finally leads to an out of memory error even for very small inputs.
network
low complexity
apache netapp oracle CWE-770
7.5
2021-07-09 CVE-2021-36155 Allocation of Resources Without Limits or Throttling vulnerability in Linuxfoundation Grpc Swift 1.0.0/1.1.0/1.1.1
LengthPrefixedMessageReader in gRPC Swift 1.1.0 and earlier allocates buffers of arbitrary length, which allows remote attackers to cause uncontrolled resource consumption and deny service.
network
low complexity
linuxfoundation CWE-770
7.5
2021-06-28 CVE-2020-28200 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
The Sieve engine in Dovecot before 2.3.15 allows Uncontrolled Resource Consumption, as demonstrated by a situation with a complex regular expression for the regex extension.
network
low complexity
dovecot fedoraproject CWE-770
4.3
2021-06-22 CVE-2021-32699 Allocation of Resources Without Limits or Throttling vulnerability in Pterodactyl Wings
Wings is the control plane software for the open source Pterodactyl game management system.
local
low complexity
pterodactyl CWE-770
6.5