Vulnerabilities > Improper Resource Shutdown or Release

DATE CVE VULNERABILITY TITLE RISK
2018-05-09 CVE-2018-8124 Improper Resource Shutdown or Release vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
local
high complexity
microsoft CWE-404
7.0
2018-05-09 CVE-2018-8120 Improper Resource Shutdown or Release vulnerability in Microsoft Windows 7 and Windows Server 2008
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation of Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2.
local
high complexity
microsoft CWE-404
7.0
2018-04-03 CVE-2018-8836 Improper Resource Shutdown or Release vulnerability in Wago products
Wago 750 Series PLCs with firmware version 10 and prior include a remote attack may take advantage of an improper implementation of the 3 way handshake during a TCP connection affecting the communications with commission and service tools.
network
low complexity
wago CWE-404
5.3
2018-02-19 CVE-2018-6592 Improper Resource Shutdown or Release vulnerability in Unisys Stealth 3.3
Unisys Stealth 3.3 Windows endpoints before 3.3.016.1 allow local users to gain access to Stealth-enabled devices by leveraging improper cleanup of memory used for negotiation key storage.
local
low complexity
unisys CWE-404
7.8
2018-01-31 CVE-2017-1000411 Improper Resource Shutdown or Release vulnerability in Opendaylight and Openflow
OpenFlow Plugin and OpenDayLight Controller versions Nitrogen, Carbon, Boron, Robert Varga, Anil Vishnoi contain a flaw when multiple 'expired' flows take up the memory resource of CONFIG DATASTORE which leads to CONTROLLER shutdown.
network
low complexity
opendaylight CWE-404
7.5
2017-12-05 CVE-2017-11016 Improper Resource Shutdown or Release vulnerability in Google Android
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, when memory allocation fails while creating a calibration block in create_cal_block stale pointers are left uncleared.
local
low complexity
google CWE-404
7.8
2017-09-08 CVE-2017-0769 Improper Resource Shutdown or Release vulnerability in Google Android
A elevation of privilege vulnerability in the Android media framework (libstagefright).
local
low complexity
google CWE-404
7.8
2017-09-07 CVE-2017-6627 Improper Resource Shutdown or Release vulnerability in Cisco IOS and IOS XE
A vulnerability in the UDP processing code of Cisco IOS 15.1, 15.2, and 15.4 and IOS XE 3.14 through 3.18 could allow an unauthenticated, remote attacker to cause the input queue of an affected system to hold UDP packets, causing an interface queue wedge and a denial of service (DoS) condition.
network
low complexity
cisco CWE-404
7.5
2017-08-28 CVE-2012-2805 Improper Resource Shutdown or Release vulnerability in Ffmpeg 0.10
Unspecified vulnerability in FFMPEG 0.10 allows remote attackers to cause a denial of service.
network
low complexity
ffmpeg CWE-404
7.5
2017-08-09 CVE-2017-0733 Improper Resource Shutdown or Release vulnerability in Google Android
A denial of service vulnerability in the Android media framework (libmediaplayerservice).
local
low complexity
google CWE-404
5.5