Vulnerabilities > Improper Resource Shutdown or Release

DATE CVE VULNERABILITY TITLE RISK
2020-09-15 CVE-2020-16100 Improper Resource Shutdown or Release vulnerability in Gallagher Command Centre
It is possible for an unauthenticated remote DCOM websocket connection to crash the Command Centre service's DCOM websocket thread due to improper shutdown of closed websocket connections, preventing it from accepting future DCOM websocket (Configuration Client) connections.
network
low complexity
gallagher CWE-404
5.0
2020-08-26 CVE-2020-5926 Improper Resource Shutdown or Release vulnerability in F5 products
In BIG-IP versions 15.1.0-15.1.0.4, 15.0.0-15.0.1.3, and 14.1.0-14.1.2.6, a BIG-IP virtual server with a Session Initiation Protocol (SIP) ALG profile, parsing SIP messages that contain a multi-part MIME payload with certain boundary strings can cause TMM to free memory to the wrong cache.
network
low complexity
f5 CWE-404
5.0
2020-08-21 CVE-2020-5416 Improper Resource Shutdown or Release vulnerability in Cloudfoundry Cf-Deployment
Cloud Foundry Routing (Gorouter), versions prior to 0.204.0, when used in a deployment with NGINX reverse proxies in front of the Gorouters, is potentially vulnerable to denial-of-service attacks in which an unauthenticated malicious attacker can send specially-crafted HTTP requests that may cause the Gorouters to be dropped from the NGINX backend pool.
network
low complexity
cloudfoundry CWE-404
4.0
2020-07-24 CVE-2020-14307 Improper Resource Shutdown or Release vulnerability in Redhat products
A vulnerability was found in Wildfly's Enterprise Java Beans (EJB) versions shipped with Red Hat JBoss EAP 7, where SessionOpenInvocations are never removed from the remote InvocationTracker after a response is received in the EJB Client, as well as the server.
network
low complexity
redhat CWE-404
6.5
2020-07-15 CVE-2020-14642 Improper Resource Shutdown or Release vulnerability in Oracle Coherence
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: CacheStore).
network
low complexity
oracle CWE-404
7.8
2020-07-15 CVE-2020-14630 Improper Resource Shutdown or Release vulnerability in Oracle Enterprise Session Border Controller 8.1.0/8.2.0/8.3.0
Vulnerability in the Oracle Enterprise Session Border Controller product of Oracle Communications Applications (component: File Upload).
network
oracle CWE-404
7.5
2020-07-15 CVE-2020-14537 Improper Resource Shutdown or Release vulnerability in Oracle Solaris 11
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Packaging Scripts).
local
oracle CWE-404
4.7
2020-07-01 CVE-2020-4420 Improper Resource Shutdown or Release vulnerability in IBM DB2
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow an unauthenticated attacker to cause a denial of service due a hang in the execution of a terminate command.
network
low complexity
ibm CWE-404
5.0
2020-06-24 CVE-2020-10280 Improper Resource Shutdown or Release vulnerability in multiple products
The Apache server on port 80 that host the web interface is vulnerable to a DoS by spamming incomplete HTTP headers, effectively blocking the access to the dashboard.
5.0
2020-06-19 CVE-2017-18898 Improper Resource Shutdown or Release vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 4.2.0, 4.1.1, and 4.0.5.
5.0