Vulnerabilities > Improper Resource Shutdown or Release

DATE CVE VULNERABILITY TITLE RISK
2019-12-10 CVE-2013-4133 Improper Resource Shutdown or Release vulnerability in multiple products
kde-workspace before 4.10.5 has a memory leak in plasma desktop
network
low complexity
kde debian CWE-404
7.8
2019-11-21 CVE-2019-5636 Improper Resource Shutdown or Release vulnerability in Beckhoff Twincat 2.0/3.1
When a Beckhoff TwinCAT Runtime receives a malformed UDP packet, the ADS Discovery Service shuts down.
network
low complexity
beckhoff CWE-404
5.0
2019-11-05 CVE-2019-12625 Improper Resource Shutdown or Release vulnerability in Clamav
ClamAV versions prior to 0.101.3 are susceptible to a zip bomb vulnerability where an unauthenticated attacker can cause a denial of service condition by sending crafted messages to an affected system.
network
low complexity
clamav CWE-404
5.0
2019-10-16 CVE-2019-15262 Improper Resource Shutdown or Release vulnerability in Cisco products
A vulnerability in the Secure Shell (SSH) session management for Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-404
7.8
2019-09-11 CVE-2019-15302 Improper Resource Shutdown or Release vulnerability in Xwiki Cryptpad
The pad management logic in XWiki labs CryptPad before 3.0.0 allows a remote attacker (who has access to a Rich Text pad with editing rights for the URL) to corrupt it (i.e., cause data loss) via a trivial URL modification.
network
low complexity
xwiki CWE-404
5.5
2019-07-26 CVE-2019-5607 Improper Resource Shutdown or Release vulnerability in Freebsd
In FreeBSD 12.0-STABLE before r350222, 12.0-RELEASE before 12.0-RELEASE-p8, 11.3-STABLE before r350223, 11.3-RELEASE before 11.3-RELEASE-p1, and 11.2-RELEASE before 11.2-RELEASE-p12, rights transmitted over a domain socket did not properly release a reference on transmission error allowing a malicious user to cause the reference counter to wrap, forcing a free event.
local
low complexity
freebsd CWE-404
7.8
2019-07-26 CVE-2019-5603 Improper Resource Shutdown or Release vulnerability in Freebsd
In FreeBSD 12.0-STABLE before r350261, 12.0-RELEASE before 12.0-RELEASE-p8, 11.3-STABLE before r350263, 11.3-RELEASE before 11.3-RELEASE-p1, and 11.2-RELEASE before 11.2-RELEASE-p12, system calls operating on file descriptors as part of mqueuefs did not properly release the reference allowing a malicious user to overflow the counter allowing access to files, directories, and sockets opened by processes owned by other users.
local
low complexity
freebsd CWE-404
7.8
2019-06-26 CVE-2019-6163 Improper Resource Shutdown or Release vulnerability in Lenovo System Update
A denial of service vulnerability was reported in Lenovo System Update before version 5.07.0084 that could allow service log files to be written to non-standard locations.
network
low complexity
lenovo CWE-404
5.0
2019-05-03 CVE-2019-1705 Improper Resource Shutdown or Release vulnerability in Cisco Adaptive Security Appliance Software
A vulnerability in the remote access VPN session manager of Cisco Adaptive Security Appliance (ASA) Software could allow a unauthenticated, remote attacker to cause a denial of service (DoS) condition on the remote access VPN services.
network
high complexity
cisco CWE-404
5.9
2019-01-18 CVE-2019-6488 Improper Resource Shutdown or Release vulnerability in GNU Glibc
The string component in the GNU C Library (aka glibc or libc6) through 2.28, when running on the x32 architecture, incorrectly attempts to use a 64-bit register for size_t in assembly codes, which can lead to a segmentation fault or possibly unspecified other impact, as demonstrated by a crash in __memmove_avx_unaligned_erms in sysdeps/x86_64/multiarch/memmove-vec-unaligned-erms.S during a memcpy.
local
low complexity
gnu CWE-404
4.6