Vulnerabilities > Missing Release of Resource after Effective Lifetime

DATE CVE VULNERABILITY TITLE RISK
2024-10-29 CVE-2024-49769 Missing Release of Resource after Effective Lifetime vulnerability in Agendaless Waitress
Waitress is a Web Server Gateway Interface server for Python 2 and 3.
network
low complexity
agendaless CWE-772
7.5
2024-10-23 CVE-2024-20481 Missing Release of Resource after Effective Lifetime vulnerability in Cisco Firepower Threat Defense Software
A vulnerability in the Remote Access VPN (RAVPN) service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) of the RAVPN service. This vulnerability is due to resource exhaustion.
network
low complexity
cisco CWE-772
5.8
2024-10-23 CVE-2024-20493 Missing Release of Resource after Effective Lifetime vulnerability in Cisco Firepower Threat Defense Software
A vulnerability in the login authentication functionality of the Remote Access SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to deny further VPN user authentications for several minutes, resulting in a temporary denial of service (DoS) condition. This vulnerability is due to ineffective handling of memory resources during the authentication process.
network
low complexity
cisco CWE-772
5.3
2024-10-21 CVE-2024-47733 Missing Release of Resource after Effective Lifetime vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: netfs: Delete subtree of 'fs/netfs' when netfs module exits In netfs_init() or fscache_proc_init(), we create dentry under 'fs/netfs', but in netfs_exit(), we only delete the proc entry of 'fs/netfs' without deleting its subtree.
local
low complexity
linux CWE-772
5.5
2024-08-12 CVE-2024-41888 Missing Release of Resource after Effective Lifetime vulnerability in Apache Answer
Missing Release of Resource after Effective Lifetime vulnerability in Apache Answer. This issue affects Apache Answer: through 1.3.5. The password reset link remains valid within its expiration period even after it has been used.
network
low complexity
apache CWE-772
5.3
2024-08-12 CVE-2024-41890 Missing Release of Resource after Effective Lifetime vulnerability in Apache Answer
Missing Release of Resource after Effective Lifetime vulnerability in Apache Answer. This issue affects Apache Answer: through 1.3.5. User sends multiple password reset emails, each containing a valid link.
network
low complexity
apache CWE-772
5.3
2024-01-18 CVE-2023-31274 Missing Release of Resource after Effective Lifetime vulnerability in Aveva PI Server 2018/2023
AVEVA PI Server versions 2023 and 2018 SP3 P05 and prior contain a vulnerability that could allow an unauthenticated user to cause the PI Message Subsystem of a PI Server to consume available memory resulting in throttled processing of new PI Data Archive events and a partial denial-of-service condition.
network
low complexity
aveva CWE-772
5.3
2024-01-02 CVE-2023-47216 Missing Release of Resource after Effective Lifetime vulnerability in Openatom Openharmony
in OpenHarmony v3.2.2 and prior versions allow a local attacker cause DOS through occupy all resources
local
low complexity
openatom CWE-772
5.5
2023-12-04 CVE-2023-47124 Missing Release of Resource after Effective Lifetime vulnerability in Traefik
Traefik is an open source HTTP reverse proxy and load balancer.
network
high complexity
traefik CWE-772
5.9
2023-10-18 CVE-2023-45814 Missing Release of Resource after Effective Lifetime vulnerability in Littlebigfresh Bunkum
Bunkum is an open-source protocol-agnostic request server for custom game servers.
network
low complexity
littlebigfresh CWE-772
5.3