Vulnerabilities > Missing Release of Resource after Effective Lifetime

DATE CVE VULNERABILITY TITLE RISK
2023-10-04 CVE-2023-41094 Missing Release of Resource after Effective Lifetime vulnerability in Silabs Emberznet
TouchLink packets processed after timeout or out of range due to Operation on a Resource after Expiration and Missing Release of Resource after Effective Lifetime may allow a device to be added outside of valid TouchLink range or pairing duration This issue affects Ember ZNet 7.1.x from 7.1.3 through 7.1.5; 7.2.x from 7.2.0 through 7.2.3; Version 7.3 and later are unaffected
network
low complexity
silabs CWE-772
critical
9.8
2023-06-26 CVE-2023-1150 Missing Release of Resource after Effective Lifetime vulnerability in Wago products
Uncontrolled resource consumption in Series WAGO 750-3x/-8x products may allow an unauthenticated remote attacker to DoS the MODBUS server with specially crafted packets.
network
low complexity
wago CWE-772
7.5
2023-02-28 CVE-2023-22996 Missing Release of Resource after Effective Lifetime vulnerability in Linux Kernel
In the Linux kernel before 5.17.2, drivers/soc/qcom/qcom_aoss.c does not release an of_find_device_by_node reference after use, e.g., with put_device.
local
low complexity
linux CWE-772
5.5
2023-02-01 CVE-2023-22302 Missing Release of Resource after Effective Lifetime vulnerability in F5 products
In BIG-IP versions 17.0.x before 17.0.0.2, and 16.1.x beginning in 16.1.2.2 to before 16.1.3.3, when an HTTP profile is configured on a virtual server and conditions beyond the attacker’s control exist on the target pool member, undisclosed requests sent to the BIG-IP system can cause the Traffic Management Microkernel (TMM) to terminate.
network
high complexity
f5 CWE-772
5.9
2022-11-25 CVE-2022-45887 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
An issue was discovered in the Linux kernel through 6.0.9.
local
high complexity
linux netapp CWE-772
4.7
2022-11-22 CVE-2022-41952 Missing Release of Resource after Effective Lifetime vulnerability in Matrix Synapse
Synapse before 1.52.0 with URL preview functionality enabled will attempt to generate URL previews for media stream URLs without properly limiting connection time.
network
low complexity
matrix CWE-772
5.3
2022-10-14 CVE-2022-32149 Missing Release of Resource after Effective Lifetime vulnerability in Golang Text
An attacker may cause a denial of service by crafting an Accept-Language header which ParseAcceptLanguage will take significant time to parse.
network
low complexity
golang CWE-772
7.5
2022-09-12 CVE-2022-31222 Missing Release of Resource after Effective Lifetime vulnerability in Dell products
Dell BIOS versions contain a Missing Release of Resource after Effective Lifetime vulnerability.
local
low complexity
dell CWE-772
4.4
2022-07-12 CVE-2022-29884 Missing Release of Resource after Effective Lifetime vulnerability in Siemens products
A vulnerability has been identified in CP-8000 MASTER MODULE WITH I/O -25/+70°C (All versions < CPC80 V16.30), CP-8000 MASTER MODULE WITH I/O -40/+70°C (All versions < CPC80 V16.30), CP-8021 MASTER MODULE (All versions < CPC80 V16.30), CP-8022 MASTER MODULE WITH GPRS (All versions < CPC80 V16.30).
network
siemens CWE-772
7.1
2022-05-26 CVE-2021-42859 Missing Release of Resource after Effective Lifetime vulnerability in Mini-Xml Project Mini-Xml 3.2
A memory leak issue was discovered in Mini-XML v3.2 that could cause a denial of service.
network
low complexity
mini-xml-project CWE-772
7.5