Vulnerabilities > Missing Release of Resource after Effective Lifetime

DATE CVE VULNERABILITY TITLE RISK
2017-10-03 CVE-2017-14495 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
Memory leak in dnsmasq before 2.78, when the --add-mac, --add-cpe-id or --add-subnet option is specified, allows remote attackers to cause a denial of service (memory consumption) via vectors involving DNS response creation.
network
low complexity
redhat debian canonical thekelleys CWE-772
7.5
2017-10-02 CVE-2017-14970 Missing Release of Resource after Effective Lifetime vulnerability in Openvswitch
In lib/ofp-util.c in Open vSwitch (OvS) before 2.8.1, there are multiple memory leaks while parsing malformed OpenFlow group mod messages.
network
high complexity
openvswitch CWE-772
5.9
2017-09-30 CVE-2017-14930 Missing Release of Resource after Effective Lifetime vulnerability in GNU Binutils 2.29
Memory leak in decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (memory consumption) via a crafted ELF file.
local
low complexity
gnu CWE-772
5.5
2017-09-22 CVE-2017-14684 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.74
In ImageMagick 7.0.7-4 Q16, a memory leak vulnerability was found in the function ReadVIPSImage in coders/vips.c, which allows attackers to cause a denial of service (memory consumption in ResizeMagickMemory in MagickCore/memory.c) via a crafted file.
network
low complexity
imagemagick CWE-772
6.5
2017-09-21 CVE-2017-8280 Missing Release of Resource after Effective Lifetime vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, during the wlan calibration data store and retrieve operation, there are some potential race conditions which lead to a memory leak and a buffer overflow during the context switch.
local
high complexity
google CWE-772
7.0
2017-09-18 CVE-2017-14533 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
ImageMagick 7.0.6-6 has a memory leak in ReadMATImage in coders/mat.c.
network
low complexity
imagemagick canonical CWE-772
6.5
2017-09-13 CVE-2017-14431 Missing Release of Resource after Effective Lifetime vulnerability in XEN
Memory leak in Xen 3.3 through 4.8.x allows guest OS users to cause a denial of service (ARM or x86 AMD host OS memory consumption) by continually rebooting, because certain cleanup is skipped if no pass-through device was ever assigned, aka XSA-207.
local
low complexity
xen CWE-772
5.5
2017-09-12 CVE-2017-14343 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
ImageMagick 7.0.6-6 has a memory leak vulnerability in ReadXCFImage in coders/xcf.c via a crafted xcf image file.
network
low complexity
imagemagick canonical CWE-772
6.5
2017-09-12 CVE-2017-14326 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
In ImageMagick 7.0.7-1 Q16, a memory leak vulnerability was found in the function ReadMATImage in coders/mat.c, which allows attackers to cause a denial of service via a crafted file.
network
low complexity
imagemagick canonical CWE-772
6.5
2017-09-12 CVE-2017-14325 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
In ImageMagick 7.0.7-1 Q16, a memory leak vulnerability was found in the function PersistPixelCache in magick/cache.c, which allows attackers to cause a denial of service (memory consumption in ReadMPCImage in coders/mpc.c) via a crafted file.
network
low complexity
imagemagick canonical CWE-772
6.5