Vulnerabilities > Missing Release of Resource after Effective Lifetime

DATE CVE VULNERABILITY TITLE RISK
2019-11-14 CVE-2011-1488 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages are logged when $RepeatedMsgReduction was enabled.
1.9
2019-11-13 CVE-2010-4657 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
PHP5 before 5.4.4 allows passing invalid utf-8 strings via the xmlTextWriterWriteAttribute, which are then misparsed by libxml2.
network
low complexity
php redhat debian CWE-772
5.0
2019-11-13 CVE-2019-5293 Missing Release of Resource after Effective Lifetime vulnerability in Huawei products
Some Huawei products have a memory leak vulnerability when handling some messages.
network
low complexity
huawei CWE-772
4.0
2019-10-31 CVE-2019-5023 Missing Release of Resource after Effective Lifetime vulnerability in Opensrcsec Grsecurity and PAX
An exploitable vulnerability exists in the grsecurity PaX patch for the function read_kmem, in PaX from version pax-linux-4.9.8-test1 to 4.9.24-test7, grsecurity official from version grsecurity-3.1-4.9.8-201702060653 to grsecurity-3.1-4.9.24-201704252333, grsecurity unofficial from version v4.9.25-unofficialgrsec to v4.9.74-unofficialgrsec.
4.3
2019-10-19 CVE-2019-18214 Missing Release of Resource after Effective Lifetime vulnerability in Video Converter Project Video Converter 0.1.0
The Video_Converter app 0.1.0 for Nextcloud allows denial of service (CPU and memory consumption) via multiple concurrent conversions because many FFmpeg processes may be running at once.
network
low complexity
video-converter-project CWE-772
6.8
2019-10-18 CVE-2019-18198 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
In the Linux kernel before 5.3.4, a reference count usage error in the fib6_rule_suppress() function in the fib6 suppression feature of net/ipv6/fib6_rules.c, when handling the FIB_LOOKUP_NOREF flag, can be exploited by a local attacker to corrupt memory, aka CID-ca7a03c41753.
local
low complexity
linux canonical CWE-772
7.8
2019-10-16 CVE-2019-6474 Missing Release of Resource after Effective Lifetime vulnerability in ISC KEA 1.4.0/1.5.0/1.6.0
A missing check on incoming client requests can be exploited to cause a situation where the Kea server's lease storage contains leases which are rejected as invalid when the server tries to load leases from storage on restart.
low complexity
isc CWE-772
6.1
2019-10-11 CVE-2018-21028 Missing Release of Resource after Effective Lifetime vulnerability in BOA
Boa through 0.94.14rc21 allows remote attackers to trigger a memory leak because of missing calls to the free function.
network
low complexity
boa CWE-772
5.0
2019-10-09 CVE-2018-5744 Missing Release of Resource after Effective Lifetime vulnerability in ISC Bind
A failure to free memory can occur when processing messages having a specific combination of EDNS options.
network
low complexity
isc CWE-772
5.0
2019-10-04 CVE-2019-17183 Missing Release of Resource after Effective Lifetime vulnerability in Foxitsoftware Reader
Foxit Reader before 9.7 allows an Access Violation and crash if insufficient memory exists.
network
low complexity
foxitsoftware CWE-772
5.0