Vulnerabilities > Operation on a Resource after Expiration or Release

DATE CVE VULNERABILITY TITLE RISK
2024-10-21 CVE-2024-49953 Operation on a Resource after Expiration or Release vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix crash caused by calling __xfrm_state_delete() twice The km.state is not checked in driver's delayed work.
local
low complexity
linux CWE-672
5.5
2024-10-21 CVE-2024-49955 Operation on a Resource after Expiration or Release vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: ACPI: battery: Fix possible crash when unregistering a battery hook When a battery hook returns an error when adding a new battery, then the battery hook is automatically unregistered. However the battery hook provider cannot know that, so it will later call battery_hook_unregister() on the already unregistered battery hook, resulting in a crash. Fix this by using the list head to mark already unregistered battery hooks as already being unregistered so that they can be ignored by battery_hook_unregister().
local
low complexity
linux CWE-672
5.5
2024-08-14 CVE-2024-39792 Operation on a Resource after Expiration or Release vulnerability in F5 Nginx Plus R30/R31/R32
When the NGINX Plus is configured to use the MQTT pre-read module, undisclosed requests can cause an increase in memory resource utilization.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
network
low complexity
f5 CWE-672
7.5
2024-02-20 CVE-2023-48220 Operation on a Resource after Expiration or Release vulnerability in multiple products
Decidim is a participatory democracy framework.
network
high complexity
decidim scambra CWE-672
7.4
2024-02-14 CVE-2024-25619 Operation on a Resource after Expiration or Release vulnerability in Joinmastodon Mastodon
Mastodon is a free, open-source social network server based on ActivityPub.
network
low complexity
joinmastodon CWE-672
4.3
2024-02-04 CVE-2018-25098 Operation on a Resource after Expiration or Release vulnerability in Blockmason Credit-Protocol
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in blockmason credit-protocol.
network
low complexity
blockmason CWE-672
7.5
2024-01-24 CVE-2024-23638 Operation on a Resource after Expiration or Release vulnerability in Squid-Cache Squid
Squid is a caching proxy for the Web.
network
low complexity
squid-cache CWE-672
6.5
2023-09-18 CVE-2023-42446 Operation on a Resource after Expiration or Release vulnerability in Powauth POW
Pow is a authentication and user management solution for Phoenix and Plug-based apps.
network
low complexity
powauth CWE-672
6.5
2023-02-27 CVE-2022-42838 Operation on a Resource after Expiration or Release vulnerability in Apple Macos
An issue with app access to camera data was addressed with improved logic.
local
low complexity
apple CWE-672
3.3
2022-12-22 CVE-2022-22755 Operation on a Resource after Expiration or Release vulnerability in Mozilla Firefox
By using XSL Transforms, a malicious webserver could have served a user an XSL document that would continue to execute JavaScript (within the bounds of the same-origin policy) even after the tab was closed.
network
low complexity
mozilla CWE-672
8.8