Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2017-11-22 CVE-2017-12190 Resource Exhaustion vulnerability in Linux Kernel
The bio_map_user_iov and bio_unmap_user functions in block/bio.c in the Linux kernel before 4.13.8 do unbalanced refcounting when a SCSI I/O vector has small consecutive buffers belonging to the same page.
local
low complexity
linux CWE-400
6.5
2017-11-17 CVE-2017-1000191 Resource Exhaustion vulnerability in Jool 3.5.0/3.5.1
Jool 3.5.0-3.5.1 is vulnerable to a kernel crashing packet resulting in a DOS.
network
low complexity
jool CWE-400
7.5
2017-11-16 CVE-2017-14028 Resource Exhaustion vulnerability in Moxa products
A Resource Exhaustion issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Version 3.7 and prior.
network
low complexity
moxa CWE-400
7.5
2017-11-16 CVE-2017-12318 Resource Exhaustion vulnerability in Cisco RF Gateway 1 Firmware
A vulnerability in the TCP state machine of Cisco RF Gateway 1 devices could allow an unauthenticated, remote attacker to prevent an affected device from delivering switched digital video (SDV) or video on demand (VoD) streams, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-400
7.5
2017-11-13 CVE-2016-8610 Resource Exhaustion vulnerability in multiple products
A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in the way the TLS/SSL protocol defined processing of ALERT packets during a connection handshake.
7.5
2017-11-13 CVE-2017-7132 Resource Exhaustion vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-400
7.8
2017-11-13 CVE-2017-13825 Resource Exhaustion vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-400
7.8
2017-11-08 CVE-2017-14360 Resource Exhaustion vulnerability in HP Content Manager 9.0
A potential security vulnerability has been identified in HPE Content Manager Workgroup Service v9.00.
network
low complexity
hp CWE-400
7.5
2017-11-07 CVE-2017-2889 Resource Exhaustion vulnerability in Meetcircle Circle With Disney Firmware 2.0.1
An exploitable Denial of Service vulnerability exists in the API daemon of Circle with Disney running firmware 2.0.1.
network
low complexity
meetcircle CWE-400
7.5
2017-11-07 CVE-2017-2884 Resource Exhaustion vulnerability in Meetcircle Circle With Disney Firmware 2.0.1
An exploitable vulnerability exists in the user photo update functionality of Circle with Disney running firmware 2.0.1.
network
low complexity
meetcircle CWE-400
7.5