Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2023-09-06 CVE-2023-40591 Resource Exhaustion vulnerability in Ethereum GO Ethereum
go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol.
network
low complexity
ethereum CWE-400
7.5
2023-09-06 CVE-2023-28188 Resource Exhaustion vulnerability in Apple Macos
A denial-of-service issue was addressed with improved input validation.
network
low complexity
apple CWE-400
6.5
2023-08-31 CVE-2023-4162 Resource Exhaustion vulnerability in Brocade Fabric Operating System 9.0.1E/9.1.1
A segmentation fault can occur in Brocade Fabric OS after Brocade Fabric OS v9.0 and before Brocade Fabric OS v9.2.0a through the passwdcfg command.
local
low complexity
brocade CWE-400
4.4
2023-08-24 CVE-2023-4418 Resource Exhaustion vulnerability in Sick Lms500 Firmware, Lms511 Firmware and Lms531 Firmware
A remote unprivileged attacker can sent multiple packages to the LMS5xx to disrupt its availability through a TCP SYN-based denial-of-service (DDoS) attack.
network
low complexity
sick CWE-400
7.5
2023-08-24 CVE-2023-40709 Resource Exhaustion vulnerability in Opto22 Snap PAC S1 Firmware R10.3B
An adversary could crash the entire device by sending a large quantity of ICMP requests if the controller has the built-in web server enabled but does not have the built-in web server completely set up and configured for the SNAP PAC S1 Firmware version R10.3b
network
low complexity
opto22 CWE-400
7.5
2023-08-24 CVE-2023-40710 Resource Exhaustion vulnerability in Opto22 Snap PAC S1 Firmware R10.3B
An adversary could cause a continuous restart loop to the entire device by sending a large quantity of HTTP GET requests if the controller has the built-in web server enabled but does not have the built-in web server completely set up and configured for the SNAP PAC S1 Firmware version R10.3b
network
low complexity
opto22 CWE-400
7.5
2023-08-22 CVE-2022-48063 Resource Exhaustion vulnerability in GNU Binutils
GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function load_separate_debug_files at dwarf2.c.
local
low complexity
gnu CWE-400
5.5
2023-08-22 CVE-2022-48564 Resource Exhaustion vulnerability in multiple products
read_ints in plistlib.py in Python through 3.9.1 is vulnerable to a potential DoS attack via CPU and RAM exhaustion when processing malformed Apple Property List files in binary format.
network
low complexity
python netapp CWE-400
6.5
2023-08-22 CVE-2022-48571 Resource Exhaustion vulnerability in Memcached 1.6.7
memcached 1.6.7 allows a Denial of Service via multi-packet uploads in UDP.
network
low complexity
memcached CWE-400
7.5
2023-08-16 CVE-2023-38737 Resource Exhaustion vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server Liberty 22.0.0.13 through 23.0.0.7 is vulnerable to a denial of service, caused by sending a specially-crafted request.
network
low complexity
ibm CWE-400
7.5