Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2023-04-15 CVE-2021-39295 Resource Exhaustion vulnerability in Openbmc-Project Openbmc 2.9.0
In OpenBMC 2.9, crafted IPMI messages allow an attacker to cause a denial of service to the BMC via the netipmid (IPMI lan+) interface.
network
low complexity
openbmc-project CWE-400
7.5
2023-04-14 CVE-2023-29013 Resource Exhaustion vulnerability in Traefik
Traefik (pronounced traffic) is a modern HTTP reverse proxy and load balancer for deploying microservices.
network
low complexity
traefik CWE-400
7.5
2023-04-14 CVE-2023-27643 Resource Exhaustion vulnerability in Powerampapp Poweramp 925Bundleplay/954Uni
An issue found in POWERAMP 925-bundle-play and Poweramp 954-uni allows a remote attacker to cause a denial of service via the Rescan button in Queue and Select Folders button in Library
network
low complexity
powerampapp CWE-400
7.5
2023-04-12 CVE-2023-1994 Resource Exhaustion vulnerability in multiple products
GQUIC dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
network
low complexity
wireshark debian fedoraproject CWE-400
6.5
2023-04-12 CVE-2023-1992 Resource Exhaustion vulnerability in multiple products
RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
network
low complexity
wireshark debian fedoraproject CWE-400
7.5
2023-04-12 CVE-2023-24545 Resource Exhaustion vulnerability in Arista Cloudeos
On affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe) can lead to a potential denial of service attack by sending malformed packets to the switch.
network
low complexity
arista CWE-400
7.5
2023-04-06 CVE-2023-24534 Resource Exhaustion vulnerability in Golang GO
HTTP and MIME header parsing can allocate large amounts of memory, even when parsing small inputs, potentially leading to a denial of service.
network
low complexity
golang CWE-400
7.5
2023-04-05 CVE-2023-0382 Resource Exhaustion vulnerability in M-Files Server
User-controlled operations could have allowed Denial of Service in M-Files Server before 23.4.12528.1 due to uncontrolled memory consumption.
network
low complexity
m-files CWE-400
6.5
2023-04-02 CVE-2023-1580 Resource Exhaustion vulnerability in Devolutions Gateway 2023.1.1
Uncontrolled resource consumption in the logging feature in Devolutions Gateway 2023.1.1 and earlier allows an attacker to cause a denial of service by filling up the disk and render the system unusable.
network
low complexity
devolutions CWE-400
7.5
2023-03-31 CVE-2023-26485 Resource Exhaustion vulnerability in Github Cmark-Gfm
cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C.
network
low complexity
github CWE-400
7.5