Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2023-01-26 CVE-2023-20922 Resource Exhaustion vulnerability in Google Android
In setMimeGroup of PackageManagerService.java, there is a possible crash loop due to resource exhaustion.
local
low complexity
google CWE-400
5.5
2023-01-26 CVE-2023-22486 Resource Exhaustion vulnerability in Github Cmark-Gfm
cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C.
network
low complexity
github CWE-400
7.5
2023-01-26 CVE-2022-27507 Resource Exhaustion vulnerability in Citrix Application Delivery Controller and Gateway
Authenticated denial of service
network
low complexity
citrix CWE-400
6.5
2023-01-26 CVE-2022-27508 Resource Exhaustion vulnerability in Citrix Application Delivery Controller and Gateway
Unauthenticated denial of service
network
low complexity
citrix CWE-400
7.5
2023-01-13 CVE-2023-22396 Resource Exhaustion vulnerability in Juniper Junos
An Uncontrolled Resource Consumption vulnerability in TCP processing on the Routing Engine (RE) of Juniper Networks Junos OS allows an unauthenticated network-based attacker to send crafted TCP packets destined to the device, resulting in an MBUF leak that ultimately leads to a Denial of Service (DoS).
network
low complexity
juniper CWE-400
7.5
2023-01-13 CVE-2023-22400 Resource Exhaustion vulnerability in Juniper Junos OS Evolved
An Uncontrolled Resource Consumption vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause an FPC crash leading to a Denial of Service (DoS).
network
low complexity
juniper CWE-400
7.5
2023-01-12 CVE-2022-4344 Resource Exhaustion vulnerability in Wireshark
Memory exhaustion in the Kafka protocol dissector in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allows denial of service via packet injection or crafted capture file
network
low complexity
wireshark CWE-400
4.3
2023-01-11 CVE-2022-34335 Resource Exhaustion vulnerability in IBM Sterling Partner Engagement Manager 6.1.2/6.2.0/6.2.1
IBM Sterling Partner Engagement Manager 6.1.2, 6.2.0, and 6.2.1 could allow an authenticated user to exhaust server resources which could lead to a denial of service.
network
low complexity
ibm CWE-400
6.5
2023-01-10 CVE-2023-21547 Resource Exhaustion vulnerability in Microsoft products
Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability
network
low complexity
microsoft CWE-400
7.5
2023-01-10 CVE-2023-21557 Resource Exhaustion vulnerability in Microsoft products
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
network
low complexity
microsoft CWE-400
7.5