Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-12-05 | CVE-2022-35254 | Resource Exhaustion vulnerability in Ivanti Connect Secure and Policy Secure An unauthenticated attacker can cause a denial-of-service to the following products: Ivanti Connect Secure (ICS) in versions prior to 9.1R14.3, 9.1R15.2, 9.1R16.2, and 22.2R4, Ivanti Policy Secure (IPS) in versions prior to 9.1R17 and 22.3R1, and Ivanti Neurons for Zero-Trust Access in versions prior to 22.3R1. | 7.5 |
2022-11-29 | CVE-2022-41568 | Resource Exhaustion vulnerability in Linecorp Line LINE client for iOS before 12.17.0 might be crashed by sharing an invalid shared key of e2ee in group chat. | 7.5 |
2022-11-25 | CVE-2022-39346 | Resource Exhaustion vulnerability in multiple products Nextcloud server is an open source personal cloud server. | 6.5 |
2022-11-23 | CVE-2022-45873 | Resource Exhaustion vulnerability in multiple products systemd 250 and 251 allows local users to achieve a systemd-coredump deadlock by triggering a crash that has a long backtrace. | 5.5 |
2022-11-18 | CVE-2022-38871 | Resource Exhaustion vulnerability in Free5Gc 3.0.5 In Free5gc v3.0.5, the AMF breaks due to malformed NAS messages. | 7.5 |
2022-11-14 | CVE-2022-40735 | Resource Exhaustion vulnerability in Diffie-Hellman KEY Exchange Project Diffie-Hellman KEY Exchange The Diffie-Hellman Key Agreement Protocol allows use of long exponents that arguably make certain calculations unnecessarily expensive, because the 1996 van Oorschot and Wiener paper found that "(appropriately) short exponents" can be used when there are adequate subgroup constraints, and these short exponents can lead to less expensive calculations than for long exponents. | 7.5 |
2022-11-14 | CVE-2022-45199 | Resource Exhaustion vulnerability in Python Pillow Pillow before 9.3.0 allows denial of service via SAMPLESPERPIXEL. | 7.5 |
2022-11-11 | CVE-2022-30691 | Resource Exhaustion vulnerability in Intel Support 21.7.40 Uncontrolled resource consumption in the Intel(R) Support Android application before version 22.02.28 may allow an authenticated user to potentially enable denial of service via local access. | 5.5 |
2022-11-10 | CVE-2022-3818 | Resource Exhaustion vulnerability in Gitlab An uncontrolled resource consumption issue when parsing URLs in GitLab CE/EE affecting all versions prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2 allows an attacker to cause performance issues and potentially a denial of service on the GitLab instance. | 5.3 |
2022-11-04 | CVE-2022-43564 | Resource Exhaustion vulnerability in Splunk and Splunk Cloud Platform In Splunk Enterprise versions below 8.1.12, 8.2.9, and 9.0.2, a remote user who can create search macros and schedule search reports can cause a denial of service through the use of specially crafted search macros. | 6.5 |