Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2022-09-30 CVE-2022-2529 Resource Exhaustion vulnerability in Cloudflare Goflow
sflow decode package does not employ sufficient packet sanitisation which can lead to a denial of service attack.
network
low complexity
cloudflare CWE-400
7.5
2022-09-26 CVE-2022-3204 Resource Exhaustion vulnerability in multiple products
A vulnerability named 'Non-Responsive Delegation Attack' (NRDelegation Attack) has been discovered in various DNS resolving software.
network
low complexity
nlnetlabs fedoraproject CWE-400
7.5
2022-09-14 CVE-2022-36114 Resource Exhaustion vulnerability in Rust-Lang Cargo
Cargo is a package manager for the rust programming language.
network
low complexity
rust-lang CWE-400
6.5
2022-09-13 CVE-2022-39158 Resource Exhaustion vulnerability in Siemens Ruggedcom ROS
Affected devices improperly handle partial HTTP requests which makes them vulnerable to slowloris attacks.
network
low complexity
siemens CWE-400
5.3
2022-09-02 CVE-2020-29260 Resource Exhaustion vulnerability in multiple products
libvncclient v0.9.13 was discovered to contain a memory leak via the function rfbClientCleanup().
network
low complexity
libvncserver-project debian CWE-400
7.5
2022-09-01 CVE-2022-1677 Resource Exhaustion vulnerability in Redhat Openshift Container Platform
In OpenShift Container Platform, a user with permissions to create or modify Routes can craft a payload that inserts a malformed entry into one of the cluster router's HAProxy configuration files.
network
low complexity
redhat CWE-400
6.3
2022-08-31 CVE-2022-1259 Resource Exhaustion vulnerability in multiple products
A flaw was found in Undertow.
network
low complexity
redhat netapp CWE-400
7.5
2022-07-17 CVE-2022-27937 Resource Exhaustion vulnerability in Pexip Infinity
Pexip Infinity before 27.3 allows remote attackers to trigger excessive resource consumption via H.264.
network
low complexity
pexip CWE-400
5.0
2022-07-11 CVE-2022-31073 Resource Exhaustion vulnerability in Linuxfoundation Kubeedge
KubeEdge is an open source system for extending native containerized application orchestration capabilities to hosts at Edge.
4.3
2022-07-11 CVE-2022-31074 Resource Exhaustion vulnerability in Linuxfoundation Kubeedge
KubeEdge is an open source system for extending native containerized application orchestration capabilities to hosts at Edge.
network
low complexity
linuxfoundation CWE-400
4.0