Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2021-10-29 CVE-2021-41186 Resource Exhaustion vulnerability in Fluentd
Fluentd collects events from various data sources and writes them to files to help unify logging infrastructure.
network
low complexity
fluentd CWE-400
7.5
2021-10-28 CVE-2020-10005 Resource Exhaustion vulnerability in Apple Macos
A resource exhaustion issue was addressed with improved input validation.
network
low complexity
apple CWE-400
6.5
2021-10-27 CVE-2021-40117 Resource Exhaustion vulnerability in Cisco products
A vulnerability in SSL/TLS message handler for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-400
7.5
2021-10-27 CVE-2021-40125 Resource Exhaustion vulnerability in Cisco products
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to trigger a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-400
6.5
2021-10-27 CVE-2021-22101 Resource Exhaustion vulnerability in Cloudfoundry Capi-Release
Cloud Controller versions prior to 1.118.0 are vulnerable to unauthenticated denial of Service(DoS) vulnerability allowing unauthenticated attackers to cause denial of service by using REST HTTP requests with label_selectors on multiple V3 endpoints by generating an enormous SQL query.
network
low complexity
cloudfoundry CWE-400
7.5
2021-10-22 CVE-2021-42836 Resource Exhaustion vulnerability in Gjson Project Gjson
GJSON before 1.9.3 allows a ReDoS (regular expression denial of service) attack.
network
low complexity
gjson-project CWE-400
7.5
2021-10-19 CVE-2021-31365 Resource Exhaustion vulnerability in Juniper Junos
An Uncontrolled Resource Consumption vulnerability in Juniper Networks Junos OS on EX2300, EX3400 and EX4300 Series platforms allows an adjacent attacker sending a stream of layer 2 frames will trigger an Aggregated Ethernet (AE) interface to go down and thereby causing a Denial of Service (DoS).
low complexity
juniper CWE-400
6.5
2021-10-19 CVE-2021-31368 Resource Exhaustion vulnerability in Juniper Junos
An Uncontrolled Resource Consumption vulnerability in the kernel of Juniper Networks JUNOS OS allows an unauthenticated network based attacker to cause 100% CPU load and the device to become unresponsive by sending a flood of traffic to the out-of-band management ethernet port.
network
low complexity
juniper CWE-400
7.5
2021-10-19 CVE-2021-37136 Resource Exhaustion vulnerability in multiple products
The Bzip2 decompression decoder function doesn't allow setting size restrictions on the decompressed output data (which affects the allocation size used during decompression).
network
low complexity
netty quarkus oracle netapp debian CWE-400
7.5
2021-10-19 CVE-2021-37137 Resource Exhaustion vulnerability in multiple products
The Snappy frame decoder function doesn't restrict the chunk length which may lead to excessive memory usage.
network
low complexity
netty oracle quarkus netapp debian CWE-400
7.5