Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2020-07-07 CVE-2020-10745 Resource Exhaustion vulnerability in multiple products
A flaw was found in all Samba versions before 4.10.17, before 4.11.11 and before 4.12.4 in the way it processed NetBios over TCP/IP.
network
low complexity
samba fedoraproject opensuse debian CWE-400
7.5
2020-07-07 CVE-2020-15565 Resource Exhaustion vulnerability in multiple products
An issue was discovered in Xen through 4.13.x, allowing x86 Intel HVM guest OS users to cause a host OS denial of service or possibly gain privileges because of insufficient cache write-back under VT-d.
local
low complexity
xen debian fedoraproject opensuse CWE-400
8.8
2020-07-02 CVE-2020-8185 Resource Exhaustion vulnerability in multiple products
A denial of service vulnerability exists in Rails <6.0.3.2 that allowed an untrusted user to run any pending migrations on a Rails app running in production.
network
low complexity
rubyonrails fedoraproject CWE-400
6.5
2020-07-01 CVE-2020-8663 Resource Exhaustion vulnerability in Envoyproxy Envoy
Envoy version 1.14.2, 1.13.2, 1.12.4 or earlier may exhaust file descriptors and/or memory when accepting too many connections.
network
low complexity
envoyproxy CWE-400
7.5
2020-07-01 CVE-2020-12603 Resource Exhaustion vulnerability in Envoyproxy Envoy
Envoy version 1.14.2, 1.13.2, 1.12.4 or earlier may consume excessive amounts of memory when proxying HTTP/2 requests or responses with many small (i.e.
network
low complexity
envoyproxy CWE-400
7.5
2020-06-30 CVE-2020-5603 Resource Exhaustion vulnerability in Mitsubishielectric products
Uncontrolled resource consumption vulnerability in Mitsubishi Electoric FA Engineering Software (CPU Module Logging Configuration Tool Ver.
network
low complexity
mitsubishielectric CWE-400
7.5
2020-06-25 CVE-2020-9611 Resource Exhaustion vulnerability in Adobe Acrobat DC
Adobe Acrobat and Reader versions 2020.006.20042 and earlier, 2017.011.30166 and earlier, 2017.011.30166 and earlier, and 2015.006.30518 and earlier have a stack exhaustion vulnerability.
local
low complexity
adobe CWE-400
5.5
2020-06-19 CVE-2015-9548 Resource Exhaustion vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 1.2.0.
network
low complexity
mattermost CWE-400
7.5
2020-06-19 CVE-2018-21250 Resource Exhaustion vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.2.2, 5.1.2, and 4.10.4.
network
low complexity
mattermost CWE-400
6.5
2020-06-19 CVE-2019-20858 Resource Exhaustion vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.15.0.
network
low complexity
mattermost CWE-400
7.5