Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2020-06-11 CVE-2020-0173 Resource Exhaustion vulnerability in Google Android 10.0
In Parse_lins of eas_mdls.c, there is possible resource exhaustion due to improper input validation.
network
google CWE-400
4.3
2020-06-11 CVE-2020-0172 Resource Exhaustion vulnerability in Google Android 10.0
In Parse_art of eas_mdls.c, there is possible resource exhaustion due to a missing bounds check.
network
google CWE-400
4.3
2020-06-11 CVE-2020-0171 Resource Exhaustion vulnerability in Google Android 10.0
In Parse_lart of eas_mdls.c, there is possible resource exhaustion due to a missing bounds check.
network
google CWE-400
4.3
2020-06-11 CVE-2020-0170 Resource Exhaustion vulnerability in Google Android 10.0
In IMY_Event of eas_imelody.c, there is possible resource exhaustion due to a missing bounds check.
network
google CWE-400
4.3
2020-06-11 CVE-2020-0169 Resource Exhaustion vulnerability in Google Android 10.0
In RTTTL_Event of eas_rtttl.c, there is possible resource exhaustion due to a missing bounds check.
network
google CWE-400
4.3
2020-06-11 CVE-2020-11090 Resource Exhaustion vulnerability in Linuxfoundation Indy-Node 1.12.2
In Indy Node 1.12.2, there is an Uncontrolled Resource Consumption vulnerability.
network
low complexity
linuxfoundation CWE-400
5.0
2020-06-10 CVE-2020-13238 Resource Exhaustion vulnerability in Mitsubishielectric products
Mitsubishi MELSEC iQ-R Series PLCs with firmware 33 allow attackers to halt the industrial process by sending an unauthenticated crafted packet over the network, because this denial of service attack consumes excessive CPU time.
network
low complexity
mitsubishielectric CWE-400
7.8
2020-06-04 CVE-2020-13849 Resource Exhaustion vulnerability in Mqtt 3.1.1
The MQTT protocol 3.1.1 requires a server to set a timeout value of 1.5 times the Keep-Alive value specified by a client, which allows remote attackers to cause a denial of service (loss of the ability to establish new connections), as demonstrated by SlowITe.
network
low complexity
mqtt CWE-400
5.0
2020-06-04 CVE-2020-7661 Resource Exhaustion vulnerability in Url-Regex Project Url-Regex
all versions of url-regex are vulnerable to Regular Expression Denial of Service.
network
low complexity
url-regex-project CWE-400
7.8
2020-06-04 CVE-2018-21240 Resource Exhaustion vulnerability in Foxitsoftware Phantompdf and Reader
An issue was discovered in Foxit Reader and PhantomPDF before 9.2.
5.0