Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2019-10-02 CVE-2019-15256 Resource Exhaustion vulnerability in Cisco products
A vulnerability in the Internet Key Exchange version 1 (IKEv1) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-400
8.6
2019-09-27 CVE-2019-9349 Resource Exhaustion vulnerability in Google Android 10.0
In libstagefright, there is a possible resource exhaustion due to improper input validation.
network
low complexity
google CWE-400
6.5
2019-09-25 CVE-2019-12659 Resource Exhaustion vulnerability in Cisco IOS XE 16.10.1
A vulnerability in the HTTP server code of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the HTTP server to crash.
network
low complexity
cisco CWE-400
7.5
2019-09-19 CVE-2019-9717 Resource Exhaustion vulnerability in Libav
In Libav 12.3, a denial of service in the subtitle decoder allows attackers to hog the CPU via a crafted video file in Matroska format, because srt_to_ass in libavcodec/srtdec.c has a complex format argument to sscanf.
network
low complexity
libav CWE-400
6.5
2019-09-17 CVE-2019-4183 Resource Exhaustion vulnerability in multiple products
IBM Cognos Analytics 11.0, and 11.1 is vulnerable to a denial of service attack that could allow a remote user to send specially crafted requests that would consume all available CPU and memory resources.
network
low complexity
ibm netapp CWE-400
7.5
2019-08-30 CVE-2019-1967 Resource Exhaustion vulnerability in Cisco Nx-Os
A vulnerability in the Network Time Protocol (NTP) feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-400
7.5
2019-08-26 CVE-2019-15549 Resource Exhaustion vulnerability in Asn1 DER Project Asn1 DER
An issue was discovered in the asn1_der crate before 0.6.2 for Rust.
network
low complexity
asn1-der-project CWE-400
7.5
2019-08-25 CVE-2019-15538 Resource Exhaustion vulnerability in multiple products
An issue was discovered in xfs_setattr_nonsize in fs/xfs/xfs_iops.c in the Linux kernel through 5.2.9.
7.5
2019-08-23 CVE-2019-10750 Resource Exhaustion vulnerability in Deeply Project Deeply
deeply is vulnerable to Prototype Pollution in versions before 3.1.0.
network
low complexity
deeply-project CWE-400
critical
9.8
2019-08-23 CVE-2019-10747 Resource Exhaustion vulnerability in Set-Value Project Set-Value
set-value is vulnerable to Prototype Pollution in versions lower than 3.0.1.
network
low complexity
set-value-project CWE-400
critical
9.8