Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2019-04-23 CVE-2019-11470 Resource Exhaustion vulnerability in Imagemagick 7.0.826
The cineon parsing component in ImageMagick 7.0.8-26 Q16 allows attackers to cause a denial-of-service (uncontrolled resource consumption) by crafting a Cineon image with an incorrect claimed image size.
network
low complexity
imagemagick CWE-400
6.5
2019-04-23 CVE-2013-7470 Resource Exhaustion vulnerability in Linux Kernel
cipso_v4_validate in include/net/cipso_ipv4.h in the Linux kernel before 3.11.7, when CONFIG_NETLABEL is disabled, allows attackers to cause a denial of service (infinite loop and crash), as demonstrated by icmpsic, a different vulnerability than CVE-2013-0310.
network
high complexity
linux CWE-400
5.9
2019-04-21 CVE-2019-11391 Resource Exhaustion vulnerability in Modsecurity Owasp Modsecurity Core Rule SET 3.0.0/3.0.2/3.1.0
An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0.
network
low complexity
modsecurity CWE-400
5.3
2019-04-21 CVE-2019-11390 Resource Exhaustion vulnerability in Modsecurity Owasp Modsecurity Core Rule SET 3.0.0/3.0.2/3.1.0
An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0.
network
low complexity
modsecurity CWE-400
5.3
2019-04-21 CVE-2019-11389 Resource Exhaustion vulnerability in Modsecurity Owasp Modsecurity Core Rule SET 3.0.0/3.0.2/3.1.0
An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0.
network
low complexity
modsecurity CWE-400
5.3
2019-04-21 CVE-2019-11388 Resource Exhaustion vulnerability in Modsecurity Owasp Modsecurity Core Rule SET 3.0.0/3.0.2/3.1.0
An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0.
network
low complexity
modsecurity CWE-400
5.3
2019-04-21 CVE-2019-11387 Resource Exhaustion vulnerability in Modsecurity Owasp Modsecurity Core Rule SET 3.0.0/3.0.2/3.1.0
An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0.
network
low complexity
modsecurity CWE-400
5.3
2019-04-18 CVE-2018-16878 Resource Exhaustion vulnerability in multiple products
A flaw was found in pacemaker up to and including version 2.0.1.
5.5
2019-04-17 CVE-2019-9220 Resource Exhaustion vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1.
network
low complexity
gitlab CWE-400
7.5
2019-04-10 CVE-2019-0033 Resource Exhaustion vulnerability in Juniper Junos
A firewall bypass vulnerability in the proxy ARP service of Juniper Networks Junos OS allows an attacker to cause a high CPU condition leading to a Denial of Service (DoS).
network
low complexity
juniper CWE-400
7.5