Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2019-04-03 CVE-2018-4409 Resource Exhaustion vulnerability in Apple products
A resource exhaustion issue was addressed with improved input validation.
network
low complexity
apple CWE-400
6.5
2019-04-02 CVE-2019-4080 Resource Exhaustion vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server Admin Console 7.5, 8.0, 8.5, and 9.0 is vulnerable to a potential denial of service, caused by improper parameter parsing.
network
low complexity
ibm CWE-400
6.5
2019-04-01 CVE-2018-3979 Resource Exhaustion vulnerability in multiple products
A remote denial-of-service vulnerability exists in the way the Nouveau Display Driver (the default Ubuntu Nvidia display driver) handles GPU shader execution.
network
low complexity
canonical nvidia CWE-400
6.5
2019-04-01 CVE-2018-13296 Resource Exhaustion vulnerability in Synology Mailplus Server
Uncontrolled resource consumption vulnerability in TLS configuration in Synology MailPlus Server before 2.0.5-0606 allows remote attackers to conduct denial-of-service attacks via client-initiated renegotiation.
network
low complexity
synology CWE-400
7.5
2019-03-25 CVE-2019-4046 Resource Exhaustion vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to a denial of service, caused by improper handling of request headers.
network
low complexity
ibm CWE-400
7.5
2019-03-25 CVE-2019-3874 Resource Exhaustion vulnerability in multiple products
The SCTP socket buffer used by a userspace application is not accounted by the cgroups subsystem.
6.5
2019-03-21 CVE-2018-19158 Resource Exhaustion vulnerability in Colossusxt Colossuscoinxt
ColossusCoinXT through 1.0.5 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of service, exploitable by an attacker who acquires even a small amount of stake/coins in the system.
network
low complexity
colossusxt CWE-400
7.5
2019-03-21 CVE-2018-18898 Resource Exhaustion vulnerability in multiple products
The email-ingestion feature in Best Practical Request Tracker 4.1.13 through 4.4 allows denial of service by remote attackers via an algorithmic complexity attack on email address parsing.
7.5
2019-03-13 CVE-2019-9750 Resource Exhaustion vulnerability in Iotivity
In IoTivity through 1.3.1, the CoAP server interface can be used for Distributed Denial of Service attacks using source IP address spoofing and UDP-based traffic amplification.
network
low complexity
iotivity CWE-400
critical
9.1
2019-03-06 CVE-2019-9587 Resource Exhaustion vulnerability in Glyphandcog Xpdfreader 4.01
There is a stack consumption issue in md5Round1() located in Decrypt.cc in Xpdf 4.01.
local
low complexity
glyphandcog CWE-400
7.8