CWE-772
469 CVEs • Abstraction: Base • Likelihood of Exploit: High
Missing Release of Resource after Effective Lifetime
The product does not release a resource after its effective lifetime has ended, i.e., after the resource is no longer needed.
CVEs (469)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Multiple memory leaks in the IP module in the kernel in Sun Solaris 8 through 10, and OpenSolaris before snv_109, allow local users to cause a denial of service (memory consumption) via vectors related to (1) M_DATA, (2)...Show more |
3Canonical LinuxSuse6Linux Enterprise Debuginfo Linux Enterprise DesktopLinux Enterprise Server+3 moreApr 23, 2026 Sep 15, 2009 N/A· v4 N/A· v3 7.1 HIGH· v2 Memory leak in the appletalk subsystem in the Linux kernel 2.4.x through 2.4.37.6 and 2.6.x through 2.6.31, when the appletalk and ipddp modules are loaded but the ipddp"N" device is not found, allows remote attackers to...Show more |
Memory leak in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4, when VoIP is configured, allows remote attackers to cause a denial of service (memory consumption and voice-service outa...Show more |
IBM Rational Build Forge 7.0.2 allows remote attackers to cause a denial of service (CPU consumption) via a port scan, which spawns multiple bfagent server processes that attempt to read data from closed sockets. |
1Digium 2Asterisk Asterisk Appliance Developer KitApr 23, 2026 Jul 31, 2007 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 The IAX2 channel driver (chan_iax2) in Asterisk Open 1.2.x before 1.2.23, 1.4.x before 1.4.9, and Asterisk Appliance Developer Kit before 0.6.0, when configured to allow unauthenticated calls, allows remote attackers to...Show more |
3Apple ClamavDebian3Clamav Debian LinuxMac Os X ServerApr 23, 2026 Feb 16, 2007 N/A· v4 7.5 HIGH· v3 4.3 MEDIUM· v2 Clam AntiVirus ClamAV before 0.90 does not close open file descriptors under certain conditions, which allows remote attackers to cause a denial of service (file descriptor consumption and failed scans) via CAB archives...Show more |
A memory leak in Apache 2.0 through 2.0.44 allows remote attackers to cause a denial of service (memory consumption) via large chunks of linefeed characters, which causes Apache to allocate 80 bytes for each linefeed. |
6tunnel 0.08 and earlier does not properly close sockets that were initiated by a client, which allows remote attackers to cause a denial of service (resource exhaustion) by repeatedly connecting to and disconnecting fro...Show more |
Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a denial of service (resource exhaustion) via a series of connections containing malformed data, aka t...Show more |