CWE-772— Missing Release of Resource after Effective Lifetime
The product does not release a resource after its effective lifetime has ended, i.e., after the resource is no longer needed.— MITRE CWE catalog
518 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-772page 5 of 11
- CVE-2017-7943MEDIUMCVSS 6.5EG 6.52017-04-18
The ReadSVGImage function in svg.c in ImageMagick 7.0.5-4 allows remote attackers to consume an amount of available memory via a crafted file.
- CVE-2017-8086MEDIUMCVSS 6.5EG 6.52017-05-02
Memory leak in the v9fs_list_xattr function in hw/9pfs/9p-xattr.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (memory consumption) via vectors involving the orig_value variable.
- CVE-2017-8201MEDIUMCVSS 6.5EG 6.52017-11-22
MAX PRESENCE V100R001C00, TP3106 V100R002C00, TP3206 V100R002C00 have an a memory leak vulnerability in H323 protocol. An attacker logs in to the system as a user and send crafted packets to the affected products. Due to insufficient verif…
- CVE-2017-8280HIGHCVSS 7.0EG 7.02017-09-21
In all Qualcomm products with Android releases from CAF using the Linux kernel, during the wlan calibration data store and retrieve operation, there are some potential race conditions which lead to a memory leak and a buffer overflow durin…
- CVE-2017-8309HIGHCVSS 7.5EG 7.52017-05-23
Memory leak in the audio/audio.c in QEMU (aka Quick Emulator) allows remote attackers to cause a denial of service (memory consumption) by repeatedly starting and stopping audio capture.
- CVE-2017-8343MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadAAIImage function in aai.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8344MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadPCXImage function in pcx.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8345MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadMNGImage function in png.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8346MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadDCMImage function in dcm.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8347MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadEXRImage function in exr.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8348MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadMATImage function in mat.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8349MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadSFWImage function in sfw.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8350MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadJNGImage function in png.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8351MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadPCDImage function in pcd.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8352MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadXWDImage function in xwd.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8353MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadPICTImage function in pict.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8354MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadBMPImage function in bmp.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8355MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadMTVImage function in mtv.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8356MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadSUNImage function in sun.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8357MEDIUMCVSS 6.5EG 6.52017-04-30
In ImageMagick 7.0.5-5, the ReadEPTImage function in ept.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-8379MEDIUMCVSS 6.5EG 6.52017-05-23
Memory leak in the keyboard input event handlers support in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption) by rapidly generating large keyboard events.
- CVE-2017-8421MEDIUMCVSS 5.5EG 5.52017-05-02
The function coff_set_alignment_hook in coffcode.h in Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has a memory leak vulnerability which can cause memory exhaustion in objdump via a crafted PE fil…
- CVE-2017-8765MEDIUMCVSS 6.5EG 6.52017-05-04
The function named ReadICONImage in coders\icon.c in ImageMagick 7.0.5-5 has a memory leak vulnerability which can cause memory exhaustion via a crafted ICON file.
- CVE-2017-8830MEDIUMCVSS 6.5EG 6.52017-05-08
In ImageMagick 7.0.5-6, the ReadBMPImage function in bmp.c:1379 allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-9143MEDIUMCVSS 6.5EG 6.52017-05-22
In ImageMagick 7.0.5-5, the ReadARTImage function in coders/art.c allows attackers to cause a denial of service (memory leak) via a crafted .art file.
- CVE-2017-9261MEDIUMCVSS 6.5EG 6.52017-05-29
In ImageMagick 7.0.5-6 Q16, the ReadMNGImage function in coders/png.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-9262MEDIUMCVSS 6.5EG 6.52017-05-29
In ImageMagick 7.0.5-6 Q16, the ReadJNGImage function in coders/png.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-9403MEDIUMCVSS 6.5EG 6.52017-06-02
In LibTIFF 4.0.7, a memory leak vulnerability was found in the function TIFFReadDirEntryLong8Array in tif_dirread.c, which allows attackers to cause a denial of service via a crafted file.
- CVE-2017-9404MEDIUMCVSS 6.5EG 6.52017-06-02
In LibTIFF 4.0.7, a memory leak vulnerability was found in the function OJPEGReadHeaderInfoSecTablesQTable in tif_ojpeg.c, which allows attackers to cause a denial of service via a crafted file.
- CVE-2017-9405MEDIUMCVSS 6.5EG 6.52017-06-02
In ImageMagick 7.0.5-5, the ReadICONImage function in icon.c:452 allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-9406MEDIUMCVSS 6.5EG 6.52017-06-02
In Poppler 0.54.0, a memory leak vulnerability was found in the function gmalloc in gmem.cc, which allows attackers to cause a denial of service via a crafted file.
- CVE-2017-9407MEDIUMCVSS 6.5EG 6.52017-06-02
In ImageMagick 7.0.5-5, the ReadPALMImage function in palm.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-9408MEDIUMCVSS 6.5EG 6.52017-06-02
In Poppler 0.54.0, a memory leak vulnerability was found in the function Object::initArray in Object.cc, which allows attackers to cause a denial of service via a crafted file.
- CVE-2017-9409MEDIUMCVSS 6.5EG 6.52017-06-02
In ImageMagick 7.0.5-5, the ReadMPCImage function in mpc.c allows attackers to cause a denial of service (memory leak) via a crafted file.
- CVE-2017-9439MEDIUMCVSS 6.5EG 6.52017-06-05
In ImageMagick 7.0.5-5, a memory leak was found in the function ReadPDBImage in coders/pdb.c, which allows attackers to cause a denial of service via a crafted file.
- CVE-2017-9440MEDIUMCVSS 6.5EG 6.52017-06-05
In ImageMagick 7.0.5-5, a memory leak was found in the function ReadPSDChannel in coders/psd.c, which allows attackers to cause a denial of service via a crafted file.
- CVE-2017-9815MEDIUMCVSS 6.5EG 6.52017-06-22
In LibTIFF 4.0.7, the TIFFReadDirEntryLong8Array function in libtiff/tif_dirread.c mishandles a malloc operation, which allows attackers to cause a denial of service (memory leak within the function _TIFFmalloc in tif_unix.c) via a crafted…
- CVE-2017-9936MEDIUMCVSS 6.5EG 6.52017-06-26
In LibTIFF 4.0.8, there is a memory leak in tif_jbig.c. A crafted TIFF document can lead to a memory leak resulting in a remote denial of service attack.
- CVE-2018-0158CRITICALCVSS 8.6EG 9.0⚠ KEV2018-03-28
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a memory leak or a reload of an affected device that leads to a …
- CVE-2018-0165HIGHCVSS 7.4EG 7.42018-03-28
A vulnerability in the Internet Group Management Protocol (IGMP) packet-processing functionality of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to exhaust buffers on an affected device, resulting in a denial of …
- CVE-2018-0421HIGHCVSS 8.6EG 8.62018-10-05
A vulnerability in TCP connection management in Cisco Prime Access Registrar could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition when the application unexpectedly restarts. The vulnerability is due …
- CVE-2018-0471HIGHCVSS 7.4EG 7.42018-10-05
A vulnerability in the Cisco Discovery Protocol (CDP) module of Cisco IOS XE Software Releases 16.6.1 and 16.6.2 could allow an unauthenticated, adjacent attacker to cause a memory leak that may lead to a denial of service (DoS) condition.…
- CVE-2018-1000036MEDIUMCVSS 5.5EG 5.52018-05-24
In Artifex MuPDF 1.12.0 and earlier, multiple memory leaks in the PDF parser allow an attacker to cause a denial of service (memory leak) via a crafted file.
- CVE-2018-1000215HIGHCVSS 7.5EG 7.52018-08-20
Dave Gamble cJSON version 1.7.6 and earlier contains a CWE-772 vulnerability in cJSON library that can result in Denial of Service (DoS). This attack appear to be exploitable via If the attacker can force the data to be printed and the sys…
- CVE-2018-10205MEDIUMCVSS 5.3EG 5.32018-04-19
hyperstart 1.0.0 in HyperHQ Hyper has memory leaks in the container_setup_modules and hyper_rescan_scsi functions in container.c, related to runV 1.0.0 for Docker.
- CVE-2018-10801MEDIUMCVSS 6.5EG 6.52018-05-08
TIFFClientOpen in tif_unix.c in LibTIFF 3.8.2 has memory leaks, as demonstrated by bmp2tiff.
- CVE-2018-10804MEDIUMCVSS 6.5EG 6.52018-05-08
ImageMagick version 7.0.7-28 contains a memory leak in WriteTIFFImage in coders/tiff.c.
- CVE-2018-10805MEDIUMCVSS 6.5EG 6.52018-05-08
ImageMagick version 7.0.7-28 contains a memory leak in ReadYCBCRImage in coders/ycbcr.c.
- CVE-2018-10851HIGHCVSS 5.3EG 7.52018-11-29
PowerDNS Authoritative Server 3.3.0 up to 4.1.4 excluding 4.1.5 and 4.0.6, and PowerDNS Recursor 3.2 up to 4.1.4 excluding 4.1.5 and 4.0.9, are vulnerable to a memory leak while parsing malformed records that can lead to remote denial of s…
- CVE-2018-10924MEDIUMCVSS 5.3EG 6.52018-09-04
It was discovered that fsync(2) system call in glusterfs client code leaks memory. An authenticated attacker could use this flaw to launch a denial of service attack by making gluster clients consume memory of the host machine.
Map vulnerabilities like CWE-772 to your infrastructure
EchelonGraph correlates every CVE — across CWE-772 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →