VYPR

CWE-772

Missing Release of Resource after Effective Lifetime

BaseDraftLikelihood: High

Description

The product does not release a resource after its effective lifetime has ended, i.e., after the resource is no longer needed.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-469

CVEs mapped to this weakness (482)

page 10 of 25
  • CVE-2018-20622MedDec 31, 2018
    risk 0.42cvss 6.5epss 0.03

    JasPer 2.0.14 has a memory leak in base/jas_malloc.c in libjasper.a when "--output-format jp2" is used.

  • CVE-2018-20540MedDec 28, 2018
    risk 0.42cvss 6.5epss 0.01

    There is memory leak at liblas::Open (liblas/liblas.hpp) in libLAS 1.8.1.

  • CVE-2018-20408MedDec 23, 2018
    risk 0.42cvss 6.5epss 0.01

    An issue was discovered in Bento4 1.5.1-627. There is a memory leak in AP4_StdcFileByteStream::Create in System/StdC/Ap4StdCFileByteStream.cpp, as demonstrated by mp42hls.

  • CVE-2018-20407MedDec 23, 2018
    risk 0.42cvss 6.5epss 0.01

    An issue was discovered in Bento4 1.5.1-627. There is a memory leak in AP4_DescriptorFactory::CreateDescriptorFromStream in Core/Ap4DescriptorFactory.cpp, as demonstrated by mp42hls.

  • CVE-2018-18897MedNov 2, 2018
    risk 0.42cvss 6.5epss 0.02

    An issue was discovered in Poppler 0.71.0. There is a memory leak in GfxColorSpace::setDisplayProfile in GfxState.cc, as demonstrated by pdftocairo.

  • CVE-2018-18544MedOct 21, 2018
    risk 0.42cvss 6.5epss 0.02

    There is a memory leak in the function WriteMSLImage of coders/msl.c in ImageMagick 7.0.8-13 Q16, and the function ProcessMSLScript of coders/msl.c in GraphicsMagick before 1.3.31.

  • CVE-2018-18482MedOct 18, 2018
    risk 0.42cvss 6.5epss 0.01

    An issue was discovered in libpg_query 10-1.0.2. There is a memory leak in pg_query_raw_parse in pg_query_parse.c, which might lead to a denial of service.

  • CVE-2018-17967MedOct 3, 2018
    risk 0.42cvss 6.5epss 0.01

    ImageMagick 7.0.7-28 has a memory leak vulnerability in ReadBGRImage in coders/bgr.c.

  • CVE-2018-17966MedOct 3, 2018
    risk 0.42cvss 6.5epss 0.02

    ImageMagick 7.0.7-28 has a memory leak vulnerability in WritePDBImage in coders/pdb.c.

  • CVE-2018-17965MedOct 3, 2018
    risk 0.42cvss 6.5epss 0.02

    ImageMagick 7.0.7-28 has a memory leak vulnerability in WriteSGIImage in coders/sgi.c.

  • CVE-2018-17437MedSep 24, 2018
    risk 0.42cvss 6.5epss 0.01

    Memory leak in the H5O_dtype_decode_helper() function in H5Odtype.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service (memory consumption) via a crafted HDF5 file.

  • CVE-2018-17234MedSep 20, 2018
    risk 0.42cvss 6.5epss 0.01

    Memory leak in the H5O__chunk_deserialize() function in H5Ocache.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service (memory consumption) via a crafted HDF5 file.

  • CVE-2018-16750MedSep 9, 2018
    risk 0.42cvss 6.5epss 0.03

    In ImageMagick 7.0.7-29 and earlier, a memory leak in the formatIPTCfromBuffer function in coders/meta.c was found.

  • CVE-2018-16548MedSep 5, 2018
    risk 0.42cvss 6.5epss 0.02

    An issue was discovered in ZZIPlib through 0.13.69. There is a memory leak triggered in the function __zzip_parse_root_directory in zip.c, which will lead to a denial of service attack.

  • CVE-2018-14437MedJul 20, 2018
    risk 0.42cvss 6.5epss 0.02

    ImageMagick 7.0.8-4 has a memory leak in parse8BIM in coders/meta.c.

  • CVE-2018-14436MedJul 20, 2018
    risk 0.42cvss 6.5epss 0.02

    ImageMagick 7.0.8-4 has a memory leak in ReadMIFFImage in coders/miff.c.

  • CVE-2018-14435MedJul 20, 2018
    risk 0.42cvss 6.5epss 0.02

    ImageMagick 7.0.8-4 has a memory leak in DecodeImage in coders/pcd.c.

  • CVE-2018-14434MedJul 20, 2018
    risk 0.42cvss 6.5epss 0.03

    ImageMagick 7.0.8-4 has a memory leak for a colormap in WriteMPCImage in coders/mpc.c.

  • CVE-2018-13419MedJul 7, 2018
    risk 0.42cvss 6.5epss 0.01

    An issue has been found in libsndfile 1.0.28. There is a memory leak in psf_allocate in common.c, as demonstrated by sndfile-convert. NOTE: The maintainer and third parties were unable to reproduce and closed the issue

  • CVE-2018-11656MedJun 1, 2018
    risk 0.42cvss 6.5epss 0.02

    In ImageMagick 7.0.7-20 Q16 x86_64, a memory leak vulnerability was found in the function ReadDCMImage in coders/dcm.c, which allows attackers to cause a denial of service via a crafted DCM image file.