CVEbaza.plSłownik CWECWE-1325
Common Weakness Enumeration

CWE-1325

Improperly Controlled Sequential Memory Allocation

Kategoria: BaseCVE: 22
Opis

Produkt zarządza grupą obiektów lub zasobów i wykonuje osobną alokację pamięci dla każdego obiektu, jednak nie ogranicza prawidłowo całkowitej ilości pamięci zużywanej przez wszystkie połączone obiekty. Może to prowadzić do wyczerpania dostępnych zasobów pamięciowych.

Description (EN)

The product manages a group of objects or resources and performs a separate memory allocation for each object, but it does not properly limit the total amount of memory that is consumed by all of the combined objects.

Podatności CVE z CWE-1325 (22)
7.8
CVSS
HIGH
CVE-2024-27796

The issue was addressed with improved checks. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, macOS Sonoma 14.5, macOS Ventura 13.6.7. An attacker may be able to elevate privileges.

pub. 2024-05-14
7.5
CVSS
HIGH
CVE-2026-34183

Issue summary: Remote peer may exhaust heap memory of the QUIC server or client by flooding it with packets containing PATH_CHALLENGE frames. Impact summary: A malicious remote peer can cause an unbounded memory allocation which can lead to an abnormal termination of the application acting as a QUIC client or server and a Denial of Service. A remote peer may exhaust heap memory by flooding the local QUIC stack with PATH_CHALLENGE frames. The local QUIC stack allocates a PATH_RESPONSE frame for every PATH_CHALLENGE it receives. The allocated PATH_RESPONSE frame gets freed only when the remote peer acknowledges reception of the PATH_RESPONSE frame which will not be done by a malicious peer. The FIPS modules in 4.0, 3.6, 3.5, 3.4, and 3.0 are not affected by this issue. The QUIC stack is outside of OpenSSL FIPS module boundary.

pub. 2026-06-09
7.5
CVSS
HIGH
CVE-2025-2240

A flaw was found in Smallrye, where smallrye-fault-tolerance is vulnerable to an out-of-memory (OOM) issue. This vulnerability is externally triggered when calling the metrics URI. Every call creates a new object within meterMap and may lead to a denial of service (DoS) issue.

pub. 2025-03-12
7.5
CVSS
HIGH
CVE-2023-3341

The code that processes control channel messages sent to `named` calls certain functions recursively during packet parsing. Recursion depth is only limited by the maximum accepted packet size; depending on the environment, this may cause the packet-parsing code to run out of available stack memory, causing `named` to terminate unexpectedly. Since each incoming control channel message is fully parsed before its contents are authenticated, exploiting this flaw does not require the attacker to hold a valid RNDC key; only network access to the control channel's configured TCP port is necessary. This issue affects BIND 9 versions 9.2.0 through 9.16.43, 9.18.0 through 9.18.18, 9.19.0 through 9.19.16, 9.9.3-S1 through 9.16.43-S1, and 9.18.0-S1 through 9.18.18-S1.

pub. 2023-09-20
7.5
CVSS
HIGH
CVE-2021-43174

NLnet Labs Routinator versions 0.9.0 up to and including 0.10.1, support the gzip transfer encoding when querying RRDP repositories. This encoding can be used by an RRDP repository to cause an out-of-memory crash in these versions of Routinator. RRDP uses XML which allows arbitrary amounts of white space in the encoded data. The gzip scheme compresses such white space extremely well, leading to very small compressed files that become huge when being decompressed for further processing, big enough that Routinator runs out of memory when parsing input data waiting for the next XML element.

pub. 2021-11-09
7.1
CVSS
HIGH
CVE-2026-13056

Podatność w MongoDB pozwala uwierzytelnionemu atakującemu na spowodowanie awarii serwera poprzez celowo skonstruowane zapytanie. Skutkiem jest niedostępność usługi (DoS) wynikająca z błędu braku pamięci (OOM).

pub. 2026-07-22
7.1
CVSS
HIGH
CVE-2026-8199

An authenticated user can cause excess memory usage via bitwise match expression AST processing of $bitsAllSet, $bitsAnySet, $bitsAllClear, and $bitsAnyClear. This contributes to memory pressure and may lead to availability loss by OOM. This issue impacts MongoDB Server v7.0 versions prior to 7.0.34, v8.0 versions prior to 8.0.23, v8.2 versions prior to 8.2.9 and v8.3 versions prior to 8.3.2.

pub. 2026-05-13
6.9
CVSS
MEDIUM
CVE-2026-54080

veraPDF PDF parser is a PDF parser for veraPDF. Prior to 1.30.2 and 1.31.23, veraPDF-parser contains a denial-of-service vulnerability in veraPDF-parser/src/main/java/org/verapdf/pd/font/cmap/CMapParser.java and veraPDF-parser/src/main/java/org/verapdf/parser/postscript/PSOperator.java, where a crafted Type 0 font /Encoding or /ToUnicode CMap stream can execute unbounded PostScript array allocation or a zero-increment for loop and exhaust validator memory or CPU. This issue is fixed in versions 1.30.2 and 1.31.23.

pub. 2026-07-29
6.9
CVSS
MEDIUM
CVE-2026-54081

veraPDF PDF parser is a PDF parser for veraPDF. Prior to 1.30.2 and 1.31.23, veraPDF-parser contains a denial-of-service vulnerability in veraPDF-parser/src/main/java/org/verapdf/pd/font/type1/Type1FontProgram.java and veraPDF-parser/src/main/java/org/verapdf/parser/postscript/PSOperator.java, where a crafted Type 1 font /FontDescriptor /FontFile program can execute unbounded PostScript array allocation, a zero-increment for loop, or self-recursive toExecute user dictionary lookups and exhaust validator memory, CPU, or stack. This issue is fixed in versions 1.30.2 and 1.31.23.

pub. 2026-07-29
6.5
CVSS
MEDIUM
CVE-2026-18772

Improperly controlled sequential memory allocation vulnerability in Samsung Open Source rlottie allows Exponential Data Expansion.

pub. 2026-08-04
6.3
CVSS
MEDIUM
CVE-2026-24819

Luka podatności Improperly Controlled Sequential Memory Allocation w bibliotece foxinmy weixin4j (moduły weixin4j-base/src/main/java/com/foxinmy/weixin4j/util). Podatność dotyczy plików programu CharArrayBuffer.Java oraz ClassUtil.Java. Problem wpływa na weixin4j.

pub. 2026-01-27
5.9
CVSS
MEDIUM
CVE-2024-2511

Issue summary: Some non-default TLS server configurations can cause unbounded memory growth when processing TLSv1.3 sessions Impact summary: An attacker may exploit certain server configurations to trigger unbounded memory growth that would lead to a Denial of Service This problem can occur in TLSv1.3 if the non-default SSL_OP_NO_TICKET option is being used (but not if early_data support is also configured and the default anti-replay protection is in use). In this case, under certain conditions, the session cache can get into an incorrect state and it will fail to flush properly as it fills. The session cache will continue to grow in an unbounded manner. A malicious client could deliberately create the scenario for this failure to force a Denial of Service. It may also happen by accident in normal operation. This issue only affects TLS servers supporting TLSv1.3. It does not affect TLS clients. The FIPS modules in 3.2, 3.1 and 3.0 are not affected by this issue. OpenSSL 1.0.2 is also not affected by this issue.

pub. 2024-04-08
5.5
CVSS
MEDIUM
CVE-2026-6533

Silnik dekompresji LZ77 w module analizy pakietów Wireshark w wersjach 4.6.0 do 4.6.4 oraz 4.4.0 do 4.4.14 zawiera podatność umożliwiającą denial of service poprzez crash silnika.

pub. 2026-04-30
5.5
CVSS
MEDIUM
CVE-2026-6535

Silnik analityczny zlib decompression w Wireshark 4.6.0 do 4.6.4 oraz 4.4.0 do 4.4.14 dopuszcza denial of service.

pub. 2026-04-30
5.5
CVSS
MEDIUM
CVE-2026-6867

Crash dissectora protokołu SMB2 w Wireshark w wersjach 4.6.0 do 4.6.4 oraz 4.4.0 do 4.4.14 umożliwia DoS.

pub. 2026-04-30
5.5
CVSS
MEDIUM
CVE-2026-6869

Podatność w dissectorze protokołu WebSocket w Wireshark 4.6.0 do 4.6.4 oraz 4.4.0 do 4.4.14 umożliwia denial of service.

pub. 2026-04-30
5.5
CVSS
MEDIUM
CVE-2025-13945

Crash dissektora HTTP3 w Wireshark 4.6.0 i 4.6.1 umożliwia DoS

pub. 2025-12-03
5.5
CVSS
MEDIUM
CVE-2024-27804

The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.3, watchOS 10.5. An app may be able to cause unexpected system termination.

pub. 2024-05-14
5.3
CVSS
MEDIUM
CVE-2026-71436

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. From version 10.6.0 until 10.9.8 and 11.16.1, Mermaid XY Charts are vulnerable to an infinite loop denial of service in the setXAxisRangeData function when configuring an X-Axis with invalid parameters. Because each loop iteration appends an element to an array, this generally causes a RangeError to appear after a few seconds, but it may instead cause the page or JavaScript process to crash from memory exhaustion, depending on the environment. This issue is fixed in versions 10.9.8 and 11.16.1.

pub. 2026-08-06
5.3
CVSS
MEDIUM
CVE-2023-52891

A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.5), SIMATIC Energy Manager PRO (All versions < V7.5), SIMATIC IPC DiagBase (All versions), SIMATIC IPC DiagMonitor (All versions), SIMIT V10 (All versions), SIMIT V11 (All versions < V11.1). Unified Automation .NET based OPC UA Server SDK before 3.2.2 used in Siemens products are affected by a similar vulnerability as documented in CVE-2023-27321 for the OPC Foundation UA .NET Standard implementation. A successful attack may lead to high load situation and memory exhaustion, and may block the server.

pub. 2024-07-09
Pokazano 20 z 22 podatności
Informacje
ID: CWE-1325
Typ: Base
Podatności: 22
MITRE CWE ↗
← Słownik CWE