In the Linux kernel, the following vulnerability has been resolved: net: bcmasp: fix memory leak when bringing down int
In the Linux kernel, the following vulnerability has been resolved: of: dynamic: Synchronize of_changeset_destroy() wit
In the Linux kernel, the following vulnerability has been resolved: firmware: qcom: uefisecapp: Fix memory related IO e
In the Linux kernel, the following vulnerability has been resolved: KVM: PPC: Fix kvm_arch_vcpu_ioctl vcpu_load leak v
Various Issues Due To Exposed SMI Handler in AmdPspP2CmboxV2. The first issue can be leveraged to bypass the protections
In the Linux kernel, the following vulnerability has been resolved: ALSA: hda/cs_dsp_ctl: Use private_free for control
In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix kernel crash during resume Curre
In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_erp: Fix object nesting warning
In the Linux kernel, the following vulnerability has been resolved: idpf: fix memory leaks and crashes while performing
In the Linux kernel, the following vulnerability has been resolved: bpf: Preserve param->string when parsing mount opti
In the Linux kernel, the following vulnerability has been resolved: iio: gts-helper: Fix memory leaks for the error pat
In the Linux kernel, the following vulnerability has been resolved: xen: Fix the issue of resource not being properly r
In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix out_fput in iommufd_fault_alloc() As
In the Linux kernel, the following vulnerability has been resolved: ionic: Fix netdev notifier unregister on failure I
In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Several fixes to bpf_msg_pop_data Se
A Missing Release of Memory after Effective Lifetime vulnerability in the Routing Protocol Daemon (rpd) of Juniper Netw
openvswitch 2.17.8 was discovered to contain a memory leak via the function xmalloc__ in openvswitch-2.17.8/lib/util.c.
freeglut 3.4.0 was discovered to contain a memory leak via the menuEntry variable in the glutAddSubMenu function.
freeglut through 3.4.0 was discovered to contain a memory leak via the menuEntry variable in the glutAddMenuEntry functi
gpac v2.2.1 was discovered to contain a memory leak via the dst_props variable in the gf_filter_pid_merge_properties_int
gpac v2.2.1 (fixed in v2.4.0) was discovered to contain a memory leak via the gfio_blob variable in the gf_fileio_from_b
Transient DOS in Multi-Mode Call Processor due to UE failure because of heap leakage.
libLAS 1.8.1 contains a memory leak vulnerability in /libLAS/apps/ts2las.cpp.
Atheme 7.2.12 contains a memory leak vulnerability in /atheme/src/crypto-benchmark/main.c.
A memory leak issue discovered in parseSWF_FREECHARACTER in libming v0.4.8 allows attackers to cause a denial of service
Transient DOS while processing IE fragments from server during DTLS handshake.
Transient DOS while processing multiple IKEV2 Informational Request to device from IPSEC server with different identifie
In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: fix skb leak and crash on ooo fr
A memory leak flaw was found in Golang in the RSA encrypting/decrypting code, which might lead to a resource exhaustion
A memory leak exists in Palo Alto Networks PAN-OS software that enables an attacker to send a burst of crafted packets t
In the Linux kernel, the following vulnerability has been resolved: virtio: packed: fix unmap leak for indirect desc ta
In the Linux kernel, the following vulnerability has been resolved: xen-netfront: Add missing skb_mark_for_recycle Not
In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Fix a slow server-side memory leak with RPC
In the Linux kernel, the following vulnerability has been resolved: net: mana: Fix Rx DMA datasize and skb_over_panic
In the Linux kernel, the following vulnerability has been resolved: net/smc: fix neighbour and rtable leak in smc_ib_fi
In the Linux kernel, the following vulnerability has been resolved: RDMA/cma: Fix kmemleak in rdma_core observed during
A Missing Release of Memory after Effective Lifetime vulnerability in the routing process daemon (rpd) of Juniper Networ
In versions of Apache CXF before 3.6.4 and 4.0.5 (3.5.x and lower versions are not impacted), a CXF HTTP client conduit
In the Linux kernel, the following vulnerability has been resolved: ibmvnic: Add tx check to prevent skb leak Below is
In the Linux kernel, the following vulnerability has been resolved: nvmet: fix a possible leak when destroy a ctrl duri
When a canister method is called via ic_cdk::call* , a new Future CallFuture is created and can be awaited by the calle
Due to a memory leak, a denial-of-service vulnerability exists in the Rockwell Automation affected products. A malicious
In Eclipse Mosquitto up to version 2.0.18a, an attacker can achieve memory leaking, segmentation fault or heap-use-after
In the Linux kernel, the following vulnerability has been resolved: net: bcmasp: fix potential memory leak in bcmasp_xm
In the Linux kernel, the following vulnerability has been resolved: smb: Don't leak cfid when reconnect races with open
In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix the memleak while create new ctrl fai
In the Linux kernel, the following vulnerability has been resolved: media: i2c: et8ek8: Don't strip remove function whe
In the Linux kernel, the following vulnerability has been resolved: power: supply: rk817: Fix node refcount leak Dan C
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix memory leak in mlx5_core_destroy_cq(
In the Linux kernel, the following vulnerability has been resolved: sctp: fix kernel-infoleak for SCTP sockets syzbot
Frequently Asked Questions
What is CWE-401?
CWE-401 (CWE-401) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-401?
There are 2,289 CVE records associated with CWE-401 in our database. Of these, 10 are critical severity, 401 are high severity, and 1380 are medium severity.
How can I protect against CWE-401 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-401 using AI-powered security agents.
Detect CWE-401 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-401 vulnerabilities across your infrastructure.
Get Started