An issue was discovered in NASM version 2.16rc0. There are memory leaks in nasm_calloc() in nasmlib/alloc.c.
An issue was discovered in lrzip version 0.641. There are memory leaks in fill_buffer() in stream.c.
An issue was discovered in NASM version 2.16rc0. There are memory leaks in nasm_malloc() in nasmlib/alloc.c.
SWFTools commit 772e55a2 was discovered to contain a memory leak via /lib/mem.c.
tifig v0.2.2 was discovered to contain a memory leak via operator new[](unsigned long) at /asan/asan_new_delete.cpp.
A flaw was found in the Linux kernel. A memory leak problem was found in mbochs_ioctl in samples/vfio-mdev/mbochs.c in V
A memory leak flaw was found in the Linux kernel's ccp_run_aes_gcm_cmd() function that allows an attacker to cause a den
Mplayer SVN-r38374-13.0.1 is vulnerable to Memory Leak via vf.c and vf_vo.c.
SWFTools commit 772e55a2 was discovered to contain a memory leak via /lib/mem.c.
An issue was discovered in Bento4 1.6.0-639. A memory leak exists in AP4_StdcFileByteStream::Create(AP4_FileByteStream*,
An Allocation of Resources Without Limits or Throttling and a Missing Release of Memory after Effective Lifetime vulnera
Bento4 1.6.0 has memory leaks via the mp4fragment.
timg v1.4.4 was discovered to contain a memory leak via the function timg::QueryBackgroundColor() at /timg/src/term-quer
Xenstore: Cooperating guests can create arbitrary numbers of nodes T[his CNA information record relates to multiple CVEs
Xenstore: Cooperating guests can create arbitrary numbers of nodes T[his CNA information record relates to multiple CVEs
Xenstore: Guests can create arbitrary number of nodes via transactions T[his CNA information record relates to multiple
Xenstore: Guests can create arbitrary number of nodes via transactions T[his CNA information record relates to multiple
GPAC v2.1-DEV-rev368-gfd054169b-master was discovered to contain a memory leak via the component gf_list_new at utils/li
GPAC v2.1-DEV-rev368-gfd054169b-master was discovered to contain a memory leak via the component gf_odf_new_iod at odf/o
Insufficient memory cleanup in the AMD Secure Processor (ASP) Trusted Execution Environment (TEE) may allow an authentic
GPAC v2.1-DEV-rev428-gcb8ae46c8-master was discovered to contain a memory leak via the function dimC_box_read at isomedi
When running with FIPS mode enabled, Mirantis Container Runtime 20.10.8 leaks memory during TLS Handshakes which could b
An Improper Release of Memory Before Removing Last Reference vulnerability in the Session Initiation Protocol (SIP) Appl
A vulnerability classified as problematic was found in Linux Kernel. This vulnerability affects the function macvlan_han
A vulnerability has been found in Axiomatic Bento4 and classified as problematic. This vulnerability affects the functio
A vulnerability was found in Axiomatic Bento4 and classified as problematic. This issue affects the function AP4_AvccAto
Dell PowerScale OneFS, 8.2.2 - 9.3.0.x, contain a missing release of memory after effective lifetime vulnerability. An a
A memory leak flaw in the Linux kernel's hugetlbfs memory usage was found in the way the user maps some regions of memor
Tensorflow is an Open Source Machine Learning Framework. If a graph node is invalid, TensorFlow can leak memory in the i
Tensorflow is an Open Source Machine Learning Framework. When decoding PNG images TensorFlow can produce a memory leak i
A Memory Leak vulnerability exists in SQLite Project SQLite3 3.35.1 and 3.37.0 via maliciously crafted SQL Queries (made
A vulnerability was found in Linux Kernel. It has been declared as problematic. Affected by this vulnerability is the fu
A vulnerability was found in Axiomatic Bento4. It has been rated as problematic. Affected by this issue is the function
A vulnerability classified as problematic was found in GPAC. Affected by this vulnerability is the function svg_parse_pr
A vulnerability, which was classified as problematic, has been found in Linux Kernel. This issue affects the function un
A vulnerability, which was classified as problematic, has been found in X.org Server. Affected by this issue is the func
A vulnerability has been found in Linux Kernel and classified as problematic. This vulnerability affects the function l2
A vulnerability was found in Linux Kernel and classified as problematic. Affected by this issue is the function rlb_arp_
A vulnerability classified as problematic has been found in Linux Kernel. Affected is the function j1939_session_destroy
A vulnerability was found in ImageMagick-7.0.11-5, where executing a crafted file with the convert command, ASAN detects
A vulnerability was found in Linux Kernel. It has been rated as problematic. This issue affects some unknown processing
A vulnerability, which was classified as problematic, has been found in Linux Kernel. This issue affects the function ni
A vulnerability was found in Linux Kernel. It has been declared as problematic. This vulnerability affects the function
Dell BIOS versions contain a Missing Release of Resource after Effective Lifetime vulnerability. A local authenticated a
Shiftfs, an out-of-tree stacking file system included in Ubuntu Linux kernels, did not properly handle faults occurring
Multiple vulnerabilities in the ingress packet processing function of Cisco IOS XR Software could allow an unauthenticat
A vulnerability in the network stack of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a
A vulnerability in the proxy service of Cisco AsyncOS for Cisco Web Security Appliance (WSA) could allow an unauthentica
FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to
A vulnerability in the memory management of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defens
Frequently Asked Questions
What is CWE-401?
CWE-401 (CWE-401) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-401?
There are 2,289 CVE records associated with CWE-401 in our database. Of these, 10 are critical severity, 401 are high severity, and 1380 are medium severity.
How can I protect against CWE-401 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-401 using AI-powered security agents.
Detect CWE-401 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-401 vulnerabilities across your infrastructure.
Get Started