CWE-401: Missing Release of Memory after Effective Lifetime — known CVE vulnerabilities
CVEs classified under CWE-401 (Missing Release of Memory after Effective Lifetime), ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (50)
CVE-2026-46289 — CVSS 9.8 (critical): In the Linux kernel, the following vulnerability has been resolved: lib/scatterlist: fix length calculations in extract_kvec_to_sg Patch…
CVE-2025-39948 — CVSS 9.8 (critical): In the Linux kernel, the following vulnerability has been resolved: ice: fix Rx page leak on multi-buffer frames The ice_put_rx_mbuf()…
CVE-2025-21954 — CVSS 9.8 (critical): In the Linux kernel, the following vulnerability has been resolved: netmem: prevent TX of unreadable skbs Currently on stable trees we have…
CVE-2024-57947 — CVSS 9.8 (critical): In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_set_pipapo: fix initial map fill The initial buffer has…
CVE-2024-56779 — CVSS 9.8 (critical): In the Linux kernel, the following vulnerability has been resolved: nfsd: fix nfs4_openowner leak when concurrent nfsd4_open occur The…
CVE-2024-36911 — CVSS 9.8 (critical): In the Linux kernel, the following vulnerability has been resolved: hv_netvsc: Don't free decrypted memory In CoCo VMs it is possible for…
CVE-2024-27388 — CVSS 9.8 (critical): In the Linux kernel, the following vulnerability has been resolved: SUNRPC: fix some memleaks in gssx_dec_option_array The creds and…
CVE-2024-57793 — CVSS 9.3 (critical): In the Linux kernel, the following vulnerability has been resolved: virt: tdx-guest: Just leak decrypted memory on unrecoverable errors In…
CVE-2024-36909 — CVSS 9.3 (critical): In the Linux kernel, the following vulnerability has been resolved: Drivers: hv: vmbus: Don't free ring buffers that couldn't be…
CVE-2022-0742 — CVSS 9.1 (critical): Memory leak in icmp6 implementation in Linux Kernel 5.13+ allows a remote attacker to DoS a host by making it go out-of-memory via icmp6…
CVE-2025-39848 — CVSS 8.8 (high): In the Linux kernel, the following vulnerability has been resolved: ax25: properly unshare skbs in ax25_kiss_rcv() Bernard Pidoux reported…
CVE-2023-53315 — CVSS 8.8 (high): In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: Fix SKB corruption in REO destination ring While running…
CVE-2025-21972 — CVSS 8.8 (high): In the Linux kernel, the following vulnerability has been resolved: net: mctp: unshare packets when reassembling Ensure that the frag_list…
CVE-2024-56669 — CVSS 8.8 (high): In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Remove cache tags before disabling ATS The current…
CVE-2024-50041 — CVSS 8.8 (high): In the Linux kernel, the following vulnerability has been resolved: i40e: Fix macvlan leak by synchronizing access to mac_filter_hash This…
CVE-2024-35804 — CVSS 8.8 (high): In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Mark target gfn of emulated atomic instruction as dirty When…
CVE-2024-25450 — CVSS 8.8 (high): imlib2 v1.9.1 was discovered to mishandle memory allocation in the function init_imlib_fonts().
CVE-2023-33718 — CVSS 8.8 (high): mp4v2 v2.1.3 was discovered to contain a memory leak via MP4File::ReadString() at mp4file_io.cpp
CVE-2021-40633 — CVSS 8.8 (high): A memory leak (out-of-memory) in gif2rgb in util/gif2rgb.c in giflib 5.1.4 allows remote attackers trigger an out of memory exception or…
CVE-2021-3492 — CVSS 8.8 (high): Shiftfs, an out-of-tree stacking file system included in Ubuntu Linux kernels, did not properly handle faults occurring during…
CVE-2019-17340 — CVSS 8.8 (high): An issue was discovered in Xen through 4.11.x allowing x86 guest OS users to cause a denial of service or gain privileges because…
CVE-2019-6128 — CVSS 8.8 (high): The TIFFFdOpen function in tif_unix.c in LibTIFF 4.0.10 has a memory leak, as demonstrated by pal2rgb.
CVE-2026-64104 — CVSS 8.7 (high): In the Linux kernel, the following vulnerability has been resolved: virt: sev-guest: Explicitly leak pages in unknown state When…
CVE-2026-0646: A denial-of-service security issue exists within the 1794-AENTR adapter due to improper memory handling of CIP protocol requests. This…
CVE-2025-14027: Multiple denial-of-service vulnerabilities exist in the affected product. These issues can be triggered through various crafted inputs…
CVE-2026-20012 — CVSS 8.6 (high): A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco IOS XE Software, Cisco Secure Firewall…
CVE-2025-20239 — CVSS 8.6 (high): A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Software, Secure Firewall Adaptive…
CVE-2025-20133 — CVSS 8.6 (high): A vulnerability in the management and VPN web servers of the Remote Access SSL VPN feature of Cisco Secure Firewall ASA Software and Secure…
CVE-2024-20304 — CVSS 8.6 (high): A vulnerability in the multicast traceroute version 2 (Mtrace2) feature of Cisco IOS XR Software could allow an unauthenticated, remote…
CVE-2021-34792 — CVSS 8.6 (high): A vulnerability in the memory management of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software…
CVE-2021-41145 — CVSS 8.6 (high): FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software…
CVE-2021-34698 — CVSS 8.6 (high): A vulnerability in the proxy service of Cisco AsyncOS for Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote…
CVE-2021-1387 — CVSS 8.6 (high): A vulnerability in the network stack of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service…
CVE-2021-1313 — CVSS 8.6 (high): Multiple vulnerabilities in the ingress packet processing function of Cisco IOS XR Software could allow an unauthenticated, remote attacker…
CVE-2020-3572 — CVSS 8.6 (high): A vulnerability in the SSL/TLS session handler of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD)…
CVE-2020-3373 — CVSS 8.6 (high): A vulnerability in the IP fragment-handling implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat…
CVE-2020-3203 — CVSS 8.6 (high): A vulnerability in the locally significant certificate (LSC) provisioning feature of Cisco Catalyst 9800 Series Wireless Controllers that…
CVE-2020-3189 — CVSS 8.6 (high): A vulnerability in the VPN System Logging functionality for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated…
CVE-2020-1603 — CVSS 8.6 (high): Specific IPv6 packets sent by clients processed by the Routing Engine (RE) are improperly handled. These IPv6 packets are designed to be…
CVE-2019-1708 — CVSS 8.6 (high): A vulnerability in the Internet Key Exchange Version 2 Mobility and Multihoming Protocol (MOBIKE) feature for the Cisco Adaptive Security…
CVE-2018-15377 — CVSS 8.6 (high): A vulnerability in the Cisco Network Plug and Play agent, also referred to as the Cisco Open Plug-n-Play agent, of Cisco IOS Software and…
CVE-2026-51400 — CVSS 8.4 (high): An issue in Vim Project v9.2.0389 and earlier allows a local attacker to execute arbitrary code via the vms_fixfilename() function within…
CVE-2026-23172 — CVSS 8.4 (high): In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: fix potential skb->frags overflow in RX path When…
CVE-2026-46303 — CVSS 8.2 (high): In the Linux kernel, the following vulnerability has been resolved: isofs: validate Rock Ridge CE continuation extent against volume size…
CVE-2024-35834 — CVSS 8.2 (high): In the Linux kernel, the following vulnerability has been resolved: xsk: recycle buffer in case Rx queue was full Add missing…
CVE-2023-34451 — CVSS 8.2 (high): CometBFT is a Byzantine Fault Tolerant (BFT) middleware that takes a state transition machine and replicates it on many machines. The…
CVE-2022-1012 — CVSS 8.2 (high): A memory leak problem was found in the TCP source port generation algorithm in net/ipv4/tcp.c due to the small table perturb size. This…
CVE-2026-12932 — CVSS 8.1 (high): A memory leak in the tls-crypt-v2 client key extraction in OpenVPN 2.5.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote…