Skip to main content

CWE archive

CWE-401 CVEs

Programmatic archive

1,856 CVEs tagged with CWE-4012 Critical, 332 High, 1,451 Medium, 71 Low, 0 Unrated.

CVE-2026-23061

Published Feb 4, 2026

In the Linux kernel, the following vulnerability has been resolved: can: kvaser_usb: kvaser_usb_read_bulk_callback(): fix URB memory leak Fix similar memory leak as in commit 73…

CVSS 5.5 · Medium
evidence mentions
7
Buzz score
25.8
Vendor/product tagsBeta · best-effort

CVE-2026-1757

Published Feb 2, 2026

A flaw was identified in the interactive shell of the xmllint utility, part of the libxml2 project, where memory allocated for user input is not properly released under certain co…

CVSS 6.2 · Medium
evidence mentions
4
Buzz score
27.6

CVE-2026-23026

Published Jan 31, 2026

In the Linux kernel, the following vulnerability has been resolved: dmaengine: qcom: gpi: Fix memory leak in gpi_peripheral_config() Fix a memory leak in gpi_peripheral_config()…

CVSS 5.5 · Medium
evidence mentions
9
Buzz score
38.0
Vendor/product tagsBeta · best-effort

CVE-2026-23024

Published Jan 31, 2026

In the Linux kernel, the following vulnerability has been resolved: idpf: fix memory leak of flow steer list on rmmod The flow steering list maintains entries that are added and…

CVSS 5.5 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-23023

Published Jan 31, 2026

In the Linux kernel, the following vulnerability has been resolved: idpf: fix memory leak in idpf_vport_rel() Free vport->rx_ptype_lkup in idpf_vport_rel() to avoid leaking memo…

CVSS 5.5 · Medium
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2026-23022

Published Jan 31, 2026

In the Linux kernel, the following vulnerability has been resolved: idpf: fix memory leak in idpf_vc_core_deinit() Make sure to free hw->lan_regs. Reported by kmemleak during re…

CVSS 5.5 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-23021

Published Jan 31, 2026

In the Linux kernel, the following vulnerability has been resolved: net: usb: pegasus: fix memory leak in update_eth_regs_async() When asynchronously writing to the device regis…

CVSS 5.5 · Medium
evidence mentions
7
Buzz score
25.8
Vendor/product tagsBeta · best-effort

CVE-2025-71189

Published Jan 31, 2026

In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw: dmamux: fix OF node leak on route allocation failure Make sure to drop the reference taken to…

CVSS 5.5 · Medium
evidence mentions
8
Buzz score
37.0
Vendor/product tagsBeta · best-effort

CVE-2025-71188

Published Jan 31, 2026

In the Linux kernel, the following vulnerability has been resolved: dmaengine: lpc18xx-dmamux: fix device leak on route allocation Make sure to drop the reference taken when loo…

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-71187

Published Jan 31, 2026

In the Linux kernel, the following vulnerability has been resolved: dmaengine: sh: rz-dmac: fix device leak on probe failure Make sure to drop the reference taken when looking u…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-71186

Published Jan 31, 2026

In the Linux kernel, the following vulnerability has been resolved: dmaengine: stm32: dmamux: fix device leak on route allocation Make sure to drop the reference taken when look…

CVSS 5.5 · Medium
evidence mentions
10
Buzz score
39.0
Vendor/product tagsBeta · best-effort

CVE-2025-71185

Published Jan 31, 2026

In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: dma-crossbar: fix device leak on am335x route allocation Make sure to drop the reference taken…

CVSS 5.5 · Medium
evidence mentions
10
Buzz score
39.0
Vendor/product tagsBeta · best-effort

CVE-2025-28164

Published Jan 27, 2026

Buffer Overflow vulnerability in libpng 1.6.43-1.6.46 allows a local attacker to cause a denial of service via png_create_read_struct() function.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2026-24828

Published Jan 27, 2026

Missing Release of Memory after Effective Lifetime vulnerability in Is-Daouda is-Engine.This issue affects is-Engine: before 3.3.4.

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-24825

Published Jan 27, 2026

Missing Release of Memory after Effective Lifetime vulnerability in ydb-platform ydb (contrib/libs/yajl modules). This vulnerability is associated with program files yail_tree.C.…

CVSS 6.9 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-71163

Published Jan 25, 2026

In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix device leaks on compat bind and unbind Make sure to drop the reference taken when lookin…

CVSS 5.5 · Medium
evidence mentions
7
Buzz score
30.8
Vendor/product tagsBeta · best-effort

CVE-2026-22979

Published Jan 23, 2026

In the Linux kernel, the following vulnerability has been resolved: net: fix memory leak in skb_segment_list for GRO packets When skb_segment_list() is called during packet forw…

CVSS 5.5 · Medium
evidence mentions
6
Buzz score
29.5
Vendor/product tagsBeta · best-effort

CVE-2025-71154

Published Jan 23, 2026

In the Linux kernel, the following vulnerability has been resolved: net: usb: rtl8150: fix memory leak on usb_submit_urb() failure In async_set_registers(), when usb_submit_urb(…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-71153

Published Jan 23, 2026

In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix memory leak in get_file_all_info() In get_file_all_info(), if vfs_getattr() fails, the function re…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-71151

Published Jan 23, 2026

In the Linux kernel, the following vulnerability has been resolved: cifs: Fix memory and information leak in smb3_reconfigure() In smb3_reconfigure(), if smb3_sync_session_ctx_p…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-71147

Published Jan 23, 2026

In the Linux kernel, the following vulnerability has been resolved: KEYS: trusted: Fix a memory leak in tpm2_load_cmd 'tpm2_load_cmd' allocates a tempoary blob indirectly via 't…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-71146

Published Jan 23, 2026

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conncount: fix leaked ct in error paths There are some situations where ct might be leaked as e…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-56353

Published Jan 20, 2026

In tinyMQTT commit 6226ade15bd4f97be2d196352e64dd10937c1962 (2024-02-18), a memory leak occurs due to the broker's failure to validate or reject malformed UTF-8 strings in topic f…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-14027

Published Jan 20, 2026

Multiple denial-of-service vulnerabilities exist in the affected product. These issues can be triggered through various crafted inputs, including malformed Class 3 messages, memor…

CVSS 8.7 · High
Showing 301-325 of 1,856 CVEsPage 13 of 75