CWE-664: Improper Control of a Resource Through its Lifetime

low-risk

The product does not maintain or incorrectly maintains control over a resource throughout its lifetime of creation, use, and release.

Abstraction: Pillar

Common Consequences

Other Other

Detection Methods

Automated Static Analysis

Use Static analysis tools to check for unreleased resources.

Real-World Examples (10)

CVE CVSS EPSS KEV
CVE-2022-27518 9.8 27.7% Y
CVE-2024-45383 5.0 8.5%
CVE-2020-3175 8.6 2.6%
CVE-2022-2048 7.5 1.3%
CVE-2024-37139 6.5 1.2%
CVE-2022-31153 6.5 1.1%
CVE-2022-20856 8.6 0.9%
CVE-2022-27512 5.3 0.9%
CVE-2022-46144 6.5 0.7%
CVE-2022-2191 7.5 0.7%
2
/ 100
low-risk
Active Threat 1/50 · Minimal
Exploit Availability 1/50 · Minimal