CWE
Home > CWE List > VIEW LIST: CWE-631: Resource-specific Weaknesses (1.6)  

CWE-631: Resource-specific Weaknesses

 
Resource-specific Weaknesses
Definition in a New Window Definition in a New Window
View ID: 631 (View: Graph)Status: Draft
+ View Data

View Objective

CWE nodes in this view (graph) occur when the application handles particular system resources.

+ View Metrics
CWEs in this viewTotal CWEs
Total62out of791
Views0out of22
Categories11out of106
Weaknesses46out of651
Compound_Elements5out of12
+ Relationships
NatureTypeIDNameView(s) this relationship pertains toView(s)
HasMemberCategoryCategory632Weaknesses that Affect Files or Directories
Resource-specific Weaknesses (primary)631
HasMemberCategoryCategory633Weaknesses that Affect Memory
Resource-specific Weaknesses (primary)631
HasMemberCategoryCategory634Weaknesses that Affect System Processes
Resource-specific Weaknesses (primary)631
MemberOfViewView699Development Concepts
Development Concepts (primary)699
+ Content History
Modifications
Modification DateModifierOrganizationSource
2008-09-08CWE Content TeamMITREInternal
updated Relationships, View Structure
Weakness ClassWeakness Class Access Control (Authorization) Issues - (284)
Weakness VariantWeakness Variant Apple '.DS_Store' - (71)
Weakness BaseWeakness Base Argument Injection or Modification - (88)
Compound Element: CompositeCompound Element: Composite Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') - (120)
Weakness VariantWeakness Variant Call to Thread run() instead of start() - (572)
Weakness BaseWeakness Base Compiler Removal of Code to Clear Buffers - (14)
Weakness VariantWeakness Variant Double Free - (415)
Weakness VariantWeakness Variant Failure to Change Working Directory in chroot Jail - (243)
Weakness VariantWeakness Variant Failure to Clear Heap Memory Before Release ('Heap Inspection') - (244)
Weakness ClassWeakness Class Failure to Constrain Operations within the Bounds of a Memory Buffer - (119)
Weakness VariantWeakness Variant Failure to Handle Windows ::DATA Alternate Data Stream - (69)
Weakness BaseWeakness Base Failure to Release Memory Before Removing Last Reference ('Memory Leak') - (401)
Weakness BaseWeakness Base Failure to Resolve Case Sensitivity - (178)
Weakness BaseWeakness Base Files or Directories Accessible to External Parties - (552)
Weakness VariantWeakness Variant Heap-based Buffer Overflow - (122)
Weakness BaseWeakness Base Improper Check for Dropped Privileges - (273)
Compound Element: CompositeCompound Element: Composite Improper Control of Filename for Include/Require Statement in PHP Program ('PHP File Inclusion') - (98)
Weakness VariantWeakness Variant Improper Handling of Apple HFS+ Alternate Data Stream Path - (72)
Weakness VariantWeakness Variant Improper Handling of Windows Device Names - (67)
Weakness BaseWeakness Base Improper Link Resolution Before File Access ('Link Following') - (59)
Weakness ClassWeakness Class Improper Ownership Management - (282)
Weakness BaseWeakness Base Improper Resolution of Path Equivalence - (41)
Weakness BaseWeakness Base Improper Sanitization of Directives in Statically Saved Code ('Static Code Injection') - (96)
Weakness BaseWeakness Base Improper Sanitization of Special Elements used in an OS Command ('OS Command Injection') - (78)
Weakness BaseWeakness Base Improper Validation of Array Index - (129)
Weakness BaseWeakness Base Incorrect Privilege Assignment - (266)
Weakness VariantWeakness Variant Information Leak Through Server Log Files - (533)
Weakness VariantWeakness Variant J2EE Bad Practices: Direct Use of Threads - (383)
CategoryCategory Mac Virtual File Problems - (70)
CategoryCategory Often Misused: String Management - (251)
Weakness VariantWeakness Variant Password in Configuration File - (260)
Weakness ClassWeakness Class Path Traversal - (22)
CategoryCategory Permission Issues - (275)
Weakness VariantWeakness Variant Plaintext Storage in Memory - (316)
Weakness BaseWeakness Base Process Control - (114)
Weakness VariantWeakness Variant Process Environment Information Leak - (214)
Weakness BaseWeakness Base Race Condition During Access to Alternate Channel - (421)
Weakness BaseWeakness Base Race Condition within a Thread - (366)
Weakness BaseWeakness Base Release of Invalid Pointer or Reference - (763)
Weakness VariantWeakness Variant Sensitive Data Storage in Improperly Locked Memory - (591)
Weakness BaseWeakness Base Sensitive Information Uncleared Before Release - (226)
CategoryCategory Signal Errors - (387)
Weakness BaseWeakness Base Signal Handler Race Condition - (364)
CategoryCategory Temporary File Issues - (376)
Weakness BaseWeakness Base Uncontrolled Format String - (134)
Weakness BaseWeakness Base UNIX File Descriptor Leak - (403)
Weakness VariantWeakness Variant UNIX Hard Link - (62)
CategoryCategory UNIX Path Link Problems - (60)
Compound Element: CompositeCompound Element: Composite UNIX Symbolic Link (Symlink) Following - (61)
Weakness VariantWeakness Variant Unprotected Windows Messaging Channel ('Shatter') - (422)
Compound Element: CompositeCompound Element: Composite Unrestricted File Upload - (434)
Weakness VariantWeakness Variant Unsafe Function Call from a Signal Handler - (479)
Compound Element: CompositeCompound Element: Composite Untrusted Search Path - (426)
Weakness BaseWeakness Base Use After Free - (416)
Weakness VariantWeakness Variant Use of Path Manipulation Function without Maximum-sized Buffer - (785)
CategoryCategory Weaknesses that Affect Files or Directories - (632)
CategoryCategory Weaknesses that Affect Memory - (633)
CategoryCategory Weaknesses that Affect System Processes - (634)
Weakness VariantWeakness Variant Windows Hard Link - (65)
CategoryCategory Windows Path Link Problems - (63)
Weakness VariantWeakness Variant Windows Shortcut Following (.LNK) - (64)
CategoryCategory Windows Virtual File Problems - (68)
Page Last Updated: October 29, 2009