Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2012-03-08 CVE-2011-3845 Resource Management Errors vulnerability in Apple Safari 5.1.2
Use-after-free vulnerability in Apple Safari 5.1.2, when a plug-in with a blocking function is installed, allows user-assisted remote attackers to execute arbitrary code via a crafted web page that is accessed during user interaction with the plug-in, leading to improper coordination between an API call and the plug-in unloading functionality, as demonstrated by the Adobe Flash and RealPlayer plug-ins.
network
high complexity
apple CWE-399
7.6
2012-03-05 CVE-2012-0768 Resource Management Errors vulnerability in Adobe Flash Player and Flash Player for Android
The Matrix3D component in Adobe Flash Player before 10.3.183.16 and 11.x before 11.1.102.63 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.7 on Android 2.x and 3.x; and before 11.1.115.7 on Android 4.x allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
network
low complexity
adobe apple linux microsoft sun google CWE-399
critical
10.0
2012-03-02 CVE-2011-1385 Resource Management Errors vulnerability in IBM AIX and Vios
IBM AIX 5.3, 6.1, and 7.1, and VIOS 2.1.x and 2.2.x, allows remote attackers to cause a denial of service (system crash) via an ICMP Echo Reply packet that contains 1 in the Identifier field, a different vulnerability than CVE-2012-0194.
network
low complexity
ibm CWE-399
7.8
2012-03-02 CVE-2011-3443 Resource Management Errors vulnerability in Apple Safari
Use-after-free vulnerability in WebKit, as used in Apple Safari before 5.0.6, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) via vectors related to improper list management for Cascading Style Sheets (CSS) @font-face rules.
network
low complexity
apple CWE-399
7.5
2012-03-01 CVE-2012-0370 Resource Management Errors vulnerability in Cisco products
Cisco Wireless LAN Controller (WLC) devices with software 4.x, 5.x, 6.0, and 7.0 before 7.0.220.0 and 7.1 before 7.1.91.0, when WebAuth is enabled, allow remote attackers to cause a denial of service (device reload) via a sequence of (1) HTTP or (2) HTTPS packets, aka Bug ID CSCtt47435.
network
low complexity
cisco CWE-399
7.8
2012-03-01 CVE-2012-0369 Resource Management Errors vulnerability in Cisco products
Cisco Wireless LAN Controller (WLC) devices with software 6.0 and 7.0 before 7.0.220.0, 7.1 before 7.1.91.0, and 7.2 before 7.2.103.0 allow remote attackers to cause a denial of service (device reload) via a sequence of IPv6 packets, aka Bug ID CSCtt07949.
network
low complexity
cisco CWE-399
7.8
2012-03-01 CVE-2012-0368 Resource Management Errors vulnerability in Cisco products
The administrative management interface on Cisco Wireless LAN Controller (WLC) devices with software 4.x, 5.x, 6.0, and 7.0 before 7.0.220.0, 7.1 before 7.1.91.0, and 7.2 before 7.2.103.0 allows remote attackers to cause a denial of service (device crash) via a malformed URL in an HTTP request, aka Bug ID CSCts81997.
network
low complexity
cisco CWE-399
7.8
2012-03-01 CVE-2012-0367 Resource Management Errors vulnerability in Cisco Unity Connection
Cisco Unity Connection before 7.1.5b(Su5), 8.0 and 8.5 before 8.5.1(Su3), and 8.6 before 8.6.2 allows remote attackers to cause a denial of service (services crash) via a series of crafted TCP segments, aka Bug ID CSCtq67899.
network
low complexity
cisco CWE-399
7.8
2012-03-01 CVE-2012-0359 Resource Management Errors vulnerability in Cisco Cius and Cius Software
The Cisco Cius with software before 9.2(1) SR2 allows remote attackers to cause a denial of service (device crash or hang) via malformed network traffic, aka Bug ID CSCto71445.
network
low complexity
cisco CWE-399
7.8
2012-03-01 CVE-2012-0331 Resource Management Errors vulnerability in Cisco products
Cisco TelePresence Video Communication Server with software before X7.0.1 allows remote attackers to cause a denial of service (device crash) via a crafted SIP packet, as demonstrated by a SIP INVITE message from a Tandberg device, aka Bug ID CSCtq73319.
network
low complexity
cisco CWE-399
7.5