Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2012-01-06 CVE-2011-4619 Resource Management Errors vulnerability in Openssl
The Server Gated Cryptography (SGC) implementation in OpenSSL before 0.9.8s and 1.x before 1.0.0f does not properly handle handshake restarts, which allows remote attackers to cause a denial of service (CPU consumption) via unspecified vectors.
network
low complexity
openssl CWE-399
5.0
2012-01-06 CVE-2011-4577 Resource Management Errors vulnerability in Openssl
OpenSSL before 0.9.8s and 1.x before 1.0.0f, when RFC 3779 support is enabled, allows remote attackers to cause a denial of service (assertion failure) via an X.509 certificate containing certificate-extension data associated with (1) IP address blocks or (2) Autonomous System (AS) identifiers.
network
openssl CWE-399
4.3
2012-01-06 CVE-2011-4109 Resource Management Errors vulnerability in Openssl
Double free vulnerability in OpenSSL 0.9.8 before 0.9.8s, when X509_V_FLAG_POLICY_CHECK is enabled, allows remote attackers to have an unspecified impact by triggering failure of a policy check.
network
openssl CWE-399
critical
9.3
2012-01-05 CVE-2011-4905 Resource Management Errors vulnerability in Apache Activemq
Apache ActiveMQ before 5.6.0 allows remote attackers to cause a denial of service (file-descriptor exhaustion and broker crash or hang) by sending many openwire failover:tcp:// connection requests.
network
low complexity
apache CWE-399
5.0
2012-01-04 CVE-2011-5049 Denial-Of-Service vulnerability in MySQL
MySQL 5.5.8, when running on Windows, allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted packet to TCP port 3306.
network
microsoft CWE-399
4.3
2011-12-27 CVE-2009-5111 Resource Management Errors vulnerability in Goahead Webserver
GoAhead WebServer allows remote attackers to cause a denial of service (daemon outage) via partial HTTP requests, as demonstrated by Slowloris.
network
low complexity
goahead CWE-399
5.0
2011-12-27 CVE-2009-5110 Resource Management Errors vulnerability in Dhttpd
dhttpd allows remote attackers to cause a denial of service (daemon outage) via partial HTTP requests, as demonstrated by Slowloris.
network
low complexity
dhttpd CWE-399
5.0
2011-12-27 CVE-2007-6750 Resource Management Errors vulnerability in Apache Http Server
The Apache HTTP Server 1.x and 2.x allows remote attackers to cause a denial of service (daemon outage) via partial HTTP requests, as demonstrated by Slowloris, related to the lack of the mod_reqtimeout module in versions before 2.2.15.
network
low complexity
apache CWE-399
5.0
2011-12-21 CVE-2011-3665 Resource Management Errors vulnerability in Mozilla Firefox, Seamonkey and Thunderbird
Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6 allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via an Ogg VIDEO element that is not properly handled after scaling.
network
low complexity
mozilla CWE-399
7.5
2011-12-21 CVE-2011-3661 Resource Management Errors vulnerability in Mozilla Firefox, Seamonkey and Thunderbird
YARR, as used in Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted JavaScript.
network
low complexity
mozilla CWE-399
7.5