Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2011-10-05 CVE-2011-3982 Resource Management Errors vulnerability in IBM AIX 6.1/7.1
The Fibre Channel driver for QLogic adapters in IBM AIX 6.1 and 7.1 does not properly handle DMA resource limitations, which allows local users to cause a denial of service (system hang) via vectors that generate a large amount of DMA I/O, related to a deadlock in timer processing across CPUs.
local
low complexity
ibm CWE-399
2.1
2011-10-04 CVE-2011-3354 Resource Management Errors vulnerability in Quassel-Irc Quassel
The CtcpParser::packedReply method in core/ctcpparser.cpp in Quassel before 0.7.3 allows remote attackers to cause a denial of service (crash) via a crafted Client-To-Client Protocol (CTCP) request, as demonstrated in the wild in September 2011.
network
low complexity
quassel-irc CWE-399
5.0
2011-10-03 CVE-2011-3280 Resource Management Errors vulnerability in Cisco IOS and IOS XE
Memory leak in the NAT implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xSG, allows remote attackers to cause a denial of service (memory consumption or device reload) by sending crafted SIP packets to UDP port 5060, aka Bug ID CSCtj04672.
network
low complexity
cisco CWE-399
7.8
2011-10-03 CVE-2011-3275 Resource Management Errors vulnerability in Cisco IOS and IOS XE
Memory leak in Cisco IOS 12.4, 15.0, and 15.1, and IOS XE 2.5.x through 3.2.x, allows remote attackers to cause a denial of service (memory consumption) via a crafted SIP message, aka Bug ID CSCti48504.
network
low complexity
cisco CWE-399
7.8
2011-10-03 CVE-2011-3273 Resource Management Errors vulnerability in Cisco IOS
Memory leak in Cisco IOS 15.0 through 15.1, when IPS or Zone-Based Firewall (aka ZBFW) is configured, allows remote attackers to cause a denial of service (memory consumption or device crash) via vectors that trigger many session creation flows, aka Bug ID CSCti79848.
network
low complexity
cisco CWE-399
7.8
2011-10-03 CVE-2011-3272 Resource Management Errors vulnerability in Cisco IOS and IOS XE
The IP Service Level Agreement (IP SLA) functionality in Cisco IOS 15.1, and IOS XE 2.1.x through 3.3.x, allows remote attackers to cause a denial of service (memory corruption and device reload) via malformed IP SLA packets, aka Bug ID CSCtk67073.
network
low complexity
cisco CWE-399
7.8
2011-10-03 CVE-2011-2072 Resource Management Errors vulnerability in Cisco Ios, IOS XE and Unified Communications Manager
Memory leak in Cisco IOS 12.4, 15.0, and 15.1, Cisco IOS XE 2.5.x through 3.2.x, and Cisco Unified Communications Manager (CUCM) 6.x and 7.x before 7.1(5b)su4, 8.x before 8.5(1)su2, and 8.6 before 8.6(1) allows remote attackers to cause a denial of service (memory consumption and device reload or process failure) via a malformed SIP message, aka Bug IDs CSCtl86047 and CSCto88686.
network
low complexity
cisco CWE-399
7.8
2011-10-03 CVE-2011-0945 Resource Management Errors vulnerability in Cisco IOS and IOS XE
Memory leak in the Data-link switching (aka DLSw) feature in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xS before 3.1.3S and 3.2.xS before 3.2.1S, when implemented over Fast Sequence Transport (FST), allows remote attackers to cause a denial of service (memory consumption and device reload or hang) via a crafted IP protocol 91 packet, aka Bug ID CSCth69364.
network
low complexity
cisco CWE-399
7.8
2011-10-03 CVE-2011-0944 Resource Management Errors vulnerability in Cisco IOS 12.4/15.0/15.1
Cisco IOS 12.4, 15.0, and 15.1 allows remote attackers to cause a denial of service (device reload) via malformed IPv6 packets, aka Bug ID CSCtj41194.
network
low complexity
cisco CWE-399
7.8
2011-09-30 CVE-2011-3579 Resource Management Errors vulnerability in Icewarp Mail Server
server/webmail.php in IceWarp WebMail in IceWarp Mail Server before 10.3.3 allows remote attackers to read arbitrary files, and possibly send HTTP requests to intranet servers or cause a denial of service (CPU and memory consumption), via an XML external entity declaration in conjunction with an entity reference.
network
low complexity
icewarp CWE-399
6.4