Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2011-11-03 CVE-2011-3996 Resource Management Errors vulnerability in Controlsystemworks Csworks
The LiveData Service in CSWorks before 2.0.4115.1 allows remote attackers to cause a denial of service (service crash) via crafted TCP packets.
network
low complexity
controlsystemworks CWE-399
5.0
2011-11-03 CVE-2011-3987 Resource Management Errors vulnerability in Daemon-Tools Daemon Tools
dtsoftbus01.sys in DAEMON Tools Lite before 4.41.3, Pro Standard before 4.41.0315, and Pro Advanced before 4.41.0315 allows local users to cause a denial of service (system crash) via an invalid DeviceIoControl request to \\.\dtsoftbusctl.
local
low complexity
daemon-tools CWE-399
4.9
2011-11-03 CVE-2011-4100 Resource Management Errors vulnerability in Wireshark 1.6.0/1.6.1/1.6.2
The csnStreamDissector function in epan/dissectors/packet-csn1.c in the CSN.1 dissector in Wireshark 1.6.x before 1.6.3 does not initialize a certain variable, which allows remote attackers to cause a denial of service (application crash) via a malformed packet.
network
wireshark CWE-399
4.3
2011-11-03 CVE-2011-4078 Resource Management Errors vulnerability in Roundcube Webmail
include/iniset.php in Roundcube Webmail 0.5.4 and earlier, when PHP 5.3.7 or 5.3.8 is used, allows remote attackers to trigger a GET request for an arbitrary URL, and cause a denial of service (resource consumption and inbox outage), via a Subject header containing only a URL, a related issue to CVE-2011-3379.
network
low complexity
roundcube php CWE-399
5.0
2011-11-01 CVE-2011-4219 Resource Management Errors vulnerability in Investintech Slimpdf Reader
Investintech.com SlimPDF Reader does not prevent faulting-address data from affecting branch selection, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document.
network
investintech CWE-399
critical
9.3
2011-11-01 CVE-2011-4218 Resource Management Errors vulnerability in Investintech Slimpdf Reader
Investintech.com SlimPDF Reader does not prevent faulting-instruction data from affecting write operations, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document.
network
investintech CWE-399
critical
9.3
2011-11-01 CVE-2011-0941 Resource Management Errors vulnerability in Cisco IOS and Unified Communications Manager
Memory leak in Cisco Unified Communications Manager (CUCM) 6.x before 6.1(5)su2, 7.x before 7.1(5b)su3, 8.x before 8.0(3a)su1, and 8.5 before 8.5(1), and Cisco IOS 12.4 and 15.1, allows remote attackers to cause a denial of service (memory consumption and process failure or device reload) via a malformed SIP message, aka Bug IDs CSCti75128 and CSCtj09179.
network
low complexity
cisco CWE-399
7.8
2011-10-29 CVE-2010-0780 Resource Management Errors vulnerability in IBM Websphere MQ
IBM WebSphere MQ 7.x before 7.0.1.4 allows remote attackers to cause a denial of service (disk consumption) via multiple connection attempts to a stopped queue manager.
network
ibm CWE-399
4.3
2011-10-27 CVE-2011-3318 Resource Management Errors vulnerability in Cisco products
Cisco Video Surveillance 2421 and 2500 series cameras with software 1.1.x and 2.x before 2.4.0 and Video Surveillance 2600 series cameras with software before 4.2.0-13 allow remote attackers to cause a denial of service (device reload) by sending crafted RTSP packets over TCP, aka Bug IDs CSCtj96312, CSCtj39462, and CSCtl80175.
network
low complexity
cisco CWE-399
7.8
2011-10-19 CVE-2011-4137 Resource Management Errors vulnerability in Djangoproject Django
The verify_exists functionality in the URLField implementation in Django before 1.2.7 and 1.3.x before 1.3.1 relies on Python libraries that attempt access to an arbitrary URL with no timeout, which allows remote attackers to cause a denial of service (resource consumption) via a URL associated with (1) a slow response, (2) a completed TCP connection with no application data sent, or (3) a large amount of application data, a related issue to CVE-2011-1521.
network
low complexity
djangoproject CWE-399
5.0