Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2011-08-18 CVE-2011-2954 Resource Management Errors vulnerability in Realnetworks Realplayer and Realplayer SP
Use-after-free vulnerability in the AutoUpdate feature in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5 and RealPlayer SP 1.0 through 1.1.5, when an Embedded RealPlayer is used, allows remote attackers to execute arbitrary code via unspecified vectors.
network
realnetworks CWE-399
critical
9.3
2011-08-18 CVE-2011-2952 Resource Management Errors vulnerability in Realnetworks Realplayer and Realplayer SP
Use-after-free vulnerability in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5 allows remote attackers to execute arbitrary code via vectors related to a dialog box.
network
realnetworks CWE-399
critical
9.3
2011-08-18 CVE-2011-1624 Resource Management Errors vulnerability in Cisco IOS 12.2(58)Se
Cisco IOS 12.2(58)SE, when a login banner is configured, allows remote attackers to cause a denial of service (device reload) by establishing two SSH2 sessions, aka Bug ID CSCto62631.
network
low complexity
cisco CWE-399
7.8
2011-08-16 CVE-2011-3143 Resource Management Errors vulnerability in multiple products
Use-after-free vulnerability in Control Microsystems ClearSCADA 2005, 2007, and 2009 before R2.3 and R1.4, as used in SCX before 67 R4.5 and 68 R3.9, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified long strings that trigger heap memory corruption.
network
low complexity
aveva schneider-electric CWE-399
critical
10.0
2011-08-10 CVE-2011-1968 Resource Management Errors vulnerability in Microsoft products
The Remote Desktop Protocol (RDP) implementation in Microsoft Windows XP SP2 and SP3 and Windows Server 2003 SP2 does not properly process packets in memory, which allows remote attackers to cause a denial of service (reboot) by sending crafted RDP packets triggering access to an object that (1) was not properly initialized or (2) is deleted, as exploited in the wild in 2011, aka "Remote Desktop Protocol Vulnerability."
network
microsoft CWE-399
7.1
2011-08-10 CVE-2011-1965 Resource Management Errors vulnerability in Microsoft Windows 7 and Windows Server 2008
Tcpip.sys in the TCP/IP stack in Microsoft Windows 7 Gold and SP1 and Windows Server 2008 R2 and R2 SP1 does not properly implement URL-based QoS, which allows remote attackers to cause a denial of service (reboot) via a crafted URL to a web server, aka "TCP/IP QOS Denial of Service Vulnerability."
network
microsoft CWE-399
7.1
2011-08-01 CVE-2011-2975 Resource Management Errors vulnerability in multiple products
Double free vulnerability in the msAddImageSymbol function in mapsymbol.c in MapServer before 6.0.1 might allow remote attackers to cause a denial of service (application crash) or have unspecified other impact via crafted mapfile data.
network
osgeo umn CWE-399
6.8
2011-07-27 CVE-2011-2893 Resource Management Errors vulnerability in IBM Lotus Symphony 3.0.0/3.0.0.1/3.0.0.2
The DataPilot feature in IBM Lotus Symphony 3 before FP3 allows user-assisted remote attackers to cause a denial of service (application crash) via a large .xls spreadsheet with an invalid Value reference.
network
ibm CWE-399
4.3
2011-07-27 CVE-2011-2888 Resource Management Errors vulnerability in IBM Lotus Symphony 3.0.0/3.0.0.1/3.0.0.2
IBM Lotus Symphony 3 before FP3 allows remote attackers to cause a denial of service (application hang) via complex graphics in a presentation.
network
ibm CWE-399
4.3
2011-07-27 CVE-2011-2887 Resource Management Errors vulnerability in IBM Lotus Symphony 3.0.0/3.0.0.1/3.0.0.2
IBM Lotus Symphony 3 before FP3 on Linux allows remote attackers to cause a denial of service (application crash) via a certain sample document.
network
ibm linux CWE-399
4.3