Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2010-05-20 CVE-2010-1993 Resource Management Errors vulnerability in Opera Browser 9.52
Opera 9.52 does not properly handle an IFRAME element with a mailto: URL in its SRC attribute, which allows remote attackers to cause a denial of service (resource consumption) via an HTML document with many IFRAME elements.
network
low complexity
opera CWE-399
5.0
2010-05-20 CVE-2010-1992 Resource Management Errors vulnerability in Google Chrome 1.0.154.48
Google Chrome 1.0.154.48 executes a mail application in situations where an IFRAME element has a mailto: URL in its SRC attribute, which allows remote attackers to cause a denial of service (excessive application launches) via an HTML document with many IFRAME elements.
network
low complexity
google CWE-399
5.0
2010-05-20 CVE-2010-1991 Resource Management Errors vulnerability in Microsoft IE and Internet Explorer
Microsoft Internet Explorer 6.0.2900.2180, 7, and 8.0.7600.16385 executes a mail application in situations where an IFRAME element has a mailto: URL in its SRC attribute, which allows remote attackers to cause a denial of service (excessive application launches) via an HTML document with many IFRAME elements.
network
low complexity
microsoft CWE-399
5.0
2010-05-20 CVE-2010-1990 Resource Management Errors vulnerability in Mozilla Firefox and Seamonkey
Mozilla Firefox 3.6.x, 3.5.x, 3.0.19, and earlier, and SeaMonkey, executes a mail application in situations where an IFRAME element has a mailto: URL in its SRC attribute, which allows remote attackers to cause a denial of service (excessive application launches) via an HTML document with many IFRAME elements.
network
low complexity
mozilla CWE-399
5.0
2010-05-20 CVE-2010-1989 Resource Management Errors vulnerability in Opera Browser 9.52
Opera 9.52 executes a mail application in situations where an IMG element has a SRC attribute that is a redirect to a mailto: URL, which allows remote attackers to cause a denial of service (excessive application launches) via an HTML document with many images, a related issue to CVE-2010-0181.
network
low complexity
opera CWE-399
5.0
2010-05-20 CVE-2010-1987 Resource Management Errors vulnerability in Mozilla Firefox 3.6.3
Mozilla Firefox 3.6.3 on Windows XP SP3 allows remote attackers to cause a denial of service (memory consumption, out-of-bounds read, and application crash) via JavaScript code that appends long strings to the content of a P element, and performs certain other string concatenation and substring operations, related to the DoubleWideCharMappedString class in USP10.dll and the gfxWindowsFontGroup::GetUnderlineOffset function in xul.dll, a different vulnerability than CVE-2009-1571.
network
low complexity
mozilla microsoft CWE-399
5.0
2010-05-20 CVE-2010-1986 Resource Management Errors vulnerability in Mozilla Firefox 3.6.3
Mozilla Firefox 3.6.3 on Windows XP SP3 allows remote attackers to cause a denial of service (memory consumption and application crash) via JavaScript code that creates multiple arrays containing elements with long string values, and then appends long strings to the content of a P element, related to the gfxWindowsFontGroup::MakeTextRun function in xul.dll, a different vulnerability than CVE-2009-1571.
network
low complexity
mozilla microsoft CWE-399
5.0
2010-05-20 CVE-2010-0745 Resource Management Errors vulnerability in Dovecot
Unspecified vulnerability in Dovecot 1.2.x before 1.2.11 allows remote attackers to cause a denial of service (CPU consumption) via long headers in an e-mail message.
network
low complexity
dovecot CWE-399
5.0
2010-05-17 CVE-2010-0775 Resource Management Errors vulnerability in IBM Websphere Application Server
Unspecified vulnerability in IBM WebSphere Application Server (WAS) 6.0 before 6.0.2.41, 6.1 before 6.1.0.31, and 7.0 before 7.0.0.11 allows remote attackers to cause a denial of service (memory consumption and daemon crash) via a crafted request, related to the nodeagent and Deployment Manager components.
network
low complexity
ibm CWE-399
5.0
2010-05-14 CVE-2010-1565 Resource Management Errors vulnerability in Cisco PGW 2200 Softswitch 9.7(3)P/9.7(3)S
Unspecified vulnerability in the SIP implementation on the Cisco PGW 2200 Softswitch with software 9.7(3)S before 9.7(3)S9 and 9.7(3)P before 9.7(3)P9 allows remote attackers to cause a denial of service (TCP socket exhaustion) via unknown vectors, aka Bug ID CSCsk13561.
network
low complexity
cisco CWE-399
7.8