Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2010-05-20 CVE-2010-1986 Resource Management Errors vulnerability in Mozilla Firefox 3.6.3
Mozilla Firefox 3.6.3 on Windows XP SP3 allows remote attackers to cause a denial of service (memory consumption and application crash) via JavaScript code that creates multiple arrays containing elements with long string values, and then appends long strings to the content of a P element, related to the gfxWindowsFontGroup::MakeTextRun function in xul.dll, a different vulnerability than CVE-2009-1571.
network
low complexity
mozilla microsoft CWE-399
5.0
2010-05-20 CVE-2010-0745 Resource Management Errors vulnerability in Dovecot
Unspecified vulnerability in Dovecot 1.2.x before 1.2.11 allows remote attackers to cause a denial of service (CPU consumption) via long headers in an e-mail message.
network
low complexity
dovecot CWE-399
5.0
2010-05-17 CVE-2010-0775 Resource Management Errors vulnerability in IBM Websphere Application Server
Unspecified vulnerability in IBM WebSphere Application Server (WAS) 6.0 before 6.0.2.41, 6.1 before 6.1.0.31, and 7.0 before 7.0.0.11 allows remote attackers to cause a denial of service (memory consumption and daemon crash) via a crafted request, related to the nodeagent and Deployment Manager components.
network
low complexity
ibm CWE-399
5.0
2010-05-14 CVE-2010-1565 Resource Management Errors vulnerability in Cisco PGW 2200 Softswitch 9.7(3)P/9.7(3)S
Unspecified vulnerability in the SIP implementation on the Cisco PGW 2200 Softswitch with software 9.7(3)S before 9.7(3)S9 and 9.7(3)P before 9.7(3)P9 allows remote attackers to cause a denial of service (TCP socket exhaustion) via unknown vectors, aka Bug ID CSCsk13561.
network
low complexity
cisco CWE-399
7.8
2010-05-13 CVE-2010-1939 Resource Management Errors vulnerability in Apple Safari 4.0.5
Use-after-free vulnerability in Apple Safari 4.0.5 on Windows allows remote attackers to execute arbitrary code by using window.open to create a popup window for a crafted HTML document, and then calling the parent window's close method, which triggers improper handling of a deleted window object.
network
high complexity
apple microsoft CWE-399
7.6
2010-05-12 CVE-2010-1917 Resource Management Errors vulnerability in PHP
Stack consumption vulnerability in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 allows context-dependent attackers to cause a denial of service (PHP crash) via a crafted first argument to the fnmatch function, as demonstrated using a long string.
network
low complexity
php CWE-399
5.0
2010-05-07 CVE-2010-1861 Resource Management Errors vulnerability in PHP
The sysvshm extension for PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 allows context-dependent attackers to write to arbitrary memory addresses by using an object's __sleep function to interrupt an internal call to the shm_put_var function, which triggers access of a freed resource.
network
low complexity
php CWE-399
6.4
2010-05-06 CVE-2010-1729 Resource Management Errors vulnerability in Apple Safari and Webkit
WebKit.dll in WebKit, as used in Safari.exe 4.531.9.1 in Apple Safari, allows remote attackers to cause a denial of service (application crash) via JavaScript that writes <marquee> sequences in an infinite loop.
4.3
2010-05-06 CVE-2010-1728 Resource Management Errors vulnerability in Opera Browser
Opera before 10.53 on Windows and Mac OS X does not properly handle a series of document modifications that occur asynchronously, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via JavaScript that writes <marquee> sequences in an infinite loop, leading to attempted use of uninitialized memory.
network
opera apple microsoft CWE-399
critical
9.3
2010-05-05 CVE-2010-0406 Resource Management Errors vulnerability in Openttd
OpenTTD before 1.0.1 allows remote attackers to cause a denial of service (file-descriptor exhaustion and daemon crash) by performing incomplete downloads of the map.
network
low complexity
openttd CWE-399
4.0