Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2009-12-09 CVE-2009-0102 Resource Management Errors vulnerability in Microsoft products
Microsoft Project 2000 SR1 and 2002 SP1, and Office Project 2003 SP3, does not properly handle memory allocation for Project files, which allows remote attackers to execute arbitrary code via a malformed file, aka "Project Memory Validation Vulnerability."
network
microsoft CWE-399
critical
9.3
2009-12-08 CVE-2009-4228 Resource Management Errors vulnerability in Xfig 3.2.4/3.2.5
Stack consumption vulnerability in u_bound.c in Xfig 3.2.5b and earlier allows remote attackers to cause a denial of service (application crash) via a long string in a malformed .fig file that uses the 1.3 file format, possibly related to the readfp_fig function in f_read.c.
network
xfig CWE-399
4.3
2009-11-16 CVE-2009-3948 Resource Management Errors vulnerability in Cowonamerica Cowon Media Center-Jetaudio 7.5.3
JetAudio 7.5.3 COWON Media Center allows remote attackers to cause a denial of service (memory consumption and application crash) via a long string at the end of a .wav file.
4.3
2009-11-13 CVE-2009-3937 Resource Management Errors vulnerability in SUN Opensolaris
Memory leak in Solaris TCP sockets in Sun OpenSolaris snv_106 through snv_126 allows local users to cause a denial of service (kernel memory consumption) via unspecified vectors involving tcp_sendmsg processing "ancillary data."
local
low complexity
sun CWE-399
4.9
2009-11-13 CVE-2009-3676 Resource Management Errors vulnerability in Microsoft Windows 7 and Windows Server 2008
The SMB client in the kernel in Microsoft Windows Server 2008 R2 and Windows 7 allows remote SMB servers and man-in-the-middle attackers to cause a denial of service (infinite loop and system hang) via a (1) SMBv1 or (2) SMBv2 response packet that contains (a) an incorrect length value in a NetBIOS header or (b) an additional length field at the end of this response packet, aka "SMB Client Incomplete Response Vulnerability."
network
microsoft CWE-399
7.1
2009-11-12 CVE-2009-3933 Resource Management Errors vulnerability in Webkit 2.4.11
WebKit before r50173, as used in Google Chrome before 3.0.195.32, allows remote attackers to cause a denial of service (CPU consumption) via a web page that calls the JavaScript setInterval method, which triggers an incompatibility between the WTF::currentTime and base::Time functions.
network
low complexity
webkit google CWE-399
5.0
2009-11-10 CVE-2009-2839 Resource Management Errors vulnerability in Apple mac OS X and mac OS X Server
Screen Sharing in Apple Mac OS X 10.5.8 allows remote VNC servers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors.
network
apple CWE-399
6.8
2009-11-10 CVE-2009-2828 Resource Management Errors vulnerability in Apple mac OS X and mac OS X Server
The server in DirectoryService in Apple Mac OS X 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors.
network
low complexity
apple CWE-399
7.5
2009-11-10 CVE-2009-2819 Resource Management Errors vulnerability in Apple mac OS X and mac OS X Server
AFP Client in Apple Mac OS X 10.5.8 allows remote AFP servers to execute arbitrary code or cause a denial of service (memory corruption and system crash) via unspecified vectors.
network
apple CWE-399
critical
9.3
2009-11-06 CVE-2009-3899 Resource Management Errors vulnerability in SUN Opensolaris and Solaris
Memory leak in the Sockets Direct Protocol (SDP) driver in Sun Solaris 10, and OpenSolaris snv_57 through snv_94, allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors.
network
low complexity
sun CWE-399
7.8