Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2009-02-06 CVE-2002-2430 Resource Management Errors vulnerability in Goahead Webserver 2.0/2.1
GoAhead WebServer before 2.1.1 allows remote attackers to cause a denial of service (CPU consumption) by performing a socket disconnect to terminate a request before it has been fully processed by the server.
network
low complexity
goahead CWE-399
5.0
2009-02-06 CVE-2008-6082 Resource Management Errors vulnerability in Southrivertech Titan FTP Server 6.26
Titan FTP Server 6.26 build 630 allows remote attackers to cause a denial of service (CPU consumption) via the SITE WHO command.
network
low complexity
southrivertech CWE-399
5.0
2009-02-04 CVE-2009-0353 Resource Management Errors vulnerability in Mozilla Firefox, Seamonkey and Thunderbird
Unspecified vulnerability in Mozilla Firefox 3.x before 3.0.6, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the JavaScript engine.
network
low complexity
mozilla CWE-399
critical
10.0
2009-02-04 CVE-2009-0352 Resource Management Errors vulnerability in Mozilla Firefox, Seamonkey and Thunderbird
Multiple unspecified vulnerabilities in Mozilla Firefox 3.x before 3.0.6, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the layout engine and destruction of arbitrary layout objects by the nsViewManager::Composite function.
network
low complexity
mozilla CWE-399
critical
10.0
2009-02-03 CVE-2009-0414 Resource Management Errors vulnerability in TOR
Unspecified vulnerability in Tor before 0.2.0.33 has unspecified impact and remote attack vectors that trigger heap corruption.
network
low complexity
tor CWE-399
critical
10.0
2009-02-02 CVE-2008-6024 Resource Management Errors vulnerability in SUN Opensolaris and Solaris
Unspecified vulnerability in the NFSv4 client module in the kernel on Sun Solaris 10 and OpenSolaris before snv_37, when automountd is used, allows user-assisted remote attackers to cause a denial of service (unresponsive NFS filesystems) via unknown vectors.
network
high complexity
sun CWE-399
5.4
2009-01-28 CVE-2008-6000 Resource Management Errors vulnerability in Gdata products
The GDTdiIcpt.sys driver in G DATA AntiVirus 2008, InternetSecurity 2008, and TotalCare 2008 populates kernel registers with IOCTL 0x8317001c input values, which allows local users to cause a denial of service (system crash) or gain privileges via a crafted IOCTL request, as demonstrated by execution of the KeSetEvent function with modified register contents.
local
low complexity
gdata CWE-399
7.2
2009-01-22 CVE-2009-0259 Resource Management Errors vulnerability in Openoffice Openoffice.Org
The Word processor in OpenOffice.org 1.1.2 through 1.1.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) .doc, (2) .wri, or (3) .rtf Word 97 file that triggers memory corruption, as exploited in the wild in December 2008, as demonstrated by 2008-crash.doc.rar, and a similar issue to CVE-2008-4841.
network
openoffice CWE-399
critical
9.3
2009-01-21 CVE-2009-0005 Resource Management Errors vulnerability in Apple Quicktime
Unspecified vulnerability in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted H.263 encoded movie file that triggers memory corruption.
network
apple microsoft CWE-399
critical
9.3
2009-01-21 CVE-2009-0219 Resource Management Errors vulnerability in Research in Motion Limited products
The PDF distiller in the Attachment Service in Research in Motion (RIM) BlackBerry Enterprise Server (BES) 4.1.3 through 4.1.6, BlackBerry Professional Software 4.1.4, and BlackBerry Unite! before 1.0.3 bundle 28 performs delete operations on uninitialized pointers, which allows user-assisted remote attackers to execute arbitrary code via a crafted data stream in a .pdf file.
9.3