Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2008-12-19 CVE-2008-5689 Resource Management Errors vulnerability in SUN Opensolaris and Solaris
tun in IP Tunnel in Solaris 10 and OpenSolaris snv_01 through snv_76 allows local users to cause a denial of service (panic) and possibly execute arbitrary code via a crafted SIOCGTUNPARAM IOCTL request, which triggers a NULL pointer dereference.
local
low complexity
sun CWE-399
7.2
2008-12-19 CVE-2008-5684 Resource Management Errors vulnerability in SUN Opensolaris and Solaris
Unspecified vulnerability in the X Inter Client Exchange library (aka libICE) in Sun Solaris 8 through 10 and OpenSolaris before snv_85 allows context-dependent attackers to cause a denial of service (application crash), as demonstrated by a port scan that triggers a segmentation violation in the Gnome session manager (aka gnome-session).
network
low complexity
sun CWE-399
5.0
2008-12-19 CVE-2008-5679 Resource Management Errors vulnerability in Opera
The HTML parsing engine in Opera before 9.63 allows remote attackers to execute arbitrary code via crafted web pages that trigger an invalid pointer calculation and heap corruption.
network
opera CWE-399
critical
9.3
2008-12-19 CVE-2008-5667 Resource Management Errors vulnerability in Virusblokada Vba32 Personal Antivirus 3.12.8
The scanning engine in VirusBlokAda VBA32 Personal Antivirus 3.12.8.x allows remote attackers to cause a denial of service (memory corruption and application crash) via a malformed RAR archive.
network
low complexity
virusblokada CWE-399
5.0
2008-12-19 CVE-2008-5666 Resource Management Errors vulnerability in Wftpserver Winftp FTP Server 2.3.0
WinFTP FTP Server 2.3.0, when passive (aka PASV) mode is used, allows remote authenticated users to cause a denial of service via a sequence of FTP sessions that include an invalid "NLST -1" command.
3.5
2008-12-17 CVE-2008-5502 Resource Management Errors vulnerability in multiple products
The layout engine in Mozilla Firefox 3.x before 3.0.5, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 allows remote attackers to cause a denial of service (crash) via vectors that trigger memory corruption, related to the GetXMLEntity and FastAppendChar functions.
network
low complexity
mozilla canonical CWE-399
5.0
2008-12-17 CVE-2008-5500 Resource Management Errors vulnerability in multiple products
The layout engine in Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 allows remote attackers to cause a denial of service (crash) and possibly trigger memory corruption via vectors related to (1) a reachable assertion or (2) an integer overflow.
network
low complexity
mozilla canonical debian CWE-399
critical
10.0
2008-12-17 CVE-2008-5661 Resource Management Errors vulnerability in SUN Opensolaris and Solaris
The IPv4 Forwarding feature in Sun Solaris 10 and OpenSolaris snv_47 through snv_82, with certain patches installed, allows remote attackers to cause a denial of service (panic) via unknown vectors that trigger a NULL pointer dereference.
network
high complexity
sun CWE-399
5.4
2008-12-17 CVE-2008-5626 Resource Management Errors vulnerability in Dxmsoft XM Easy Personal FTP Server 5.6.0
XM Easy Personal FTP Server 5.6.0 allows remote authenticated users to cause a denial of service via a crafted argument to the NLST command, as demonstrated by a -1 argument.
network
low complexity
dxmsoft CWE-399
4.0
2008-12-17 CVE-2008-5620 Resource Management Errors vulnerability in Roundcube Webmail 0.1/0.1.1/0.2
RoundCube Webmail (roundcubemail) before 0.2-beta allows remote attackers to cause a denial of service (memory consumption) via crafted size parameters that are used to create a large quota image.
network
low complexity
roundcube CWE-399
7.8