Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2008-12-17 CVE-2008-5081 Resource Management Errors vulnerability in Avahi
The originates_from_local_legacy_unicast_socket function (avahi-core/server.c) in avahi-daemon in Avahi before 0.6.24 allows remote attackers to cause a denial of service (crash) via a crafted mDNS packet with a source port of 0, which triggers an assertion failure.
network
low complexity
avahi CWE-399
5.0
2008-12-17 CVE-2008-4236 Resource Management Errors vulnerability in Apple mac OS X and mac OS X Server
Apple Type Services (ATS) in Apple Mac OS X 10.5 before 10.5.6 allows remote attackers to cause a denial of service (infinite loop) via a crafted embedded font in a PDF file.
network
apple CWE-399
7.1
2008-12-17 CVE-2008-4222 Resource Management Errors vulnerability in Apple mac OS X and mac OS X Server
natd in network_cmds in Apple Mac OS X before 10.5.6, when Internet Sharing is enabled, allows remote attackers to cause a denial of service (infinite loop) via a crafted TCP packet.
network
apple CWE-399
7.1
2008-12-17 CVE-2008-4221 Resource Management Errors vulnerability in Apple mac OS X and mac OS X Server
The strptime API in Libsystem in Apple Mac OS X before 10.5.6 allows context-dependent attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via a crafted date string, related to improper memory allocation.
network
low complexity
apple CWE-399
critical
10.0
2008-12-17 CVE-2008-4219 Resource Management Errors vulnerability in Apple mac OS X and mac OS X Server
The kernel in Apple Mac OS X before 10.5.6 allows local users to cause a denial of service (infinite loop and system halt) by running an application that is dynamically linked to libraries on an NFS server, related to occurrence of an exception in this application.
local
low complexity
apple CWE-399
4.9
2008-12-15 CVE-2008-5563 Resource Management Errors vulnerability in multiple products
Aruba Mobility Controller 2.4.8.x-FIPS, 2.5.x, 3.1.x, 3.2.x, 3.3.1.x, and 3.3.2.x allows remote attackers to cause a denial of service (device crash) via a malformed Extensible Authentication Protocol (EAP) frame.
network
low complexity
aruba-networks arubanetworks CWE-399
7.8
2008-12-13 CVE-2008-5430 Resource Management Errors vulnerability in Mozilla Thunderbird 2.0.0.14
Mozilla Thunderbird 2.0.14 does not properly handle (1) multipart/mixed e-mail messages with many MIME parts and possibly (2) e-mail messages with many "Content-type: message/rfc822;" headers, which might allow remote attackers to cause a denial of service (stack consumption or other resource consumption) via a large e-mail message, a related issue to CVE-2006-1173.
network
mozilla CWE-399
4.3
2008-12-11 CVE-2008-5429 Resource Management Errors vulnerability in Incredimail 5.85
Incredimail build 5853710 does not properly handle (1) multipart/mixed e-mail messages with many MIME parts and possibly (2) e-mail messages with many "Content-type: message/rfc822;" headers, which allows remote attackers to cause a denial of service (stack consumption or other resource consumption) via a large e-mail message, a related issue to CVE-2006-1173.
4.3
2008-12-11 CVE-2008-5428 Resource Management Errors vulnerability in Opera 9.51
Opera 9.51 on Windows XP does not properly handle (1) multipart/mixed e-mail messages with many MIME parts and possibly (2) e-mail messages with many "Content-type: message/rfc822;" headers, which allows remote attackers to cause a denial of service (stack consumption or other resource consumption) via a large e-mail message, a related issue to CVE-2006-1173.
4.3
2008-12-11 CVE-2008-5427 Resource Management Errors vulnerability in Symantec Norton Internet Security 2008 15.5.0.23
Norton Antivirus in Norton Internet Security 15.5.0.23 does not properly handle (1) multipart/mixed e-mail messages with many MIME parts and possibly (2) e-mail messages with many "Content-type: message/rfc822;" headers, which allows remote attackers to cause a denial of service (stack consumption or other resource consumption) via a large e-mail message, a related issue to CVE-2006-1173.
network
symantec CWE-399
4.3