Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2008-08-13 CVE-2008-0120 Resource Management Errors vulnerability in Microsoft Office Powerpoint Viewer 2003
Integer overflow in Microsoft PowerPoint Viewer 2003 allows remote attackers to execute arbitrary code via a PowerPoint file with a malformed picture index that triggers memory corruption, related to handling of CString objects, aka "Memory Allocation Vulnerability."
network
microsoft CWE-399
critical
9.3
2008-08-12 CVE-2008-3460 Resource Management Errors vulnerability in Microsoft Office, Office Converter Pack and Works
WPGIMP32.FLT in Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 does not properly parse the length of a WordPerfect Graphics (WPG) file, which allows remote attackers to execute arbitrary code via a crafted WPG file, aka the "WPG Image File Heap Corruption Vulnerability."
network
microsoft CWE-399
critical
9.3
2008-08-12 CVE-2008-3021 Resource Management Errors vulnerability in Microsoft Office, Office Converter Pack and Works
Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of a PICT file, which allows remote attackers to execute arbitrary code via a crafted PICT file with an invalid bits_per_pixel field, aka the "PICT Filter Parsing Vulnerability," a different vulnerability than CVE-2008-3018.
network
microsoft CWE-399
critical
9.3
2008-08-12 CVE-2008-3020 Resource Management Errors vulnerability in Microsoft Office, Office Converter Pack and Works
Microsoft Office 2000 SP3 and XP SP3; Office Converter Pack; and Works 8 do not properly parse the length of a BMP file, which allows remote attackers to execute arbitrary code via a crafted BMP file, aka the "Malformed BMP Filter Vulnerability."
network
microsoft CWE-399
critical
9.3
2008-08-12 CVE-2008-3019 Resource Management Errors vulnerability in Microsoft Office, Office Converter Pack and Works
Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of an Encapsulated PostScript (EPS) file, which allows remote attackers to execute arbitrary code via a crafted EPS file, aka the "Malformed EPS Filter Vulnerability."
network
microsoft CWE-399
critical
9.3
2008-08-12 CVE-2008-3006 Resource Management Errors vulnerability in Microsoft products
Microsoft Office Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Office Excel Viewer 2003 Gold and SP3; Office Excel Viewer; Office Compatibility Pack 2007 Gold and SP1; Office SharePoint Server 2007 Gold and SP1; and Office 2004 and 2008 for Mac do not properly parse Country record values when loading Excel files, which allows remote attackers to execute arbitrary code via a crafted Excel file, aka the "Excel Record Parsing Vulnerability." This vulnerability has multiple attack vectors and CIA impact.
network
microsoft CWE-399
critical
9.3
2008-08-07 CVE-2008-3549 Resource Management Errors vulnerability in SUN Opensolaris and Solaris
Unspecified vulnerability in the pthread_mutex_reltimedlock_np API in Sun Solaris 10 and OpenSolaris before snv_90 allows local users to cause a denial of service (system hang or panic) via unknown vectors.
local
sun CWE-399
4.7
2008-08-04 CVE-2008-3449 Resource Management Errors vulnerability in Mailenable 3.52
MailEnable Professional 3.5.2 and Enterprise 3.52 allow remote attackers to cause a denial of service (crash) via multiple IMAP connection requests to the same folder.
network
low complexity
mailenable CWE-399
5.0
2008-08-04 CVE-2008-3447 Resource Management Errors vulnerability in F-Prot Antivirus and Scanning Engine
The scanning engine in F-Prot Antivirus 6.2.1 4252 allows remote attackers to cause a denial of service (infinite loop) via a malformed ZIP archive, probably related to invalid offsets.
network
low complexity
f-prot CWE-399
5.0
2008-08-04 CVE-2008-2325 Resource Management Errors vulnerability in Apple Quicklook
QuickLook in Apple Mac OS X 10.4.11 and 10.5.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted Microsoft Office file, related to insufficient "bounds checking."
network
apple CWE-399
critical
9.3