Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2008-04-08 CVE-2008-1090 Resource Management Errors vulnerability in Microsoft Office and Visio
Unspecified vulnerability in Microsoft Visio 2002 SP2, 2003 SP2 and SP3, and 2007 up to SP1 allows user-assisted remote attackers to execute arbitrary code via a crafted .DXF file, aka "Visio Memory Validation Vulnerability."
network
microsoft CWE-399
critical
9.3
2008-04-08 CVE-2008-1088 Resource Management Errors vulnerability in Microsoft Project 2000/2002/2003
Microsoft Project 2000 Service Release 1, 2002 SP1, and 2003 SP2 allows user-assisted remote attackers to execute arbitrary code via a crafted Project file, related to improper validation of "memory resource allocations."
network
microsoft CWE-399
critical
9.3
2008-04-07 CVE-2008-1690 Resource Management Errors vulnerability in Seattle LAB Software Slmail PRO
WebContainer.exe 1.0.0.336 and earlier in SLMail Pro 6.3.1.0 and earlier allows remote attackers to cause a denial of service (memory corruption and daemon crash) or possibly execute arbitrary code via a long URI in HTTP requests to TCP port 801.
network
low complexity
seattle-lab-software CWE-399
critical
10.0
2008-04-07 CVE-2008-1689 Resource Management Errors vulnerability in Seattle LAB Software Slmail PRO
Stack consumption vulnerability in WebContainer.exe 1.0.0.336 and earlier in SLMail Pro 6.3.1.0 and earlier allows remote attackers to cause a denial of service (daemon crash) via a long request header in an HTTP request to TCP port 801.
network
low complexity
seattle-lab-software CWE-399
5.0
2008-03-27 CVE-2008-1530 Resource Management Errors vulnerability in Gnupg 1.4.8/2.0.8
GnuPG (gpg) 1.4.8 and 2.0.8 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted duplicate keys that are imported from key servers, which triggers "memory corruption around deduplication of user IDs."
network
gnupg CWE-399
critical
9.3
2008-03-27 CVE-2008-1152 Resource Management Errors vulnerability in Cisco IOS and IOS
The data-link switching (DLSw) component in Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service (device restart or memory consumption) via crafted (1) UDP port 2067 or (2) IP protocol 91 packets.
network
low complexity
cisco CWE-399
7.8
2008-03-27 CVE-2008-1151 Resource Management Errors vulnerability in Cisco IOS
Memory leak in the virtual private dial-up network (VPDN) component in Cisco IOS before 12.3 allows remote attackers to cause a denial of service (memory consumption) via a series of PPTP sessions, related to "dead memory" that remains allocated after process termination, aka bug ID CSCsj58566.
network
cisco CWE-399
7.1
2008-03-27 CVE-2008-1150 Resource Management Errors vulnerability in Cisco IOS
The virtual private dial-up network (VPDN) component in Cisco IOS before 12.3 allows remote attackers to cause a denial of service (resource exhaustion) via a series of PPTP sessions, related to the persistence of interface descriptor block (IDB) data structures after process termination, aka bug ID CSCdv59309.
network
cisco CWE-399
7.1
2008-03-27 CVE-2008-1237 Resource Management Errors vulnerability in Mozilla Firefox, Seamonkey and Thunderbird
Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.13, Thunderbird before 2.0.0.13, and SeaMonkey before 1.1.9 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors related to the JavaScript engine.
network
mozilla CWE-399
6.8
2008-03-27 CVE-2008-1236 Resource Management Errors vulnerability in Mozilla Firefox, Seamonkey and Thunderbird
Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.13, Thunderbird before 2.0.0.13, and SeaMonkey before 1.1.9 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors related to the layout engine.
network
mozilla CWE-399
6.8