Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2008-04-14 CVE-2008-0927 Resource Management Errors vulnerability in Microsoft Windows-Nt 2000/2003
dhost.exe in Novell eDirectory 8.7.3 before sp10 and 8.8.2 allows remote attackers to cause a denial of service (CPU consumption) via an HTTP request with (1) multiple Connection headers or (2) a Connection header with multiple comma-separated values.
network
low complexity
novell microsoft CWE-399
5.0
2008-04-12 CVE-2008-1762 Resource Management Errors vulnerability in Opera Browser
Opera before 9.27 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted scaled image pattern in an HTML CANVAS element, which triggers memory corruption.
network
opera CWE-399
critical
9.3
2008-04-12 CVE-2008-1761 Resource Management Errors vulnerability in Opera
Opera before 9.27 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted newsfeed source, which triggers an invalid memory access.
network
opera CWE-399
critical
9.3
2008-04-11 CVE-2008-1728 Resource Management Errors vulnerability in Ignite Realtime Openfire 3.4.5
ConnectionManagerImpl.java in Ignite Realtime Openfire 3.4.5 allows remote authenticated users to cause a denial of service (daemon outage) by triggering large outgoing queues without reading messages.
network
low complexity
ignite-realtime CWE-399
4.0
2008-04-09 CVE-2008-1708 Resource Management Errors vulnerability in IBM Soliddb
IBM solidDB 06.00.1018 and earlier does not validate a certain field that specifies an amount of memory to allocate, which allows remote attackers to cause a denial of service (daemon exit) via a packet with a large value in this field.
network
ibm CWE-399
4.3
2008-04-09 CVE-2008-1707 Resource Management Errors vulnerability in IBM Soliddb
IBM solidDB 06.00.1018 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a packet with an 0x11 value in a certain "type" field.
network
ibm CWE-399
4.3
2008-04-08 CVE-2008-1090 Resource Management Errors vulnerability in Microsoft Office and Visio
Unspecified vulnerability in Microsoft Visio 2002 SP2, 2003 SP2 and SP3, and 2007 up to SP1 allows user-assisted remote attackers to execute arbitrary code via a crafted .DXF file, aka "Visio Memory Validation Vulnerability."
network
microsoft CWE-399
critical
9.3
2008-04-08 CVE-2008-1088 Resource Management Errors vulnerability in Microsoft Project 2000/2002/2003
Microsoft Project 2000 Service Release 1, 2002 SP1, and 2003 SP2 allows user-assisted remote attackers to execute arbitrary code via a crafted Project file, related to improper validation of "memory resource allocations."
network
microsoft CWE-399
critical
9.3
2008-04-07 CVE-2008-1690 Resource Management Errors vulnerability in Seattle LAB Software Slmail PRO
WebContainer.exe 1.0.0.336 and earlier in SLMail Pro 6.3.1.0 and earlier allows remote attackers to cause a denial of service (memory corruption and daemon crash) or possibly execute arbitrary code via a long URI in HTTP requests to TCP port 801.
network
low complexity
seattle-lab-software CWE-399
critical
10.0
2008-04-07 CVE-2008-1689 Resource Management Errors vulnerability in Seattle LAB Software Slmail PRO
Stack consumption vulnerability in WebContainer.exe 1.0.0.336 and earlier in SLMail Pro 6.3.1.0 and earlier allows remote attackers to cause a denial of service (daemon crash) via a long request header in an HTTP request to TCP port 801.
network
low complexity
seattle-lab-software CWE-399
5.0