Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2008-02-25 CVE-2008-0976 Resource Management Errors vulnerability in multiple products
Double-Take 5.0.0.2865 and earlier, distributed under the HP StorageWorks Storage Mirroring name and other names, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a malformed packet, as demonstrated by a packet of type (1) 0x2722 or (2) 0x272a.
network
low complexity
double-take-software hp CWE-399
5.0
2008-02-25 CVE-2008-0974 Resource Management Errors vulnerability in multiple products
Double-Take 5.0.0.2865 and earlier, distributed under the HP StorageWorks Storage Mirroring name and other names, allows remote attackers to cause a denial of service (daemon termination) via (1) a large vector<T> value, which raises a "vector<T> too long" exception; or (2) a certain packet that raises an ospace/time/src\date.cpp exception.
network
low complexity
double-take-software hp CWE-399
5.0
2008-02-21 CVE-2008-0859 Resource Management Errors vulnerability in Kerio Mailserver
Unspecified vulnerability in Kerio MailServer before 6.5.0 allows remote attackers to cause a denial of service (crash) via unspecified vectors related to decoding of uuencoded input, which triggers memory corruption.
network
low complexity
kerio CWE-399
5.0
2008-02-13 CVE-2008-0658 Resource Management Errors vulnerability in Openldap 2.3.39
slapd/back-bdb/modrdn.c in the BDB backend for slapd in OpenLDAP 2.3.39 allows remote authenticated users to cause a denial of service (daemon crash) via a modrdn operation with a NOOP (LDAP_X_NO_OPERATION) control, a related issue to CVE-2007-6698.
network
low complexity
openldap CWE-399
4.0
2008-02-13 CVE-2007-6148 Resource Management Errors vulnerability in Adobe Connect Enterprise Server and Flash Media Server 2
Use-after-free vulnerability in the Edge server in Adobe Flash Media Server 2 before 2.0.5, and Connect Enterprise Server 6 before SP3, allows remote attackers to execute arbitrary code via an unspecified sequence of Real Time Message Protocol (RTMP) requests.
network
low complexity
adobe CWE-399
critical
10.0
2008-02-13 CVE-2008-0103 Resource Management Errors vulnerability in Microsoft Office
Unspecified vulnerability in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP2, and Office 2004 for Mac allows remote attackers to execute arbitrary code via an Office document that contains a malformed object, related to a "memory handling error," aka "Microsoft Office Execution Jump Vulnerability."
network
microsoft CWE-399
critical
9.3
2008-02-13 CVE-2007-3676 Resource Management Errors vulnerability in IBM DB2
IBM DB2 Universal Database (UDB) Administration Server (DAS) 8 before Fix Pack 16 and 9 before Fix Pack 4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via modified pointer values in unspecified remote administration requests, which triggers memory corruption or other invalid memory access.
network
low complexity
ibm CWE-399
critical
10.0
2008-02-12 CVE-2008-0109 Resource Management Errors vulnerability in Microsoft Office and Word
Word in Microsoft Office 2000 SP3, XP SP3, Office 2003 SP2, and Office Word Viewer 2003 allows remote attackers to execute arbitrary code via crafted fields within the File Information Block (FIB) of a Word file, which triggers length calculation errors and memory corruption.
network
microsoft CWE-399
critical
9.3
2008-02-12 CVE-2008-0102 Resource Management Errors vulnerability in Microsoft Publisher 2000/2002/2003
Unspecified vulnerability in Microsoft Office Publisher 2000, 2002, and 2003 SP2 allows remote attackers to execute arbitrary code via a crafted .pub file, related to invalid "memory values," aka "Publisher Invalid Memory Reference Vulnerability."
network
low complexity
microsoft CWE-399
critical
10.0
2008-02-12 CVE-2008-0729 Resource Management Errors vulnerability in Apple Mobile Safari
Mobile Safari on Apple iPhone 1.1.2 and 1.1.3 allows remote attackers to cause a denial of service (memory exhaustion and device crash) via certain JavaScript code that constructs a long string and an array containing long string elements, possibly a related issue to CVE-2006-3677.
network
apple CWE-399
7.1