Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2007-08-28 CVE-2007-4577 Resource Management Errors vulnerability in Sophos Anti-Virus, Scanning Engine and Small Business Suite
Sophos Anti-Virus for Unix/Linux before 2.48.0 allows remote attackers to cause a denial of service (infinite loop) via a malformed BZip file that results in the creation of multiple Engine temporary files (aka a "BZip bomb").
network
low complexity
sophos CWE-399
7.8
2007-08-13 CVE-2007-3851 Resource Management Errors vulnerability in Linux Kernel
The drm/i915 component in the Linux kernel before 2.6.22.2, when used with i965G and later chipsets, allows local users with access to an X11 session and Direct Rendering Manager (DRM) to write to arbitrary memory locations and gain privileges via a crafted batchbuffer.
local
high complexity
linux intel CWE-399
6.0
2007-08-03 CVE-2007-4158 Resource Management Errors vulnerability in Tibco Rendezvous 7.5.2/7.5.3/7.5.4
Memory leak in TIBCO Rendezvous (RV) daemon (rvd) 7.5.2, 7.5.3 and 7.5.4 allows remote attackers to cause a denial of service (memory consumption) via a packet with a length field of zero, a different vulnerability than CVE-2006-2830.
network
low complexity
tibco CWE-399
7.8
2007-07-10 CVE-2007-1754 Resource Management Errors vulnerability in Microsoft Publisher 2007
PUBCONV.DLL in Microsoft Office Publisher 2007 does not properly clear memory when transferring data from disk to memory, which allows user-assisted remote attackers to execute arbitrary code via a malformed .pub page via a certain negative value, which bypasses a sanitization procedure that initializes critical pointers to NULL, aka the "Publisher Invalid Memory Reference Vulnerability".
network
microsoft CWE-399
critical
9.3
2007-06-28 CVE-2007-3477 Resource Management Errors vulnerability in Libgd GD Graphics Library 2.0.33/2.0.34/2.0.35
The (a) imagearc and (b) imagefilledarc functions in GD Graphics Library (libgd) before 2.0.35 allow attackers to cause a denial of service (CPU consumption) via a large (1) start or (2) end angle degree value.
network
low complexity
libgd CWE-399
5.0
2007-06-26 CVE-2007-3104 Resource Management Errors vulnerability in Linux Kernel 2.6.0
The sysfs_readdir function in the Linux kernel 2.6, as used in Red Hat Enterprise Linux (RHEL) 4.5 and other distributions, allows users to cause a denial of service (kernel OOPS) by dereferencing a null pointer to an inode in a dentry.
local
low complexity
linux redhat CWE-399
4.9
2007-06-19 CVE-2007-3274 Resource Management Errors vulnerability in Apple Safari 3.0/3.0.1
Apple Safari 3.0 and 3.0.1 on Windows XP SP2 allows attackers to cause a denial of service (application crash) via JavaScript that sets the document.location variable, as demonstrated by an empty value of document.location.
4.3
2007-06-12 CVE-2007-3185 Resource Management Errors vulnerability in Apple Safari 3.0.1
Apple Safari Beta 3.0.1 for Windows public beta allows remote attackers to cause a denial of service (crash) via unspecified DHTML manipulations that trigger memory corruption, as demonstrated using Hamachi.
network
low complexity
apple CWE-399
7.8
2007-06-07 CVE-2007-3116 Resource Management Errors vulnerability in Maradns 1.2.12.06/1.3.05
Memory leak in server/MaraDNS.c in MaraDNS 1.2.12.06 and 1.3.05 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors, a different set of affected versions than CVE-2007-3114 and CVE-2007-3115.
network
low complexity
maradns CWE-399
5.0
2007-06-07 CVE-2007-3115 Resource Management Errors vulnerability in Maradns
Multiple memory leaks in server/MaraDNS.c in MaraDNS before 1.2.12.06, and 1.3.x before 1.3.05, allow remote attackers to cause a denial of service (memory consumption) via (1) reverse lookups or (2) requests for records in a class other than Internet (IN), a different set of affected versions than CVE-2007-3114 and CVE-2007-3116.
network
low complexity
maradns CWE-399
7.8