Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2007-04-18 CVE-2007-2120 Resource Management Errors vulnerability in Oracle Application Server 10.1.2.0.2/10.1.2.2/9.0.4.3
The Oracle Discoverer servlet in Oracle Application Server 9.0.4.3, 10.1.2.0.2, and 10.1.2.2.0 allows remote attackers to shut down an Oracle TNS Listener via a TNS STOP command in a request that uses the database/TNS alias, aka AS01.
network
low complexity
oracle CWE-399
7.8
2007-04-16 CVE-2007-2039 Resource Management Errors vulnerability in Cisco Wireless LAN Controller Software
The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.171.5, 4.0.x before 4.0.206.0, and 4.1.x allows remote attackers on a local wireless network to cause a denial of service (loss of packet forwarding) via (1) crafted SNAP packets, (2) malformed 802.11 traffic, or (3) packets with certain header length values, aka Bug IDs CSCsg15901 and CSCsh10841.
low complexity
cisco CWE-399
6.1
2007-04-16 CVE-2007-2037 Resource Management Errors vulnerability in Cisco Wireless LAN Controller Software 3.2/4.0/4.0.108
Cisco Wireless LAN Controller (WLC) before 3.2.116.21, and 4.0.x before 4.0.155.0, allows remote attackers on a local network to cause a denial of service (device crash) via malformed Ethernet traffic.
2.9
2007-04-10 CVE-2007-1209 Resource Management Errors vulnerability in Microsoft Windows Vista
Use-after-free vulnerability in the Client/Server Run-time Subsystem (CSRSS) in Microsoft Windows Vista does not properly handle connection resources when starting and stopping processes, which allows local users to gain privileges by opening and closing multiple ApiPort connections, which leaves a "dangling pointer" to a process data structure.
local
low complexity
microsoft CWE-399
7.2
2007-04-04 CVE-2007-1211 Resource Management Errors vulnerability in Microsoft Windows 2000, Windows 2003 Server and Windows XP
Unspecified kernel GDI functions in Microsoft Windows 2000 SP4; XP SP2; and Server 2003 Gold, SP1, and SP2 allows user-assisted remote attackers to cause a denial of service (possibly persistent restart) via a crafted Windows Metafile (WMF) image that causes an invalid dereference of an offset in a kernel structure, a related issue to CVE-2005-4560.
network
microsoft CWE-399
7.1
2007-03-20 CVE-2007-1531 Resource Management Errors vulnerability in Microsoft Windows Vista and Windows XP
Microsoft Windows XP and Vista overwrites ARP table entries included in gratuitous ARP, which allows remote attackers to cause a denial of service (loss of network access) by sending a gratuitous ARP for the address of the Vista host.
network
low complexity
microsoft CWE-399
5.0
2007-03-10 CVE-2007-1388 Resource Management Errors vulnerability in Linux Kernel
The do_ipv6_setsockopt function in net/ipv6/ipv6_sockglue.c in Linux kernel before 2.6.20, and possibly other versions, allows local users to cause a denial of service (oops) by calling setsockopt with the IPV6_RTHDR option name and possibly a zero option length or invalid option value, which triggers a NULL pointer dereference.
local
linux CWE-399
4.4
2007-03-07 CVE-2007-1308 Resource Management Errors vulnerability in KDE Konqueror 3.5.5
ecma/kjs_html.cpp in KDE JavaScript (KJS), as used in Konqueror in KDE 3.5.5, allows remote attackers to cause a denial of service (crash) by accessing the content of an iframe with an ftp:// URI in the src attribute, probably due to a NULL pointer dereference.
network
kde CWE-399
4.3
2007-03-03 CVE-2007-1238 Resource Management Errors vulnerability in Microsoft Office 2003
Microsoft Office 2003 allows user-assisted remote attackers to cause a denial of service (application crash) by attempting to insert a corrupted WMF file.
network
microsoft CWE-399
4.3
2007-02-22 CVE-2007-1082 Resource Management Errors vulnerability in Ftpx FTP Explorer 1.0.1/1.0.1.47
FTP Explorer 1.0.1 Build 047, and other versions before 1.0.1.52, allows remote servers to cause a denial of service (CPU consumption) via a long response to a PWD command.
network
ftpx CWE-399
7.1