Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2007-05-08 CVE-2007-1747 Resource Management Errors vulnerability in Microsoft Office
Unspecified vulnerability in MSO.dll in Microsoft Office 2000 SP3, 2002 SP3, 2003 SP2, 2004 for Mac, and 2007 allows user-assisted remote attackers to execute arbitrary code via a malformed drawing object, which triggers memory corruption.
network
microsoft CWE-399
critical
9.3
2007-05-08 CVE-2007-0947 Resource Management Errors vulnerability in Microsoft Internet Explorer 6/7.0
Use-after-free vulnerability in Microsoft Internet Explorer 7 on Windows XP SP2, Windows Server 2003 SP1 or SP2, or Windows Vista allows remote attackers to execute arbitrary code via crafted HTML objects, resulting in accessing deallocated memory of CMarkup objects, aka the second of two "HTML Objects Memory Corruption Vulnerabilities" and a different issue than CVE-2007-0946.
network
microsoft CWE-399
critical
9.3
2007-05-07 CVE-2007-1861 Resource Management Errors vulnerability in Linux Kernel
The nl_fib_lookup function in net/ipv4/fib_frontend.c in Linux Kernel before 2.6.20.8 allows attackers to cause a denial of service (kernel panic) via NETLINK_FIB_LOOKUP replies, which trigger infinite recursion and a stack overflow.
local
low complexity
linux CWE-399
4.9
2007-05-01 CVE-2007-2415 Resource Management Errors vulnerability in Pi3Web web Server 2.0.3Pl1
Pi3Web Web Server 2.0.3 PL1 allows remote attackers to cause a denial of service (application exit) via a long URI.
network
low complexity
pi3web CWE-399
5.0
2007-04-30 CVE-2007-2029 Resource Management Errors vulnerability in Clam Anti-Virus Clamav 0.84Rc2
File descriptor leak in the PDF handler in Clam AntiVirus (ClamAV) allows remote attackers to cause a denial of service via a crafted PDF file.
network
low complexity
debian clam-anti-virus CWE-399
7.8
2007-04-25 CVE-2007-2246 Resource Management Errors vulnerability in Sendmail 8.11.1/8.9.3
Unspecified vulnerability in HP-UX B.11.00 and B.11.11, when running sendmail 8.9.3 or 8.11.1; and HP-UX B.11.23 when running sendmail 8.11.1; allows remote attackers to cause a denial of service via unknown attack vectors.
network
low complexity
hp sendmail CWE-399
7.8
2007-04-18 CVE-2007-2120 Resource Management Errors vulnerability in Oracle Application Server 10.1.2.0.2/10.1.2.2/9.0.4.3
The Oracle Discoverer servlet in Oracle Application Server 9.0.4.3, 10.1.2.0.2, and 10.1.2.2.0 allows remote attackers to shut down an Oracle TNS Listener via a TNS STOP command in a request that uses the database/TNS alias, aka AS01.
network
low complexity
oracle CWE-399
7.8
2007-04-16 CVE-2007-2039 Resource Management Errors vulnerability in Cisco Wireless LAN Controller Software
The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.171.5, 4.0.x before 4.0.206.0, and 4.1.x allows remote attackers on a local wireless network to cause a denial of service (loss of packet forwarding) via (1) crafted SNAP packets, (2) malformed 802.11 traffic, or (3) packets with certain header length values, aka Bug IDs CSCsg15901 and CSCsh10841.
low complexity
cisco CWE-399
6.1
2007-04-16 CVE-2007-2037 Resource Management Errors vulnerability in Cisco Wireless LAN Controller Software 3.2/4.0/4.0.108
Cisco Wireless LAN Controller (WLC) before 3.2.116.21, and 4.0.x before 4.0.155.0, allows remote attackers on a local network to cause a denial of service (device crash) via malformed Ethernet traffic.
2.9
2007-04-10 CVE-2007-1209 Resource Management Errors vulnerability in Microsoft Windows Vista
Use-after-free vulnerability in the Client/Server Run-time Subsystem (CSRSS) in Microsoft Windows Vista does not properly handle connection resources when starting and stopping processes, which allows local users to gain privileges by opening and closing multiple ApiPort connections, which leaves a "dangling pointer" to a process data structure.
local
low complexity
microsoft CWE-399
7.2