Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2014-03-27 CVE-2014-0506 Resource Management Errors vulnerability in Adobe Flash Player 12.0.0.77
Use-after-free vulnerability in Adobe Flash Player before 11.7.700.275 and 11.8.x through 13.0.x before 13.0.0.182 on Windows and OS X and before 11.2.202.350 on Linux, Adobe AIR before 13.0.0.83 on Android, Adobe AIR SDK before 13.0.0.83, and Adobe AIR SDK & Compiler before 13.0.0.83 allows remote attackers to execute arbitrary code, and possibly bypass an Internet Explorer sandbox protection mechanism, via unspecified vectors, as demonstrated by VUPEN during a Pwn2Own competition at CanSecWest 2014.
network
low complexity
adobe microsoft CWE-399
critical
10.0
2014-03-24 CVE-2014-2258 Resource Management Errors vulnerability in Siemens products
Siemens SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted HTTPS packets, a different vulnerability than CVE-2014-2259.
network
low complexity
siemens CWE-399
7.8
2014-03-24 CVE-2014-2256 Resource Management Errors vulnerability in Siemens products
Siemens SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted ISO-TSAP packets, a different vulnerability than CVE-2014-2257.
network
low complexity
siemens CWE-399
7.8
2014-03-24 CVE-2014-2254 Resource Management Errors vulnerability in Siemens products
Siemens SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted HTTP packets, a different vulnerability than CVE-2014-2255.
network
low complexity
siemens CWE-399
7.8
2014-03-24 CVE-2014-2252 Resource Management Errors vulnerability in Siemens products
Siemens SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted PROFINET packets, a different vulnerability than CVE-2014-2253.
low complexity
siemens CWE-399
6.1
2014-03-21 CVE-2013-7340 Resource Management Errors vulnerability in Videolan VLC Media Player
VideoLAN VLC Media Player before 2.0.7 allows remote attackers to cause a denial of service (memory consumption) via a crafted playlist file.
network
videolan CWE-399
4.3
2014-03-21 CVE-2014-2124 Resource Management Errors vulnerability in Cisco IOS
Cisco IOS 15.1(2)SY3 and earlier, when used with Supervisor Engine 2T (aka Sup2T) on Catalyst 6500 devices, allows remote attackers to cause a denial of service (device crash) via crafted multicast packets, aka Bug ID CSCuf60783.
network
cisco CWE-399
7.1
2014-03-18 CVE-2014-2537 Resource Management Errors vulnerability in Sophos products
Memory leak in the TCP stack in the kernel in Sophos UTM before 9.109 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors.
network
low complexity
sophos CWE-399
7.8
2014-03-11 CVE-2013-4188 Resource Management Errors vulnerability in Plone
traverser.py in Plone 2.1 through 4.1, 4.2.x through 4.2.5, and 4.3.x through 4.3.1 allows remote attackers with administrator privileges to cause a denial of service (infinite loop and resource consumption) via unspecified vectors related to "retrieving information for certain resources."
network
plone CWE-399
4.3
2014-03-06 CVE-2013-6437 Resource Management Errors vulnerability in Openstack Nova
The libvirt driver in OpenStack Compute (Nova) before 2013.2.2 and icehouse before icehouse-2 allows remote authenticated users to cause a denial of service (disk consumption) by creating and deleting instances with unique os_type settings, which triggers the creation of a new ephemeral disk backing file.
network
low complexity
openstack CWE-399
4.0