Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2013-01-10 CVE-2013-0602 Resource Management Errors vulnerability in Adobe Acrobat and Acrobat Reader
Use-after-free vulnerability in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allows attackers to execute arbitrary code via unspecified vectors.
network
low complexity
adobe CWE-399
critical
10.0
2013-01-01 CVE-2012-5573 Resource Management Errors vulnerability in Torproject TOR
The connection_edge_process_relay_cell function in or/relay.c in Tor before 0.2.3.25 maintains circuits even if an unexpected SENDME cell arrives, which might allow remote attackers to cause a denial of service (memory consumption or excessive cell reception rate) or bypass intended flow-control restrictions via a RELAY_COMMAND_SENDME command.
network
low complexity
torproject CWE-399
5.0
2012-12-19 CVE-2012-4534 Resource Management Errors vulnerability in Apache Tomcat
org/apache/tomcat/util/net/NioEndpoint.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.28, when the NIO connector is used in conjunction with sendfile and HTTPS, allows remote attackers to cause a denial of service (infinite loop) by terminating the connection during the reading of a response.
network
high complexity
apache CWE-399
2.6
2012-12-18 CVE-2012-4691 Resource Management Errors vulnerability in Siemens Automation License Manager 4.0/5.0/5.1
Memory leak in Siemens Automation License Manager (ALM) 4.x and 5.x before 5.2 allows remote attackers to cause a denial of service (memory consumption) via crafted packets.
low complexity
siemens CWE-399
3.3
2012-12-13 CVE-2012-6333 Resource Management Errors vulnerability in XEN
Multiple HVM control operations in Xen 3.4 through 4.2 allow local HVM guest OS administrators to cause a denial of service (physical CPU consumption) via a large input.
local
xen CWE-399
4.7
2012-12-13 CVE-2011-3131 Resource Management Errors vulnerability in XEN
Xen 4.1.1 and earlier allows local guest OS kernels with control of a PCI[E] device to cause a denial of service (CPU consumption and host hang) via many crafted DMA requests that are denied by the IOMMU, which triggers a livelock.
local
low complexity
xen CWE-399
4.6
2012-11-30 CVE-2012-6063 Resource Management Errors vulnerability in Libssh
Double free vulnerability in the sftp_mkdir function in sftp.c in libssh before 0.5.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors, a different vector than CVE-2012-4559.
network
low complexity
libssh CWE-399
7.5
2012-11-30 CVE-2012-4559 Resource Management Errors vulnerability in Libssh
Multiple double free vulnerabilities in the (1) agent_sign_data function in agent.c, (2) channel_request function in channels.c, (3) ssh_userauth_pubkey function in auth.c, (4) sftp_parse_attr_3 function in sftp.c, and (5) try_publickey_from_file function in keyfiles.c in libssh before 0.5.3 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.
network
libssh CWE-399
6.8
2012-11-30 CVE-2012-4551 Resource Management Errors vulnerability in PS Project Management Team Libunity-Webapps
Use-after-free vulnerability in libunity-webapps before 2.4.1 allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via a crafted web site, related to "certain hash tables."
network
low complexity
ps-project-management-team CWE-399
7.5
2012-11-29 CVE-2012-4841 Resource Management Errors vulnerability in IBM Tivoli Endpoint Manager 8.2
Unspecified vulnerability in Tivoli Endpoint Manager for Remote Control Broker 8.2 before 8.2.1-TIV-TEMRC821-IF0002 allows remote attackers to cause a denial of service (resource consumption) via unknown vectors.
network
low complexity
ibm CWE-399
5.0