Vulnerabilities > Resource Management Errors

DATE CVE VULNERABILITY TITLE RISK
2012-11-13 CVE-2012-1811 Resource Management Errors vulnerability in C3-Ilex Eoscada
EOSDataServer.exe in C3-ilex EOScada before 11.0.19.2 allows remote attackers to cause a denial of service by sending a large amount of data to TCP port 24006.
network
low complexity
c3-ilex CWE-399
7.8
2012-11-11 CVE-2012-4515 Resource Management Errors vulnerability in KDE 4.7.3
Use-after-free vulnerability in khtml/rendering/render_replaced.cpp in Konqueror in KDE 4.7.3, when the context menu is shown, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by accessing an iframe when it is being updated.
network
kde CWE-399
6.8
2012-11-09 CVE-2012-3754 Resource Management Errors vulnerability in Apple Quicktime
Use-after-free vulnerability in the Clear method in the ActiveX control in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.
network
apple CWE-399
critical
9.3
2012-11-09 CVE-2012-3751 Resource Management Errors vulnerability in Apple Quicktime
Use-after-free vulnerability in the plugin in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an HTML document with a crafted _qtactivex_ parameter in an OBJECT element.
network
apple CWE-399
critical
9.3
2012-11-02 CVE-2012-0025 Resource Management Errors vulnerability in Irfanview Flashpix Plugin 4.2.2.0
Double free vulnerability in the Free_All_Memory function in jpeg/dectile.c in libfpx before 1.3.1-1, as used in the FlashPix PlugIn 4.2.2.0 for IrfanView, allows remote attackers to cause a denial of service (crash) via a crafted FPX image.
network
irfanview CWE-399
6.8
2012-11-01 CVE-2012-5704 Resource Management Errors vulnerability in Justin Dodge Hotblocks
The Hotblocks module 6.x-1.x before 6.x-1.8 for Drupal allows remote authenticated users with the "administer hotblocks" permission to cause a denial of service (infinite loop and time out) via a block that references itself.
3.5
2012-10-09 CVE-2012-2528 Resource Management Errors vulnerability in Microsoft products
Use-after-free vulnerability in Microsoft Word 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Word Viewer; Office Compatibility Pack SP2 and SP3; Word Automation Services on Microsoft SharePoint Server 2010; and Office Web Apps 2010 SP1 allows remote attackers to execute arbitrary code via a crafted RTF document, aka "RTF File listid Use-After-Free Vulnerability."
network
microsoft CWE-399
critical
9.3
2012-10-05 CVE-2012-0845 Resource Management Errors vulnerability in Python
SimpleXMLRPCServer.py in SimpleXMLRPCServer in Python before 2.6.8, 2.7.x before 2.7.3, 3.x before 3.1.5, and 3.2.x before 3.2.3 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via an XML-RPC POST request that contains a smaller amount of data than specified by the Content-Length header.
network
low complexity
python CWE-399
5.0
2012-10-04 CVE-2012-5237 Resource Management Errors vulnerability in Wireshark 1.8.0/1.8.1/1.8.2
The dissect_hsrp function in epan/dissectors/packet-hsrp.c in the HSRP dissector in Wireshark 1.8.x before 1.8.3 allows remote attackers to cause a denial of service (infinite loop) via a malformed packet.
low complexity
wireshark CWE-399
3.3
2012-10-01 CVE-2012-4432 Resource Management Errors vulnerability in Optipng
Use-after-free vulnerability in opngreduc.c in OptiPNG Hg and 0.7.x before 0.7.3 might allow remote attackers to execute arbitrary code via unspecified vectors related to "palette reduction."
network
low complexity
optipng CWE-399
7.5