CVE List

Id CVE No. Status Description Phase Votes Comments Actions
86260  CVE-2015-8983  Candidate  Integer overflow in the _IO_wstr_overflow function in libio/wstrops.c in the GNU C Library (aka glibc or libc6) before 2.22 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors related to computing a size in bytes, which triggers a heap-based buffer overflow.  Assigned (20170214)  None (candidate not yet proposed)    View
86261  CVE-2015-8984  Candidate  The fnmatch function in the GNU C Library (aka glibc or libc6) before 2.22 might allow context-dependent attackers to cause a denial of service (application crash) via a malformed pattern, which triggers an out-of-bounds read.  Assigned (20170214)  None (candidate not yet proposed)    View
86262  CVE-2015-8985  Candidate  The pop_fail_stack function in the GNU C Library (aka glibc or libc6) allows context-dependent attackers to cause a denial of service (assertion failure and application crash) via vectors related to extended regular expression processing.  Assigned (20170214)  None (candidate not yet proposed)    View
102793  CVE-2017-5973  Candidate  The xhci_kick_epctx function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (infinite loop and QEMU process crash) via vectors related to control transfer descriptor sequence.  Assigned (20170213)  None (candidate not yet proposed)    View
102794  CVE-2017-5974  Candidate  Heap-based buffer overflow in the __zzip_get32 function in fetch.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.  Assigned (20170213)  None (candidate not yet proposed)    View

Page 1002 of 20943, showing 5 records out of 104715 total, starting on record 5006, ending on 5010

Actions