CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102777  CVE-2017-5957  Candidate  Stack-based buffer overflow in the vrend_decode_set_framebuffer_state function in vrend_decode.c in virglrenderer before 926b9b3460a48f6454d8bbe9e44313d86a65447f, as used in Quick Emulator (QEMU), allows a local guest users to cause a denial of service (application crash) via the "nr_cbufs" argument.  Assigned (20170210)  None (candidate not yet proposed)    View
102778  CVE-2017-5958  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170210)  None (candidate not yet proposed)    View
102779  CVE-2017-5959  Candidate  CSRF token bypass in GeniXCMS before 1.0.2 could result in escalation of privileges. The forgotpassword.php page can be used to acquire a token.  Assigned (20170210)  None (candidate not yet proposed)    View
102759  CVE-2017-5939  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170209)  None (candidate not yet proposed)    View
102760  CVE-2017-5940  Candidate  Firejail before 0.9.44.6 and 0.9.38.x LTS before 0.9.38.10 LTS does not comprehensively address dotfile cases during its attempt to prevent accessing user files with an euid of zero, which allows local users to conduct sandbox-escape attacks via vectors involving a symlink and the --private option. NOTE: this vulnerability exists because of an incomplete fix for CVE-2017-5180.  Assigned (20170209)  None (candidate not yet proposed)    View

Page 1009 of 20943, showing 5 records out of 104715 total, starting on record 5041, ending on 5045

Actions