CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102749  CVE-2017-5929  Candidate  QOS.ch Logback before 1.2.0 has a serialization vulnerability affecting the SocketServer and ServerSocketReceiver components.  Assigned (20170207)  None (candidate not yet proposed)    View
102750  CVE-2017-5930  Candidate  The AliasHandler component in PostfixAdmin before 3.0.2 allows remote authenticated domain admins to delete protected aliases via the delete parameter to delete.php, involving a missing permission check.  Assigned (20170207)  None (candidate not yet proposed)    View
102751  CVE-2017-5931  Candidate  Integer overflow in hw/virtio/virtio-crypto.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (QEMU process crash) or possibly execute arbitrary code on the host via a crafted virtio-crypto request, which triggers a heap-based buffer overflow.  Assigned (20170207)  None (candidate not yet proposed)    View
102752  CVE-2017-5932  Candidate  The path autocompletion feature in Bash 4.4 allows local users to gain privileges via a crafted filename starting with a " (double quote) character and a command substitution metacharacter.  Assigned (20170207)  None (candidate not yet proposed)    View
87720  CVE-2016-10209  Candidate  The archive_wstring_append_from_mbs function in archive_string.c in libarchive 3.2.2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted archive file.  Assigned (20170207)  None (candidate not yet proposed)    View

Page 1023 of 20943, showing 5 records out of 104715 total, starting on record 5111, ending on 5115

Actions