CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
102749 | CVE-2017-5929 | Candidate | QOS.ch Logback before 1.2.0 has a serialization vulnerability affecting the SocketServer and ServerSocketReceiver components. | Assigned (20170207) | None (candidate not yet proposed) | View | |
102750 | CVE-2017-5930 | Candidate | The AliasHandler component in PostfixAdmin before 3.0.2 allows remote authenticated domain admins to delete protected aliases via the delete parameter to delete.php, involving a missing permission check. | Assigned (20170207) | None (candidate not yet proposed) | View | |
102751 | CVE-2017-5931 | Candidate | Integer overflow in hw/virtio/virtio-crypto.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (QEMU process crash) or possibly execute arbitrary code on the host via a crafted virtio-crypto request, which triggers a heap-based buffer overflow. | Assigned (20170207) | None (candidate not yet proposed) | View | |
102752 | CVE-2017-5932 | Candidate | The path autocompletion feature in Bash 4.4 allows local users to gain privileges via a crafted filename starting with a " (double quote) character and a command substitution metacharacter. | Assigned (20170207) | None (candidate not yet proposed) | View | |
87720 | CVE-2016-10209 | Candidate | The archive_wstring_append_from_mbs function in archive_string.c in libarchive 3.2.2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted archive file. | Assigned (20170207) | None (candidate not yet proposed) | View |
Page 1023 of 20943, showing 5 records out of 104715 total, starting on record 5111, ending on 5115