CVE List

Id CVE No. Status Description Phase Votes Comments Actions
87670  CVE-2016-10163  Candidate  Memory leak in the vrend_renderer_context_create_internal function in vrend_decode.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (host memory consumption) by repeatedly creating a decode context.  Assigned (20170125)  None (candidate not yet proposed)    View
87671  CVE-2016-10164  Candidate  Multiple integer overflows in libXpm before 3.5.12, when a program requests parsing XPM extensions on a 64-bit platform, allow remote attackers to cause a denial of service (out-of-bounds write) or execute arbitrary code via (1) the number of extensions or (2) their concatenated length in a crafted XPM file, which triggers a heap-based buffer overflow.  Assigned (20170125)  None (candidate not yet proposed)    View
87672  CVE-2016-10165  Candidate  The Type_MLU_Read function in cmstypes.c in Little CMS (aka lcms2) allows remote attackers to obtain sensitive information or cause a denial of service via an image with a crafted ICC profile, which triggers an out-of-bounds heap read.  Assigned (20170125)  None (candidate not yet proposed)    View
102398  CVE-2017-5578  Candidate  Memory leak in the virtio_gpu_resource_attach_backing function in hw/display/virtio-gpu.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (host memory consumption) via a large number of VIRTIO_GPU_CMD_RESOURCE_ATTACH_BACKING commands.  Assigned (20170125)  None (candidate not yet proposed)    View
102399  CVE-2017-5579  Candidate  Memory leak in the serial_exit_core function in hw/char/serial.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption and QEMU process crash) via a large number of device unplug operations.  Assigned (20170125)  None (candidate not yet proposed)    View

Page 1096 of 20943, showing 5 records out of 104715 total, starting on record 5476, ending on 5480

Actions