CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102154  CVE-2017-5334  Candidate  Double free vulnerability in the gnutls_x509_ext_import_proxy function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via crafted policy language information in an X.509 certificate with a Proxy Certificate Information extension.  Assigned (20170110)  None (candidate not yet proposed)    View
102155  CVE-2017-5335  Candidate  The stream reading functions in lib/opencdk/read-packet.c in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to cause a denial of service (out-of-memory error and crash) via a crafted OpenPGP certificate.  Assigned (20170110)  None (candidate not yet proposed)    View
102156  CVE-2017-5336  Candidate  Stack-based buffer overflow in the cdk_pk_get_keyid function in lib/opencdk/pubkey.c in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via a crafted OpenPGP certificate.  Assigned (20170110)  None (candidate not yet proposed)    View
102157  CVE-2017-5337  Candidate  Multiple heap-based buffer overflows in the read_attribute function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to have unspecified impact via a crafted OpenPGP certificate.  Assigned (20170110)  None (candidate not yet proposed)    View
102158  CVE-2017-5338  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.  Assigned (20170110)  None (candidate not yet proposed)    View

Page 1152 of 20943, showing 5 records out of 104715 total, starting on record 5756, ending on 5760

Actions