CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
102154 | CVE-2017-5334 | Candidate | Double free vulnerability in the gnutls_x509_ext_import_proxy function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via crafted policy language information in an X.509 certificate with a Proxy Certificate Information extension. | Assigned (20170110) | None (candidate not yet proposed) | View | |
102155 | CVE-2017-5335 | Candidate | The stream reading functions in lib/opencdk/read-packet.c in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to cause a denial of service (out-of-memory error and crash) via a crafted OpenPGP certificate. | Assigned (20170110) | None (candidate not yet proposed) | View | |
102156 | CVE-2017-5336 | Candidate | Stack-based buffer overflow in the cdk_pk_get_keyid function in lib/opencdk/pubkey.c in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via a crafted OpenPGP certificate. | Assigned (20170110) | None (candidate not yet proposed) | View | |
102157 | CVE-2017-5337 | Candidate | Multiple heap-based buffer overflows in the read_attribute function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to have unspecified impact via a crafted OpenPGP certificate. | Assigned (20170110) | None (candidate not yet proposed) | View | |
102158 | CVE-2017-5338 | Candidate | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. | Assigned (20170110) | None (candidate not yet proposed) | View |
Page 1152 of 20943, showing 5 records out of 104715 total, starting on record 5756, ending on 5760