CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102159  CVE-2017-5339  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.  Assigned (20170110)  None (candidate not yet proposed)    View
87630  CVE-2016-10127  Candidate  PySAML2 allows remote attackers to conduct XML external entity (XXE) attacks via a crafted SAML XML request or response.  Assigned (20170110)  None (candidate not yet proposed)    View
87631  CVE-2016-10128  Candidate  Buffer overflow in the git_pkt_parse_line function in transports/smart_pkt.c in the Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to have unspecified impact via a crafted non-flush packet.  Assigned (20170110)  None (candidate not yet proposed)    View
87632  CVE-2016-10129  Candidate  The Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via an empty packet line.  Assigned (20170110)  None (candidate not yet proposed)    View
87634  CVE-2016-10130  Candidate  The http_connect function in transports/http.c in libgit2 before 0.24.6 and 0.25.x before 0.25.1 might allow man-in-the-middle attackers to spoof servers by leveraging clobbering of the error variable.  Assigned (20170110)  None (candidate not yet proposed)    View

Page 1153 of 20943, showing 5 records out of 104715 total, starting on record 5761, ending on 5765

Actions