CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
102159 | CVE-2017-5339 | Candidate | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. | Assigned (20170110) | None (candidate not yet proposed) | View | |
87630 | CVE-2016-10127 | Candidate | PySAML2 allows remote attackers to conduct XML external entity (XXE) attacks via a crafted SAML XML request or response. | Assigned (20170110) | None (candidate not yet proposed) | View | |
87631 | CVE-2016-10128 | Candidate | Buffer overflow in the git_pkt_parse_line function in transports/smart_pkt.c in the Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to have unspecified impact via a crafted non-flush packet. | Assigned (20170110) | None (candidate not yet proposed) | View | |
87632 | CVE-2016-10129 | Candidate | The Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via an empty packet line. | Assigned (20170110) | None (candidate not yet proposed) | View | |
87634 | CVE-2016-10130 | Candidate | The http_connect function in transports/http.c in libgit2 before 0.24.6 and 0.25.x before 0.25.1 might allow man-in-the-middle attackers to spoof servers by leveraging clobbering of the error variable. | Assigned (20170110) | None (candidate not yet proposed) | View |
Page 1153 of 20943, showing 5 records out of 104715 total, starting on record 5761, ending on 5765