CVE List

Id CVE No. Status Description Phase Votes Comments Actions
60943  CVE-2013-0996  Candidate  WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.  Assigned (20130110)  None (candidate not yet proposed)    View
61199  CVE-2013-1252  Candidate  Race condition in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges, and consequently read the contents of arbitrary kernel memory locations, via a crafted application, a different vulnerability than other CVEs listed in MS13-016.  Assigned (20130112)  None (candidate not yet proposed)    View
61455  CVE-2013-1508  Candidate  Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Sun Middleware Products 3.0.1 and 3.1.2 allows remote attackers to affect integrity via vectors related to REST Interface.  Assigned (20130130)  None (candidate not yet proposed)    View
61711  CVE-2013-1764  Candidate  The Zypper (aka zypp) backend in PackageKit before 0.8.8 allows local users to downgrade packages via the "install updates" method.  Assigned (20130219)  None (candidate not yet proposed)    View
61967  CVE-2013-2020  Candidate  Integer underflow in the cli_scanpe function in pe.c in ClamAV before 0.97.8 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which triggers an out-of-bounds read.  Assigned (20130219)  None (candidate not yet proposed)    View

Page 1271 of 20943, showing 5 records out of 104715 total, starting on record 6351, ending on 6355

Actions