CVE List

Id CVE No. Status Description Phase Votes Comments Actions
66576  CVE-2013-6629  Candidate  The get_sos function in jdmarker.c in (1) libjpeg 6b and (2) libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48, Ghostscript, and other products, does not check for certain duplications of component data during the reading of segments that follow Start Of Scan (SOS) JPEG markers, which allows remote attackers to obtain sensitive information from uninitialized memory locations via a crafted JPEG image.  Assigned (20131105)  None (candidate not yet proposed)    View
66832  CVE-2013-6885  Candidate  The microcode on AMD 16h 00h through 0Fh processors does not properly handle the interaction between locked instructions and write-combined memory types, which allows local users to cause a denial of service (system hang) via a crafted application, aka the errata 793 issue.  Assigned (20131127)  None (candidate not yet proposed)    View
1552  CVE-1999-1572  Candidate  cpio on FreeBSD 2.1.0, Debian GNU/Linux 3.0, and possibly other operating systems, uses a 0 umask when creating files using the -O (archive) or -F options, which creates the files with mode 0666 and allows local users to read or overwrite those files.  Assigned (20050127)  None (candidate not yet proposed)    View
67088  CVE-2013-7141  Candidate  Cross-site scripting (XSS) vulnerability in Open-Xchange (OX) AppSuite 7.4.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to crafted "<%" tags.  Assigned (20131218)  None (candidate not yet proposed)    View
67344  CVE-2013-7397  Candidate  Async Http Client (aka AHC or async-http-client) before 1.9.0 skips X.509 certificate verification unless both a keyStore location and a trustStore location are explicitly set, which allows man-in-the-middle attackers to spoof HTTPS servers by presenting an arbitrary certificate during use of a typical AHC configuration, as demonstrated by a configuration that does not send client certificates.  Assigned (20140825)  None (candidate not yet proposed)    View

Page 1271 of 20943, showing 5 records out of 104715 total, starting on record 6351, ending on 6355

Actions