CVE List

Id CVE No. Status Description Phase Votes Comments Actions
71696  CVE-2014-4400  Candidate  An unspecified integrated graphics driver routine in the Intel Graphics Driver subsystem in Apple OS X before 10.9.5 does not properly validate calls, which allows attackers to execute arbitrary code in a privileged context via a crafted application, a different vulnerability than CVE-2014-4394, CVE-2014-4395, CVE-2014-4396, CVE-2014-4397, CVE-2014-4398, CVE-2014-4399, CVE-2014-4401, and CVE-2014-4416.  Assigned (20140620)  None (candidate not yet proposed)    View
6416  CVE-2002-2034  Candidate  The Email Sanitizer before 1.133 for Procmail allows remote attackers to bypass the mail filter and execute arbitrary code via crafted recursive multipart MIME attachments.  Assigned (20050714)  None (candidate not yet proposed)    View
71952  CVE-2014-4655  Candidate  The snd_ctl_elem_add function in sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 does not properly maintain the user_ctl_count value, which allows local users to cause a denial of service (integer overflow and limit bypass) by leveraging /dev/snd/controlCX access for a large number of SNDRV_CTL_IOCTL_ELEM_REPLACE ioctl calls.  Assigned (20140625)  None (candidate not yet proposed)    View
6672  CVE-2002-2290  Candidate  Mambo Site Server 4.0.11 installs with a default username and password of admin, which allows remote attackers to gain privileges.  Assigned (20071017)  None (candidate not yet proposed)    View
72208  CVE-2014-4911  Candidate  The ssl_decrypt_buf function in library/ssl_tls.c in PolarSSL before 1.2.11 and 1.3.x before 1.3.8 allows remote attackers to cause a denial of service (crash) via vectors related to the GCM ciphersuites, as demonstrated using the Codenomicon Defensics toolkit.  Assigned (20140711)  None (candidate not yet proposed)    View

Page 1299 of 20943, showing 5 records out of 104715 total, starting on record 6491, ending on 6495

Actions