CVE List

Id CVE No. Status Description Phase Votes Comments Actions
65553  CVE-2013-5606  Candidate  The CERT_VerifyCert function in lib/certhigh/certvfy.c in Mozilla Network Security Services (NSS) 3.15 before 3.15.3 provides an unexpected return value for an incompatible key-usage certificate when the CERTVerifyLog argument is valid, which might allow remote attackers to bypass intended access restrictions via a crafted certificate.  Assigned (20130826)  None (candidate not yet proposed)    View
65809  CVE-2013-5862  Candidate  Unspecified vulnerability in Oracle Solaris 10 and 11.1 allows local users to affect availability via vectors related to CPU performance counters (CPC) drivers, a different vulnerability than CVE-2014-4215.  Assigned (20130918)  None (candidate not yet proposed)    View
66065  CVE-2013-6118  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20131012)  None (candidate not yet proposed)    View
66321  CVE-2013-6374  Candidate  Cross-site scripting (XSS) vulnerability in the Build Failure Analyzer plugin before 1.5.1 for Jenkins allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20131104)  None (candidate not yet proposed)    View
66577  CVE-2013-6630  Candidate  The get_dht function in jdmarker.c in libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48 and other products, does not set all elements of a certain Huffman value array during the reading of segments that follow Define Huffman Table (DHT) JPEG markers, which allows remote attackers to obtain sensitive information from uninitialized memory locations via a crafted JPEG image.  Assigned (20131105)  None (candidate not yet proposed)    View

Page 1347 of 20943, showing 5 records out of 104715 total, starting on record 6731, ending on 6735

Actions