CVE List

Id CVE No. Status Description Phase Votes Comments Actions
45323  CVE-2010-2739  Candidate  Buffer overflow in the CreateDIBPalette function in win32k.sys in Microsoft Windows XP SP3, Server 2003 R2 Enterprise SP2, Vista Business SP1, Windows 7, and Server 2008 SP2 allows local users to cause a denial of service (crash) and possibly execute arbitrary code by performing a clipboard operation (GetClipboardData API function) with a crafted bitmap with a palette that contains a large number of colors.  Assigned (20100714)  None (candidate not yet proposed)    View
45579  CVE-2010-2995  Candidate  The SigComp Universal Decompressor Virtual Machine (UDVM) in Wireshark 0.10.8 through 1.0.14 and 1.2.0 through 1.2.9 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to sigcomp-udvm.c and an off-by-one error, which triggers a buffer overflow, different vulnerabilities than CVE-2010-2287.  Assigned (20100811)  None (candidate not yet proposed)    View
45835  CVE-2010-3251  Candidate  The WebSockets implementation in Google Chrome before 6.0.472.53 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via unspecified vectors.  Assigned (20100907)  None (candidate not yet proposed)    View
46091  CVE-2010-3507  Candidate  Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Live Upgrade.  Assigned (20100920)  None (candidate not yet proposed)    View
46347  CVE-2010-3763  Candidate  Cross-site scripting (XSS) vulnerability in core/summary_api.php in MantisBT before 1.2.3 allows remote attackers to inject arbitrary web script or HTML via the Summary field, a different vector than CVE-2010-3303.  Assigned (20101005)  None (candidate not yet proposed)    View

Page 1553 of 20943, showing 5 records out of 104715 total, starting on record 7761, ending on 7765

Actions