CVE List

Id CVE No. Status Description Phase Votes Comments Actions
71444  CVE-2014-4148  Candidate  win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows remote attackers to execute arbitrary code via a crafted TrueType font, as exploited in the wild in October 2014, aka "TrueType Font Parsing Remote Code Execution Vulnerability."  Assigned (20140612)  None (candidate not yet proposed)    View
6164  CVE-2002-1782  Candidate  The default configuration of University of Washington IMAP daemon (wu-imapd), when running on a system that does not allow shell access, allows a local user with a valid IMAP account to read arbitrary files as that user.  Assigned (20050621)  None (candidate not yet proposed)    View
71700  CVE-2014-4404  Candidate  Heap-based buffer overflow in IOHIDFamily in Apple iOS before 8 and Apple TV before 7 allows attackers to execute arbitrary code in a privileged context via an application that provides crafted key-mapping properties.  Assigned (20140620)  None (candidate not yet proposed)    View
6420  CVE-2002-2038  Candidate  Next Generation POSIX Threading (NGPT) 1.9.0 uses a filesystem-based shared memory entry, which allows local users to cause a denial of service or in threaded processes or spoof files via unknown methods.  Assigned (20050714)  None (candidate not yet proposed)    View
71956  CVE-2014-4659  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140625)  None (candidate not yet proposed)    View

Page 1583 of 20943, showing 5 records out of 104715 total, starting on record 7911, ending on 7915

Actions