CVE List

Id CVE No. Status Description Phase Votes Comments Actions
56084  CVE-2012-2841  Candidate  Integer underflow in the exif_entry_get_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) 0.6.20 might allow remote attackers to execute arbitrary code via vectors involving a crafted buffer-size parameter during the formatting of an EXIF tag, leading to a heap-based buffer overflow.  Assigned (20120519)  None (candidate not yet proposed)    View
56340  CVE-2012-3097  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120530)  None (candidate not yet proposed)    View
56596  CVE-2012-3353  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120614)  None (candidate not yet proposed)    View
56852  CVE-2012-3609  Candidate  WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-07-25-1.  Assigned (20120619)  None (candidate not yet proposed)    View
57108  CVE-2012-3865  Candidate  Directory traversal vulnerability in lib/puppet/reports/store.rb in Puppet before 2.6.17 and 2.7.x before 2.7.18, and Puppet Enterprise before 2.5.2, when Delete is enabled in auth.conf, allows remote authenticated users to delete arbitrary files on the puppet master server via a .. (dot dot) in a node name.  Assigned (20120706)  None (candidate not yet proposed)    View

Page 1685 of 20943, showing 5 records out of 104715 total, starting on record 8421, ending on 8425

Actions