CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
23829 | CVE-2007-0472 | Candidate | Multiple race conditions in Smb4K before 0.8.0 allow local users to (1) modify arbitrary files via unspecified manipulations of Smb4K"s lock file, which is not properly handled by the remove_lock_file function in core/smb4kfileio.cpp, and (2) add lines to the sudoers file via a symlink attack on temporary files, which isn"t properly handled by the writeFile function in core/smb4kfileio.cpp. | Assigned (20070124) | None (candidate not yet proposed) | View | |
89365 | CVE-2016-2546 | Candidate | sound/core/timer.c in the Linux kernel before 4.4.1 uses an incorrect type of mutex, which allows local users to cause a denial of service (race condition, use-after-free, and system crash) via a crafted ioctl call. | Assigned (20160223) | None (candidate not yet proposed) | View | |
24085 | CVE-2007-0728 | Candidate | Unspecified vulnerability in Apple Mac OS X 10.3.9 and 10.4 through 10.4.8 creates files insecurely while initializing a USB printer, which allows local users to create or overwrite arbitrary files. | Assigned (20070205) | None (candidate not yet proposed) | View | |
89621 | CVE-2016-2802 | Candidate | The graphite2::TtfUtil::CmapSubtable4NextCodepoint function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted Graphite smart font. | Assigned (20160301) | None (candidate not yet proposed) | View | |
24341 | CVE-2007-0984 | Candidate | SQL injection vulnerability in admin_poll.asp in PollMentor 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to pollmentorres.asp. | Assigned (20070216) | None (candidate not yet proposed) | View |
Page 1687 of 20943, showing 5 records out of 104715 total, starting on record 8431, ending on 8435