CVE List

Id CVE No. Status Description Phase Votes Comments Actions
23829  CVE-2007-0472  Candidate  Multiple race conditions in Smb4K before 0.8.0 allow local users to (1) modify arbitrary files via unspecified manipulations of Smb4K"s lock file, which is not properly handled by the remove_lock_file function in core/smb4kfileio.cpp, and (2) add lines to the sudoers file via a symlink attack on temporary files, which isn"t properly handled by the writeFile function in core/smb4kfileio.cpp.  Assigned (20070124)  None (candidate not yet proposed)    View
89365  CVE-2016-2546  Candidate  sound/core/timer.c in the Linux kernel before 4.4.1 uses an incorrect type of mutex, which allows local users to cause a denial of service (race condition, use-after-free, and system crash) via a crafted ioctl call.  Assigned (20160223)  None (candidate not yet proposed)    View
24085  CVE-2007-0728  Candidate  Unspecified vulnerability in Apple Mac OS X 10.3.9 and 10.4 through 10.4.8 creates files insecurely while initializing a USB printer, which allows local users to create or overwrite arbitrary files.  Assigned (20070205)  None (candidate not yet proposed)    View
89621  CVE-2016-2802  Candidate  The graphite2::TtfUtil::CmapSubtable4NextCodepoint function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted Graphite smart font.  Assigned (20160301)  None (candidate not yet proposed)    View
24341  CVE-2007-0984  Candidate  SQL injection vulnerability in admin_poll.asp in PollMentor 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to pollmentorres.asp.  Assigned (20070216)  None (candidate not yet proposed)    View

Page 1687 of 20943, showing 5 records out of 104715 total, starting on record 8431, ending on 8435

Actions