CVE List

Id CVE No. Status Description Phase Votes Comments Actions
40469  CVE-2009-3034  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20090831)  None (candidate not yet proposed)    View
40725  CVE-2009-3290  Candidate  The kvm_emulate_hypercall function in arch/x86/kvm/x86.c in KVM in the Linux kernel 2.6.25-rc1, and other versions before 2.6.31, when running on x86 systems, does not prevent access to MMU hypercalls from ring 0, which allows local guest OS users to cause a denial of service (guest kernel crash) and read or write guest kernel memory via unspecified "random addresses."  Assigned (20090922)  None (candidate not yet proposed)    View
40981  CVE-2009-3546  Candidate  The _gdGetColors function in gd_gd.c in PHP 5.2.11 and 5.3.x before 5.3.1, and the GD Graphics Library 2.x, does not properly verify a certain colorsTotal structure member, which might allow remote attackers to conduct buffer overflow or buffer over-read attacks via a crafted GD file, a different vulnerability than CVE-2009-3293. NOTE: some of these details are obtained from third party information.  Assigned (20091005)  None (candidate not yet proposed)    View
41237  CVE-2009-3802  Candidate  Amiro.CMS 5.4.0.0 and earlier allows remote attackers to obtain sensitive information via an invalid loginname ("%%%") to _admin/index.php, which reveals the installation path and other information in an error message.  Assigned (20091027)  None (candidate not yet proposed)    View
41493  CVE-2009-4058  Candidate  SQL injection vulnerability in allauctions.php in Telebid Auction Script allows remote attackers to execute arbitrary SQL commands via the aid parameter.  Assigned (20091123)  None (candidate not yet proposed)    View

Page 1712 of 20943, showing 5 records out of 104715 total, starting on record 8556, ending on 8560

Actions