CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7446  CVE-2003-0619  Candidate  Integer signedness error in the decode_fh function of nfs3xdr.c in Linux kernel before 2.4.21 allows remote attackers to cause a denial of service (kernel panic) via a negative size value within XDR data of an NFSv3 procedure call.  Assigned (20030731)  None (candidate not yet proposed)    View
72982  CVE-2014-5684  Candidate  The Runtastic Running & Fitness (aka com.runtastic.android) application 5.1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7702  CVE-2003-0878  Candidate  slpd daemon in Mac OS X before 10.3 allows local users to overwrite arbitrary files via a symlink attack on a temporary file, a different vulnerability than CVE-2003-0875.  Assigned (20031024)  None (candidate not yet proposed)    View
73238  CVE-2014-5939  Candidate  The travelzadcomvb (aka com.tapatalk.travelzadcomvb) application 3.3.10 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7958  CVE-2003-1134  Candidate  Sun Java 1.3.1, 1.4.1, and 1.4.2 allows local users to cause a denial of service (JVM crash), possibly by calling the ClassDepth function with a null parameter, which causes a crash instead of generating a null pointer exception.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 1760 of 20943, showing 5 records out of 104715 total, starting on record 8796, ending on 8800

Actions