CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
92040 | CVE-2016-5221 | Candidate | Type confusion in libGLESv2 in ANGLE in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android possibly allowed a remote attacker to bypass buffer validation via a crafted HTML page. | Assigned (20160531) | None (candidate not yet proposed) | View | |
82949 | CVE-2015-5672 | Candidate | TYPE-MOON Fate/stay night, Fate/hollow ataraxia, Witch on the Holy Night, and Fate/stay night + hollow ataraxia set allow remote attackers to execute arbitrary OS commands via crafted saved data. | Assigned (20150724) | None (candidate not yet proposed) | View | |
76962 | CVE-2014-9661 | Candidate | type42/t42parse.c in FreeType before 2.5.4 does not consider that scanning can be incomplete without triggering an error, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafted Type42 font. | Assigned (20150207) | None (candidate not yet proposed) | View | |
80264 | CVE-2015-2987 | Candidate | Type74 ED before 4.0 misuses 128-bit ECB encryption for small files, which makes it easier for attackers to obtain plaintext data via differential cryptanalysis of a file with an original length smaller than 128 bits. | Assigned (20150407) | None (candidate not yet proposed) | View | |
68808 | CVE-2014-1513 | Candidate | TypedArrayObject.cpp in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 does not prevent a zero-length transition during use of an ArrayBuffer object, which allows remote attackers to execute arbitrary code or cause a denial of service (heap-based out-of-bounds write or read) via a crafted web site. | Assigned (20140116) | None (candidate not yet proposed) | View |
Page 18595 of 20943, showing 5 records out of 104715 total, starting on record 92971, ending on 92975