CVE List

Id CVE No. Status Description Phase Votes Comments Actions
39146  CVE-2009-1711  Candidate  WebKit in Apple Safari before 4.0 does not properly initialize memory for Attr DOM objects, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted HTML document.  Assigned (20090520)  None (candidate not yet proposed)    View
104682  CVE-2017-7862  Candidate  FFmpeg before 2017-02-07 has an out-of-bounds write caused by a heap-based buffer overflow related to the decode_frame function in libavcodec/pictordec.c.  Assigned (20170414)  None (candidate not yet proposed)    View
39402  CVE-2009-1967  Candidate  Unspecified vulnerability in the Config Management component in (1) Oracle Database 11.1.0.7 and (2) Oracle Enterprise Manager 10.2.0.4 allows remote authenticated users to affect confidentiality and integrity via unknown vectors, a different vulnerability than CVE-2009-1966.  Assigned (20090608)  None (candidate not yet proposed)    View
39658  CVE-2009-2223  Candidate  Directory traversal vulnerability in locms/smarty.php in LightOpenCMS 0.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cwd parameter. NOTE: remote file inclusion attacks may be possible.  Assigned (20090626)  None (candidate not yet proposed)    View
39914  CVE-2009-2479  Candidate  Mozilla Firefox 3.0.x, 3.5, and 3.5.1 on Windows allows remote attackers to cause a denial of service (uncaught exception and application crash) via a long Unicode string argument to the write method. NOTE: this was originally reported as a stack-based buffer overflow. NOTE: on Linux and Mac OS X, a crash resulting from this long string reportedly occurs in an operating-system library, not in Firefox.  Assigned (20090716)  None (candidate not yet proposed)    View

Page 18642 of 20943, showing 5 records out of 104715 total, starting on record 93206, ending on 93210

Actions