CVE List

Id CVE No. Status Description Phase Votes Comments Actions
74724  CVE-2014-7423  Candidate  The Youth Incorporated (aka com.magzter.youthincorporated) application 3.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9444  CVE-2004-1016  Candidate  The scm_send function in the scm layer for Linux kernel 2.4.x up to 2.4.28, and 2.6.x up to 2.6.9, allows local users to cause a denial of service (system hang) via crafted auxiliary messages that are passed to the sendmsg function, which causes a deadlock condition.  Assigned (20041104)  None (candidate not yet proposed)    View
74980  CVE-2014-7679  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141003)  None (candidate not yet proposed)    View
9700  CVE-2004-1272  Candidate  Buffer overflow in the save_embedded_address function in filter.c for elm/bolthole filter 2.6.1 allows remote attackers to execute arbitrary code via a crafted email message.  Assigned (20041220)  None (candidate not yet proposed)    View
75236  CVE-2014-7935  Candidate  Use-after-free vulnerability in browser/speech/tts_message_filter.cc in the Speech implementation in Google Chrome before 40.0.2214.91 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving utterances from a closed tab.  Assigned (20141006)  None (candidate not yet proposed)    View

Page 18728 of 20943, showing 5 records out of 104715 total, starting on record 93636, ending on 93640

Actions