CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93646  CVE-2016-6826  Candidate  Huawei AnyMail before 2.6.0301.0060 allows remote attackers to cause a denial of service (application crash) via a crafted compressed email attachment.  Assigned (20160816)  None (candidate not yet proposed)    View
93647  CVE-2016-6827  Candidate  Huawei FusionCompute before V100R005C10CP7002 stores cleartext AES keys in a file, which allows remote authenticated users to obtain sensitive information via unspecified vectors.  Assigned (20160816)  None (candidate not yet proposed)    View
93648  CVE-2016-6828  Candidate  The tcp_check_send_head function in include/net/tcp.h in the Linux kernel before 4.7.5 does not properly maintain certain SACK state after a failed data copy, which allows local users to cause a denial of service (tcp_xmit_retransmit_queue use-after-free and system crash) via a crafted SACK option.  Assigned (20160817)  None (candidate not yet proposed)    View
93649  CVE-2016-6829  Candidate  The trove service user in (1) Openstack deployment (aka crowbar-openstack) and (2) Trove Barclamp (aka barclamp-trove and crowbar-barclamp-trove) in the Crowbar Framework has a default password, which makes it easier for remote attackers to obtain access via unspecified vectors.  Assigned (20160817)  None (candidate not yet proposed)    View
93650  CVE-2016-6830  Candidate  The "process-execute" and "process-spawn" procedures in CHICKEN Scheme used fixed-size buffers for holding the arguments and environment variables to use in its execve() call. This would allow user-supplied argument/environment variable lists to trigger a buffer overrun. This affects all releases of CHICKEN up to and including 4.11 (it will be fixed in 4.12 and 5.0, which are not yet released).  Assigned (20160817)  None (candidate not yet proposed)    View

Page 18730 of 20943, showing 5 records out of 104715 total, starting on record 93646, ending on 93650

Actions