CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93706  CVE-2016-6886  Candidate  The pstm_reverse function in MatrixSSL before 3.8.4 allows remote attackers to cause a denial of service (invalid memory read and crash) via a (1) zero value or (2) the key"s modulus for the secret key during RSA key exchange.  Assigned (20160819)  None (candidate not yet proposed)    View
93707  CVE-2016-6887  Candidate  The pstm_exptmod function in MatrixSSL 3.8.6 and earlier does not properly perform modular exponentiation, which might allow remote attackers to predict the secret key via a CRT attack.  Assigned (20160819)  None (candidate not yet proposed)    View
93708  CVE-2016-6888  Candidate  Integer overflow in the net_tx_pkt_init function in hw/net/net_tx_pkt.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (QEMU process crash) via the maximum fragmentation count, which triggers an unchecked multiplication and NULL pointer dereference.  Assigned (20160819)  None (candidate not yet proposed)    View
93709  CVE-2016-6889  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160819)  None (candidate not yet proposed)    View
93710  CVE-2016-6890  Candidate  Heap-based buffer overflow in MatrixSSL before 3.8.6 allows remote attackers to execute arbitrary code via a crafted Subject Alt Name in an X.509 certificate.  Assigned (20160819)  None (candidate not yet proposed)    View

Page 18742 of 20943, showing 5 records out of 104715 total, starting on record 93706, ending on 93710

Actions