CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72683  CVE-2014-5386  Candidate  The mcrypt_create_iv function in hphp/runtime/ext/mcrypt/ext_mcrypt.cpp in Facebook HipHop Virtual Machine (HHVM) before 3.3.0 does not seed the random number generator, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging the use of a single initialization vector.  Assigned (20140822)  None (candidate not yet proposed)    View
7403  CVE-2003-0576  Candidate  Unknown vulnerability in the NFS daemon (nfsd) in SGI IRIX 6.5.19f and earlier allows remote attackers to cause a denial of service (kernel panic) via certain packets that cause XDR decoding errors, a different vulnerability than CVE-2003-0619.  Assigned (20030716)  None (candidate not yet proposed)    View
72939  CVE-2014-5641  Candidate  The Cloud Manager (aka com.ileaf.cloud_manager) application 1.6 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7659  CVE-2003-0835  Candidate  Multiple buffer overflows in asf_http_request of MPlayer before 0.92 allows remote attackers to execute arbitrary code via an ASX header with a long hostname.  Assigned (20030929)  None (candidate not yet proposed)    View
73195  CVE-2014-5897  Candidate  The Parallel Mafia MMORPG (aka com.perblue.pm.client) application @7F070000 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View

Page 18900 of 20943, showing 5 records out of 104715 total, starting on record 94496, ending on 94500

Actions