CVE List

Id CVE No. Status Description Phase Votes Comments Actions
103654  CVE-2017-6834  Candidate  Heap-based buffer overflow in the ulaw2linear_buf function in G711.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via a crafted file.  Assigned (20170312)  None (candidate not yet proposed)    View
38374  CVE-2009-0939  Candidate  Tor before 0.2.0.34 treats incomplete IPv4 addresses as valid, which has unknown impact and attack vectors related to "Spec conformance," as demonstrated using 192.168.0.  Assigned (20090317)  None (candidate not yet proposed)    View
103910  CVE-2017-7090  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170317)  None (candidate not yet proposed)    View
38630  CVE-2009-1195  Candidate  The Apache HTTP Server 2.2.11 and earlier 2.2 versions does not properly handle Options=IncludesNOEXEC in the AllowOverride directive, which allows local users to gain privileges by configuring (1) Options Includes, (2) Options +Includes, or (3) Options +IncludesNOEXEC in a .htaccess file, and then inserting an exec element in a .shtml file.  Assigned (20090331)  None (candidate not yet proposed)    View
104166  CVE-2017-7346  Candidate  The vmw_gb_surface_define_ioctl function in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.10.7 does not validate certain levels data, which allows local users to cause a denial of service (system hang) via a crafted ioctl call for a /dev/dri/renderD* device.  Assigned (20170330)  None (candidate not yet proposed)    View

Page 18957 of 20943, showing 5 records out of 104715 total, starting on record 94781, ending on 94785

Actions