CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
103654 | CVE-2017-6834 | Candidate | Heap-based buffer overflow in the ulaw2linear_buf function in G711.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via a crafted file. | Assigned (20170312) | None (candidate not yet proposed) | View | |
38374 | CVE-2009-0939 | Candidate | Tor before 0.2.0.34 treats incomplete IPv4 addresses as valid, which has unknown impact and attack vectors related to "Spec conformance," as demonstrated using 192.168.0. | Assigned (20090317) | None (candidate not yet proposed) | View | |
103910 | CVE-2017-7090 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170317) | None (candidate not yet proposed) | View | |
38630 | CVE-2009-1195 | Candidate | The Apache HTTP Server 2.2.11 and earlier 2.2 versions does not properly handle Options=IncludesNOEXEC in the AllowOverride directive, which allows local users to gain privileges by configuring (1) Options Includes, (2) Options +Includes, or (3) Options +IncludesNOEXEC in a .htaccess file, and then inserting an exec element in a .shtml file. | Assigned (20090331) | None (candidate not yet proposed) | View | |
104166 | CVE-2017-7346 | Candidate | The vmw_gb_surface_define_ioctl function in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.10.7 does not validate certain levels data, which allows local users to cause a denial of service (system hang) via a crafted ioctl call for a /dev/dri/renderD* device. | Assigned (20170330) | None (candidate not yet proposed) | View |
Page 18957 of 20943, showing 5 records out of 104715 total, starting on record 94781, ending on 94785