CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96757  CVE-2016-9937  Candidate  An issue was discovered in Asterisk Open Source 13.12.x and 13.13.x before 13.13.1 and 14.x before 14.2.1. If an SDP offer or answer is received with the Opus codec and with the format parameters separated using a space the code responsible for parsing will recursively call itself until it crashes. This occurs as the code does not properly handle spaces separating the parameters. This does NOT require the endpoint to have Opus configured in Asterisk. This also does not require the endpoint to be authenticated. If guest is enabled for chan_sip or anonymous in chan_pjsip an SDP offer or answer is still processed and the crash occurs.  Assigned (20161212)  None (candidate not yet proposed)    View
31477  CVE-2008-1360  Candidate  Cross-site scripting (XSS) vulnerability in Nagios before 2.11 allows remote attackers to inject arbitrary web script or HTML via unknown vectors to unspecified CGI scripts, a different issue than CVE-2007-5624.  Assigned (20080317)  None (candidate not yet proposed)    View
97013  CVE-2017-0194  Candidate  Microsoft Excel 2007 SP3, Microsoft Excel 2010 SP2, and Office Compatibility Pack SP2 allow remote attackers to obtain sensitive information from process memory via a crafted Office document, aka "Microsoft Office Information Disclosure Vulnerability."  Assigned (20160909)  None (candidate not yet proposed)    View
31733  CVE-2008-1616  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20080402)  None (candidate not yet proposed)    View
97269  CVE-2017-0450  Candidate  An elevation of privilege vulnerability in Audioserver could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as Moderate because it is mitigated by current platform configurations. Product: Android. Versions: N/A. Android ID: A-32917432.  Assigned (20161129)  None (candidate not yet proposed)    View

Page 18980 of 20943, showing 5 records out of 104715 total, starting on record 94896, ending on 94900

Actions