CVE List

Id CVE No. Status Description Phase Votes Comments Actions
61160  CVE-2013-1213  Candidate  Cisco NX-OS on the Nexus 1000V does not assign the proper priority to heartbeat messages from a Virtual Ethernet Module (VEM) to a Virtual Supervisor Module (VSM), which allows remote attackers to cause a denial of service (false VEM unavailability report) via a flood of UDP packets, aka Bug ID CSCud14840.  Assigned (20130111)  None (candidate not yet proposed)    View
61416  CVE-2013-1469  Candidate  Directory traversal vulnerability in install.php in Piwigo before 2.4.7 allows remote attackers to read and delete arbitrary files via a .. (dot dot) in the dl parameter.  Assigned (20130129)  None (candidate not yet proposed)    View
61672  CVE-2013-1725  Candidate  Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 do not ensure that initialization occurs for JavaScript objects with compartments, which allows remote attackers to execute arbitrary code by leveraging incorrect scope handling.  Assigned (20130213)  None (candidate not yet proposed)    View
61928  CVE-2013-1981  Candidate  Multiple integer overflows in X.org libX11 1.5.99.901 (1.6 RC1) and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XQueryFont, (2) _XF86BigfontQueryFont, (3) XListFontsWithInfo, (4) XGetMotionEvents, (5) XListHosts, (6) XGetModifierMapping, (7) XGetPointerMapping, (8) XGetKeyboardMapping, (9) XGetWindowProperty, (10) XGetImage, (11) LoadColornameDB, (12) XrmGetFileDatabase, (13) _XimParseStringFile, or (14) TransFileName functions.  Assigned (20130219)  None (candidate not yet proposed)    View
62184  CVE-2013-2237  Candidate  The key_notify_policy_flush function in net/key/af_key.c in the Linux kernel before 3.9 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel heap memory by reading a broadcast message from the notify_policy interface of an IPSec key_socket.  Assigned (20130219)  None (candidate not yet proposed)    View

Page 19110 of 20943, showing 5 records out of 104715 total, starting on record 95546, ending on 95550

Actions