CVE List

Id CVE No. Status Description Phase Votes Comments Actions
85272  CVE-2015-7995  Candidate  The xsltStylePreCompute function in preproc.c in libxslt 1.1.28 does not check if the parent node is an element, which allows attackers to cause a denial of service via a crafted XML file, related to a "type confusion" issue.  Assigned (20151028)  None (candidate not yet proposed)    View
19992  CVE-2006-3888  Candidate  Buffer overflow in AOL You"ve Got Pictures (YGP) Pic Downloader YGPPDownload ActiveX control (AOL.PicDownloadCtrl.1, YGPPicDownload.dll), as used in America Online 9.0 Security Edition, allows remote attackers to execute arbitrary code via a long argument to the SetAlbumName method.  Assigned (20060726)  None (candidate not yet proposed)    View
85528  CVE-2015-8251  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20151119)  None (candidate not yet proposed)    View
20248  CVE-2006-4144  Candidate  Integer overflow in the ReadSGIImage function in sgi.c in ImageMagick before 6.2.9 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via large (1) bytes_per_pixel, (2) columns, and (3) rows values, which trigger a heap-based buffer overflow.  Assigned (20060815)  None (candidate not yet proposed)    View
85784  CVE-2015-8507  Candidate  mediaserver in Android 6.0 before 2015-12-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 24157524, a different vulnerability than CVE-2015-6616, CVE-2015-8505, and CVE-2015-8506.  Assigned (20151208)  None (candidate not yet proposed)    View

Page 1912 of 20943, showing 5 records out of 104715 total, starting on record 9556, ending on 9560

Actions