CVE List

Id CVE No. Status Description Phase Votes Comments Actions
54257  CVE-2012-1014  Candidate  The process_as_req function in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.10.x before 1.10.3 does not initialize a certain structure member, which allows remote attackers to cause a denial of service (uninitialized pointer dereference and daemon crash) or possibly execute arbitrary code via a malformed AS-REQ request.  Assigned (20120207)  None (candidate not yet proposed)    View
54513  CVE-2012-1270  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120222)  None (candidate not yet proposed)    View
54769  CVE-2012-1526  Candidate  Microsoft Internet Explorer 6 and 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not initialized or (2) is deleted, aka "Layout Memory Corruption Vulnerability."  Assigned (20120308)  None (candidate not yet proposed)    View
55025  CVE-2012-1782  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in questions/ask in OSQA 3b allow remote attackers to inject arbitrary web script or HTML via the (1) url bar or (2) picture bar.  Assigned (20120319)  None (candidate not yet proposed)    View
55281  CVE-2012-2038  Candidate  Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11.2.202.236 on Linux; before 11.1.111.10 on Android 2.x and 3.x; and before 11.1.115.9 on Android 4.x, and Adobe AIR before 3.3.0.3610, allows attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors.  Assigned (20120402)  None (candidate not yet proposed)    View

Page 19211 of 20943, showing 5 records out of 104715 total, starting on record 96051, ending on 96055

Actions