CVE List

Id CVE No. Status Description Phase Votes Comments Actions
74733  CVE-2014-7432  Candidate  The CalculatorApp (aka com.intuit.alm.testandroidapp) application 4.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9453  CVE-2004-1025  Candidate  Multiple heap-based buffer overflows in imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackers to cause a denial of service (application crash) and execute arbitrary code via certain image files.  Assigned (20041112)  None (candidate not yet proposed)    View
74989  CVE-2014-7688  Candidate  The Home Improvement (aka com.whomeimprovementapp) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9709  CVE-2004-1281  Candidate  The ftp_retr function in junkie 0.3.1 allows remote malicious FTP servers to overwrite arbitrary files via .. (dot dot) sequences in a filename.  Assigned (20041220)  None (candidate not yet proposed)    View
75245  CVE-2014-7944  Candidate  The sycc422_to_rgb function in fxcodec/codec/fx_codec_jpx_opj.cpp in PDFium, as used in Google Chrome before 40.0.2214.91, does not properly handle odd values of image width, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PDF document.  Assigned (20141006)  None (candidate not yet proposed)    View

Page 19434 of 20943, showing 5 records out of 104715 total, starting on record 97166, ending on 97170

Actions