CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
102044 | CVE-2017-5224 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170109) | None (candidate not yet proposed) | View | |
102045 | CVE-2017-5225 | Candidate | LibTIFF version 4.0.7 is vulnerable to a heap buffer overflow in the tools/tiffcp resulting in DoS or code execution via a crafted BitsPerSample value. | Assigned (20170109) | None (candidate not yet proposed) | View | |
102046 | CVE-2017-5226 | Candidate | When executing a program via the bubblewrap sandbox, the nonpriv session can escape to the parent session by using the TIOCSTI ioctl to push characters into the terminal"s input buffer, allowing an attacker to escape the sandbox. | Assigned (20170109) | None (candidate not yet proposed) | View | |
102047 | CVE-2017-5227 | Candidate | QNAP QTS before 4.2.4 Build 20170313 allows local users to obtain sensitive Domain Administrator password information by reading data in an XOR format within the /etc/config/uLinux.conf configuration file. | Assigned (20170109) | None (candidate not yet proposed) | View | |
102048 | CVE-2017-5228 | Candidate | All editions of Rapid7 Metasploit prior to version 4.13.0-2017020701 contain a directory traversal vulnerability in the Meterpreter stdapi Dir.download() function. By using a specially-crafted build of Meterpreter, it is possible to write to an arbitrary directory on the Metasploit console with the permissions of the running Metasploit instance. | Assigned (20170109) | None (candidate not yet proposed) | View |
Page 19771 of 20943, showing 5 records out of 104715 total, starting on record 98851, ending on 98855