CVE List

Id CVE No. Status Description Phase Votes Comments Actions
87723  CVE-2016-10211  Candidate  libyara/grammar.y in YARA 3.5.0 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted rule that is mishandled in the yr_parser_lookup_loop_variable function.  Assigned (20170207)  None (candidate not yet proposed)    View
102753  CVE-2017-5933  Candidate  Citrix NetScaler ADC and NetScaler Gateway 10.5 before Build 65.11, 11.0 before Build 69.12/69.123, and 11.1 before Build 51.21 randomly generates GCM nonces, which makes it marginally easier for remote attackers to obtain the GCM authentication key and spoof data by leveraging a reused nonce in a session and a "forbidden attack," a similar issue to CVE-2016-0270.  Assigned (20170208)  None (candidate not yet proposed)    View
102754  CVE-2017-5934  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170208)  None (candidate not yet proposed)    View
102755  CVE-2017-5935  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170208)  None (candidate not yet proposed)    View
102756  CVE-2017-5936  Candidate  OpenStack Nova-LXD before 13.1.1 uses the wrong name for the veth pairs when applying Neutron security group rules for instances, which allows remote attackers to bypass intended security restrictions.  Assigned (20170208)  None (candidate not yet proposed)    View

Page 19929 of 20943, showing 5 records out of 104715 total, starting on record 99641, ending on 99645

Actions