CVE List

Id CVE No. Status Description Phase Votes Comments Actions
87734  CVE-2016-10221  Candidate  The count_entries function in pdf-layer.c in Artifex Software, Inc. MuPDF 1.10a allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted PDF document.  Assigned (20170209)  None (candidate not yet proposed)    View
87735  CVE-2016-10222  Candidate  runtime/JSONObject.cpp in JavaScriptCore in WebKit, as distributed in Safari Technology Preview Release 18, allows remote attackers to cause a denial of service (segmentation violation and application crash) via crafted JavaScript code that triggers a "type confusion" in the JSON.stringify function.  Assigned (20170209)  None (candidate not yet proposed)    View
102773  CVE-2017-5953  Candidate  vim before patch 8.0.0322 does not properly validate values for tree length when handling a spell file, which may result in an integer overflow at a memory allocation site and a resultant buffer overflow.  Assigned (20170210)  None (candidate not yet proposed)    View
102774  CVE-2017-5954  Candidate  An issue was discovered in the serialize-to-js package 0.5.0 for Node.js. Untrusted data passed into the deserialize() function can be exploited to achieve arbitrary code execution by passing a JavaScript Object with an Immediately Invoked Function Expression (IIFE).  Assigned (20170210)  None (candidate not yet proposed)    View
102775  CVE-2017-5955  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170210)  None (candidate not yet proposed)    View

Page 19935 of 20943, showing 5 records out of 104715 total, starting on record 99671, ending on 99675

Actions