CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
87734 | CVE-2016-10221 | Candidate | The count_entries function in pdf-layer.c in Artifex Software, Inc. MuPDF 1.10a allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted PDF document. | Assigned (20170209) | None (candidate not yet proposed) | View | |
87735 | CVE-2016-10222 | Candidate | runtime/JSONObject.cpp in JavaScriptCore in WebKit, as distributed in Safari Technology Preview Release 18, allows remote attackers to cause a denial of service (segmentation violation and application crash) via crafted JavaScript code that triggers a "type confusion" in the JSON.stringify function. | Assigned (20170209) | None (candidate not yet proposed) | View | |
102773 | CVE-2017-5953 | Candidate | vim before patch 8.0.0322 does not properly validate values for tree length when handling a spell file, which may result in an integer overflow at a memory allocation site and a resultant buffer overflow. | Assigned (20170210) | None (candidate not yet proposed) | View | |
102774 | CVE-2017-5954 | Candidate | An issue was discovered in the serialize-to-js package 0.5.0 for Node.js. Untrusted data passed into the deserialize() function can be exploited to achieve arbitrary code execution by passing a JavaScript Object with an Immediately Invoked Function Expression (IIFE). | Assigned (20170210) | None (candidate not yet proposed) | View | |
102775 | CVE-2017-5955 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170210) | None (candidate not yet proposed) | View |
Page 19935 of 20943, showing 5 records out of 104715 total, starting on record 99671, ending on 99675