CVE List

Id CVE No. Status Description Phase Votes Comments Actions
45557  CVE-2010-2973  Candidate  Integer overflow in IOSurface in Apple iOS before 4.0.2 on the iPhone and iPod touch, and before 3.2.2 on the iPad, allows local users to gain privileges via vectors involving IOSurface properties, as demonstrated by JailbreakMe.  Assigned (20100805)  None (candidate not yet proposed)    View
45813  CVE-2010-3229  Candidate  The Secure Channel (aka SChannel) security package in Microsoft Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7, when IIS 7.x is used, does not properly process client certificates during SSL and TLS handshakes, which allows remote attackers to cause a denial of service (LSASS outage and reboot) via a crafted packet, aka "TLSv1 Denial of Service Vulnerability."  Assigned (20100903)  None (candidate not yet proposed)    View
46069  CVE-2010-3485  Candidate  SQL injection vulnerability in common.php in LightNEasy 3.2.1 allows remote attackers to execute arbitrary SQL commands via the userhandle cookie to LightNEasy.php, a different vector than CVE-2008-6593. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20100922)  None (candidate not yet proposed)    View
46325  CVE-2010-3741  Candidate  The offline backup mechanism in Research In Motion (RIM) BlackBerry Desktop Software uses single-iteration PBKDF2, which makes it easier for local users to decrypt a .ipd file via a brute-force attack.  Assigned (20101005)  None (candidate not yet proposed)    View
46581  CVE-2010-3997  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20101019)  None (candidate not yet proposed)    View

Page 20133 of 20943, showing 5 records out of 104715 total, starting on record 100661, ending on 100665

Actions