CVE List

Id CVE No. Status Description Phase Votes Comments Actions
74486  CVE-2014-7186  Candidate  The redirection implementation in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted use of here documents, aka the "redir_stack" issue.  Assigned (20140925)  None (candidate not yet proposed)    View
9206  CVE-2004-0778  Candidate  CVS 1.11.x before 1.11.17, and 1.12.x before 1.12.9, allows remote attackers to determine the existence of arbitrary files and directories via the -X command for an alternate history file, which causes different error messages to be returned.  Assigned (20040811)  None (candidate not yet proposed)    View
74742  CVE-2014-7441  Candidate  The Pakan Ken Tube (aka com.PakanKen) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9462  CVE-2004-1034  Candidate  Buffer overflow in the http_open function in Kaffeine before 0.5, whose code is also used in gxine before 0.3.3, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long Content-Type header for a Real Audio Media (.ram) playlist file.  Assigned (20041112)  None (candidate not yet proposed)    View
74998  CVE-2014-7697  Candidate  The Eyvah! Bosandim ozgurum (aka com.wEyvahBosandimBlog) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View

Page 20160 of 20943, showing 5 records out of 104715 total, starting on record 100796, ending on 100800

Actions