CVE List

Id CVE No. Status Description Phase Votes Comments Actions
77046  CVE-2014-9745  Candidate  The parse_encoding function in type1/t1load.c in FreeType before 2.5.3 allows remote attackers to cause a denial of service (infinite loop) via a "broken number-with-base" in a Postscript stream, as demonstrated by 8#garbage.  Assigned (20150914)  None (candidate not yet proposed)    View
11766  CVE-2005-0560  Candidate  Heap-based buffer overflow in the SvrAppendReceivedChunk function in xlsasink.dll in the SMTP service of Exchange Server 2000 and 2003 allows remote attackers to execute arbitrary code via a crafted X-LINK2STATE extended verb request to the SMTP port.  Assigned (20050226)  None (candidate not yet proposed)    View
77302  CVE-2015-0039  Candidate  Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-0027, CVE-2015-0035, CVE-2015-0052, and CVE-2015-0068.  Assigned (20141118)  None (candidate not yet proposed)    View
12022  CVE-2005-0816  Candidate  Buffer overflow in newgrp in Solaris 7 through 9 allows local users to gain root privileges.  Assigned (20050320)  None (candidate not yet proposed)    View
77558  CVE-2015-0295  Candidate  The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.  Assigned (20141118)  None (candidate not yet proposed)    View

Page 20164 of 20943, showing 5 records out of 104715 total, starting on record 100816, ending on 100820

Actions