CVE List

Id CVE No. Status Description Phase Votes Comments Actions
73719  CVE-2014-6419  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140916)  None (candidate not yet proposed)    View
73975  CVE-2014-6675  Candidate  The Ruta Exacta (aka com.rutaexacta.m) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
74231  CVE-2014-6931  Candidate  The Treves Dance Center (aka com.myapphone.android.myapptrvesdancecenter) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
8951  CVE-2004-0523  Candidate  Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as root.  Assigned (20040603)  None (candidate not yet proposed)    View
74487  CVE-2014-7187  Candidate  Off-by-one error in the read_token_word function in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via deeply nested for loops, aka the "word_lineno" issue.  Assigned (20140925)  None (candidate not yet proposed)    View

Page 20222 of 20943, showing 5 records out of 104715 total, starting on record 101106, ending on 101110

Actions