CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102399  CVE-2017-5579  Candidate  Memory leak in the serial_exit_core function in hw/char/serial.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption and QEMU process crash) via a large number of device unplug operations.  Assigned (20170125)  None (candidate not yet proposed)    View
37119  CVE-2008-7002  Candidate  PHP 5.2.5 does not enforce (a) open_basedir and (b) safe_mode_exec_dir restrictions for certain functions, which might allow local users to bypass intended access restrictions and call programs outside of the intended directory via the (1) exec, (2) system, (3) shell_exec, (4) passthru, or (5) popen functions, possibly involving pathnames such as "C:" drive notation.  Assigned (20090817)  None (candidate not yet proposed)    View
102655  CVE-2017-5835  Candidate  libplist allows attackers to cause a denial of service (large memory allocation and crash) via vectors involving an offset size of zero.  Assigned (20170201)  None (candidate not yet proposed)    View
37375  CVE-2008-7258  Candidate  ** DISPUTED ** The standardise function in Anibal Monsalve Salazar sSMTP 2.61 and 2.62 allows local users to cause a denial of service (application exit) via an e-mail message containing a long line that begins with a . (dot) character. NOTE: CVE disputes this issue because it is solely a usability problem for senders of messages with certain long lines, and has no security impact.  Assigned (20100802)  None (candidate not yet proposed)    View
102911  CVE-2017-6091  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170218)  None (candidate not yet proposed)    View

Page 20309 of 20943, showing 5 records out of 104715 total, starting on record 101541, ending on 101545

Actions