CVE List

Id CVE No. Status Description Phase Votes Comments Actions
49914  CVE-2011-2002  Candidate  win32k.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 does not properly handle TrueType fonts, which allows local users to cause a denial of service (system hang) via a crafted font file, aka "Win32k TrueType Font Type Translation Vulnerability."  Assigned (20110509)  None (candidate not yet proposed)    View
50170  CVE-2011-2258  Candidate  Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 Express allows local users to affect confidentiality, integrity, and availability via unknown vectors related to rksh.  Assigned (20110602)  None (candidate not yet proposed)    View
50426  CVE-2011-2514  Candidate  The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-Web 1.1.x before 1.1.1 and before 1.0.4, allows remote attackers to trick victims into granting access to local files by modifying the content of the Java Web Start Security Warning dialog box to represent a different filename than the file for which access will be granted.  Assigned (20110615)  None (candidate not yet proposed)    View
50682  CVE-2011-2770  Candidate  Cross-site scripting (XSS) vulnerability in man2html.cgi.c in man2html 1.6, and possibly other version, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to error messages.  Assigned (20110719)  None (candidate not yet proposed)    View
50938  CVE-2011-3026  Candidate  Integer overflow in libpng, as used in Google Chrome before 17.0.963.56, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an integer truncation.  Assigned (20110809)  None (candidate not yet proposed)    View

Page 20510 of 20943, showing 5 records out of 104715 total, starting on record 102546, ending on 102550

Actions