CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102716  CVE-2017-5896  Candidate  Heap-based buffer overflow in the fz_subsample_pixmap function in fitz/pixmap.c in MuPDF 1.10a allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted image.  Assigned (20170207)  None (candidate not yet proposed)    View
102717  CVE-2017-5897  Candidate  The ip6gre_err function in net/ipv6/ip6_gre.c in the Linux kernel allows remote attackers to have unspecified impact via vectors involving GRE flags in an IPv6 packet, which trigger an out-of-bounds access.  Assigned (20170207)  None (candidate not yet proposed)    View
102718  CVE-2017-5898  Candidate  Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when built with the CCID Card device emulator support, allows local users to cause a denial of service (application crash) via a large Application Protocol Data Units (APDU) unit.  Assigned (20170207)  None (candidate not yet proposed)    View
102719  CVE-2017-5899  Candidate  Directory traversal vulnerability in the setuid root helper binary in S-nail (later S-mailx) before 14.8.16 allows local users to write to arbitrary files and consequently gain root privileges via a .. (dot dot) in the randstr argument.  Assigned (20170207)  None (candidate not yet proposed)    View
102720  CVE-2017-5900  Candidate  Cross-site scripting (XSS) vulnerability in the NetComm NB16WV-02 router with firmware NB16WV_R0.09 allows remote authenticated users to inject arbitrary web script or HTML via the S801F0334 parameter to hdd.htm.  Assigned (20170207)  None (candidate not yet proposed)    View

Page 20544 of 20943, showing 5 records out of 104715 total, starting on record 102716, ending on 102720

Actions