CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102751  CVE-2017-5931  Candidate  Integer overflow in hw/virtio/virtio-crypto.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (QEMU process crash) or possibly execute arbitrary code on the host via a crafted virtio-crypto request, which triggers a heap-based buffer overflow.  Assigned (20170207)  None (candidate not yet proposed)    View
102752  CVE-2017-5932  Candidate  The path autocompletion feature in Bash 4.4 allows local users to gain privileges via a crafted filename starting with a " (double quote) character and a command substitution metacharacter.  Assigned (20170207)  None (candidate not yet proposed)    View
102753  CVE-2017-5933  Candidate  Citrix NetScaler ADC and NetScaler Gateway 10.5 before Build 65.11, 11.0 before Build 69.12/69.123, and 11.1 before Build 51.21 randomly generates GCM nonces, which makes it marginally easier for remote attackers to obtain the GCM authentication key and spoof data by leveraging a reused nonce in a session and a "forbidden attack," a similar issue to CVE-2016-0270.  Assigned (20170208)  None (candidate not yet proposed)    View
102754  CVE-2017-5934  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170208)  None (candidate not yet proposed)    View
102755  CVE-2017-5935  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170208)  None (candidate not yet proposed)    View

Page 20551 of 20943, showing 5 records out of 104715 total, starting on record 102751, ending on 102755

Actions