CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102821  CVE-2017-6001  Candidate  Race condition in kernel/events/core.c in the Linux kernel before 4.9.7 allows local users to gain privileges via a crafted application that makes concurrent perf_event_open system calls for moving a software group into a hardware context. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-6786.  Assigned (20170215)  None (candidate not yet proposed)    View
102822  CVE-2017-6002  Candidate  Subrion CMS 4.0.5.10 has CSRF in admin/blog/add/. The attacker can add any blog entry, and can optionally insert XSS into that entry via the body parameter.  Assigned (20170215)  None (candidate not yet proposed)    View
102823  CVE-2017-6003  Candidate  dotCMS 3.7.0 has XSS reachable from ext/languages_manager/edit_language in portal/layout via the bottom two form fields.  Assigned (20170215)  None (candidate not yet proposed)    View
102824  CVE-2017-6004  Candidate  The compile_bracket_matchingpath function in pcre_jit_compile.c in PCRE through 8.x before revision 1680 (e.g., the PHP 7.1.1 bundled version) allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted regular expression.  Assigned (20170215)  None (candidate not yet proposed)    View
102825  CVE-2017-6005  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170215)  None (candidate not yet proposed)    View

Page 20565 of 20943, showing 5 records out of 104715 total, starting on record 102821, ending on 102825

Actions