CVE List

Id CVE No. Status Description Phase Votes Comments Actions
49660  CVE-2011-1748  Candidate  The raw_release function in net/can/raw.c in the Linux kernel before 2.6.39-rc6 does not properly validate a socket data structure, which allows local users to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via a crafted release operation.  Assigned (20110419)  None (candidate not yet proposed)    View
49916  CVE-2011-2004  Candidate  Array index error in win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2008 R2 and R2 SP1 and Windows 7 Gold and SP1 allows remote attackers to cause a denial of service (reboot) via a crafted TrueType font file, aka "TrueType Font Parsing Vulnerability," a different vulnerability than CVE-2011-3402.  Assigned (20110509)  None (candidate not yet proposed)    View
50172  CVE-2011-2260  Candidate  Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Sun Products Suite 2.1.1 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Administration.  Assigned (20110602)  None (candidate not yet proposed)    View
50428  CVE-2011-2516  Candidate  Off-by-one error in the XML signature feature in Apache XML Security for C++ 1.6.0, as used in Shibboleth before 2.4.3 and possibly other products, allows remote attackers to cause a denial of service (crash) via a signature using a large RSA key, which triggers a buffer overflow.  Assigned (20110615)  None (candidate not yet proposed)    View
50684  CVE-2011-2772  Candidate  The get_dataroot_image_path function in lib/file.php in Mahara before 1.4.1 does not properly validate uploaded image files, which allows remote attackers to cause a denial of service (memory consumption) via a (1) large or (2) invalid image.  Assigned (20110719)  None (candidate not yet proposed)    View

Page 20693 of 20943, showing 5 records out of 104715 total, starting on record 103461, ending on 103465

Actions