CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72189  CVE-2014-4892  Candidate  The uControl Smart Home Automation (aka de.ucontrol) application 1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140710)  None (candidate not yet proposed)    View
6909  CVE-2003-0080  Candidate  The iptables ruleset in Gnome-lokkit in Red Hat Linux 8.0 does not include any rules in the FORWARD chain, which could allow attackers to bypass intended access restrictions if packet forwarding is enabled.  Assigned (20030210)  None (candidate not yet proposed)    View
72445  CVE-2014-5148  Candidate  Xen 4.4.x, when running on an ARM system and "handling an unknown system register access from 64-bit userspace," returns to an instruction of the trap handler for kernel space faults instead of an instruction that is associated with faults in 64-bit userspace, which allows local guest users to cause a denial of service (crash) and possibly gain privileges via a crafted process.  Assigned (20140730)  None (candidate not yet proposed)    View
7165  CVE-2003-0337  Candidate  The ckconfig command in lsadmin for Load Sharing Facility (LSF) 5.1 allows local users to execute arbitrary programs by modifying the LSF_ENVDIR environment variable to reference an alternate lsf.conf file, then modifying LSF_SERVERDIR to point to a malicious lim program, which lsadmin then executes.  Assigned (20030522)  None (candidate not yet proposed)    View
72701  CVE-2014-5404  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140822)  None (candidate not yet proposed)    View

Page 20712 of 20943, showing 5 records out of 104715 total, starting on record 103556, ending on 103560

Actions