CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104431  CVE-2017-7611  Candidate  The check_symtab_shndx function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.  Assigned (20170409)  None (candidate not yet proposed)    View
104432  CVE-2017-7612  Candidate  The check_sysv_hash function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.  Assigned (20170409)  None (candidate not yet proposed)    View
104433  CVE-2017-7613  Candidate  elflint.c in elfutils 0.168 does not validate the number of sections and the number of segments, which allows remote attackers to cause a denial of service (memory consumption) via a crafted ELF file.  Assigned (20170409)  None (candidate not yet proposed)    View
104434  CVE-2017-7614  Candidate  elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has a "member access within null pointer" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via an "int main() {return 0;}" program.  Assigned (20170409)  None (candidate not yet proposed)    View
104435  CVE-2017-7615  Candidate  MantisBT through 2.3.0 allows arbitrary password reset and unauthenticated admin access via an empty confirm_hash value to verify.php.  Assigned (20170409)  None (candidate not yet proposed)    View

Page 20887 of 20943, showing 5 records out of 104715 total, starting on record 104431, ending on 104435

Actions