CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
102046 | CVE-2017-5226 | Candidate | When executing a program via the bubblewrap sandbox, the nonpriv session can escape to the parent session by using the TIOCSTI ioctl to push characters into the terminal"s input buffer, allowing an attacker to escape the sandbox. | Assigned (20170109) | None (candidate not yet proposed) | View | |
91150 | CVE-2016-4331 | Candidate | When decoding data out of a dataset encoded with the H5Z_NBIT decoding, the HDF5 1.8.16 library will fail to ensure that the precision is within the bounds of the size leading to arbitrary code execution. | Assigned (20160427) | None (candidate not yet proposed) | View | |
99609 | CVE-2017-2789 | Candidate | When copying filedata into a buffer, JustSystems Ichitaro Office 2016 Trial will calculate two values to determine how much data to copy from the document. If both of these values are larger than the size of the buffer, the application will choose the smaller of the two and trust it to copy data from the file. This value is larger than the buffer size, which leads to a heap-based buffer overflow. This overflow corrupts an offset in the heap used in pointer arithmetic for writing data and can lead to code execution under the context of the application. | Assigned (20161201) | None (candidate not yet proposed) | View | |
2093 | CVE-2000-0516 | Entry | When configured to store configuration information in an LDAP directory, Shiva Access Manager 5.0.0 stores the root DN (Distinguished Name) name and password in cleartext in a file that is world readable, which allows local users to compromise the LDAP server. | View | |||
184 | CVE-1999-0184 | Entry | When compiled with the -DALLOW_UPDATES option, bind allows dynamic updates to the DNS server, allowing for malicious modification of DNS records. | View |
Page 219 of 20943, showing 5 records out of 104715 total, starting on record 1091, ending on 1095