CVE List

Id CVE No. Status Description Phase Votes Comments Actions
46083  CVE-2010-3499  Candidate  F-Secure Anti-Virus does not properly interact with the processing of hcp:// URLs by the Microsoft Help and Support Center, which makes it easier for remote attackers to execute arbitrary code via malware that is correctly detected by this product, but with a detection approach that occurs too late to stop the code execution. NOTE: the researcher indicates that a vendor response was received, stating that "the inability to catch these files are caused by lacking functionality rather than programming errors."  Assigned (20100924)  None (candidate not yet proposed)    View
46339  CVE-2010-3755  Candidate  The _DAS_ReadBlockReply function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via data in a TCP packet. NOTE: this might overlap CVE-2010-3060.  Assigned (20101005)  None (candidate not yet proposed)    View
46595  CVE-2010-4011  Candidate  Dovecot in Apple Mac OS X 10.6.5 10H574 does not properly manage memory for user names, which allows remote authenticated users to read the private e-mail of other persons in opportunistic circumstances via standard e-mail clients accessing a user"s own mailbox, related to a "memory aliasing issue."  Assigned (20101020)  None (candidate not yet proposed)    View
46851  CVE-2010-4267  Candidate  Stack-based buffer overflow in the hpmud_get_pml function in io/hpmud/pml.c in Hewlett-Packard Linux Imaging and Printing (HPLIP) 1.6.7, 3.9.8, 3.10.9, and probably other versions allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted SNMP response with a large length value.  Assigned (20101116)  None (candidate not yet proposed)    View
47107  CVE-2010-4523  Candidate  Multiple stack-based buffer overflows in libopensc in OpenSC 0.11.13 and earlier allow physically proximate attackers to execute arbitrary code via a long serial-number field on a smart card, related to (1) card-acos5.c, (2) card-atrust-acos.c, and (3) card-starcos.c.  Assigned (20101209)  None (candidate not yet proposed)    View

Page 309 of 20943, showing 5 records out of 104715 total, starting on record 1541, ending on 1545

Actions