CVE List

Id CVE No. Status Description Phase Votes Comments Actions
89344  CVE-2016-2525  Candidate  epan/dissectors/packet-http2.c in the HTTP/2 dissector in Wireshark 2.0.x before 2.0.2 does not limit the amount of header data, which allows remote attackers to cause a denial of service (memory consumption or application crash) via a crafted packet.  Assigned (20160220)  None (candidate not yet proposed)    View
24064  CVE-2007-0707  Candidate  Stack-based buffer overflow in GOM Player 2.0.12.3375 allows user-assisted remote attackers to execute arbitrary code via a .ASX file with a long URI in the "ref href" tag. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20070203)  None (candidate not yet proposed)    View
89600  CVE-2016-2781  Candidate  chroot in GNU coreutils, when used with --userspec, allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal"s input buffer.  Assigned (20160228)  None (candidate not yet proposed)    View
24320  CVE-2007-0963  Candidate  Unspecified vulnerability in Cisco Firewall Services Module (FWSM) 3.x before 3.1(3.3), when set to log at the "debug" level, allows remote attackers to cause a denial of service (device reboot) by sending packets that are not of a particular protocol such as TCP or UDP, which triggers the reboot during generation of Syslog message 710006.  Assigned (20070215)  None (candidate not yet proposed)    View
89856  CVE-2016-3037  Candidate  IBM Cognos TM1 10.1 and 10.2 provides a service to return the victim"s password with a valid session key. An authenticated attacker with user interaction could obtain this sensitive information. IBM X-Force ID: 114613.  Assigned (20160309)  None (candidate not yet proposed)    View

Page 37 of 20943, showing 5 records out of 104715 total, starting on record 181, ending on 185

Actions