CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102795  CVE-2017-5975  Candidate  Heap-based buffer overflow in the __zzip_get64 function in fetch.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.  Assigned (20170213)  None (candidate not yet proposed)    View
102794  CVE-2017-5974  Candidate  Heap-based buffer overflow in the __zzip_get32 function in fetch.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.  Assigned (20170213)  None (candidate not yet proposed)    View
102793  CVE-2017-5973  Candidate  The xhci_kick_epctx function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (infinite loop and QEMU process crash) via vectors related to control transfer descriptor sequence.  Assigned (20170213)  None (candidate not yet proposed)    View
102792  CVE-2017-5972  Candidate  The TCP stack in the Linux kernel 3.x does not properly implement a SYN cookie protection mechanism for the case of a fast network connection, which allows remote attackers to cause a denial of service (CPU consumption) by sending many TCP SYN packets, as demonstrated by an attack against the kernel-3.10.0 package in CentOS Linux 7.  Assigned (20170212)  None (candidate not yet proposed)    View
102791  CVE-2017-5971  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170212)  None (candidate not yet proposed)    View

Page 385 of 20943, showing 5 records out of 104715 total, starting on record 1921, ending on 1925

Actions