CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102775  CVE-2017-5955  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170210)  None (candidate not yet proposed)    View
102774  CVE-2017-5954  Candidate  An issue was discovered in the serialize-to-js package 0.5.0 for Node.js. Untrusted data passed into the deserialize() function can be exploited to achieve arbitrary code execution by passing a JavaScript Object with an Immediately Invoked Function Expression (IIFE).  Assigned (20170210)  None (candidate not yet proposed)    View
102773  CVE-2017-5953  Candidate  vim before patch 8.0.0322 does not properly validate values for tree length when handling a spell file, which may result in an integer overflow at a memory allocation site and a resultant buffer overflow.  Assigned (20170210)  None (candidate not yet proposed)    View
102772  CVE-2017-5952  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170209)  None (candidate not yet proposed)    View
102771  CVE-2017-5951  Candidate  The mem_get_bits_rectangle function in base/gdevmem.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file.  Assigned (20170209)  None (candidate not yet proposed)    View

Page 389 of 20943, showing 5 records out of 104715 total, starting on record 1941, ending on 1945

Actions