CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102745  CVE-2017-5925  Candidate  Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cache of modern Intel processors. By performing a side-channel attack on the MMU operations, it is possible to leak data and code pointers from JavaScript, breaking ASLR.  Assigned (20170207)  None (candidate not yet proposed)    View
102744  CVE-2017-5924  Candidate  libyara/grammar.y in YARA 3.5.0 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted rule that is mishandled in the yr_compiler_destroy function.  Assigned (20170207)  None (candidate not yet proposed)    View
102743  CVE-2017-5923  Candidate  libyara/grammar.y in YARA 3.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted rule that is mishandled in the yara_yyparse function.  Assigned (20170207)  None (candidate not yet proposed)    View
102742  CVE-2017-5922  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170207)  None (candidate not yet proposed)    View
102741  CVE-2017-5921  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170207)  None (candidate not yet proposed)    View

Page 395 of 20943, showing 5 records out of 104715 total, starting on record 1971, ending on 1975

Actions