CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104695  CVE-2017-7875  Candidate  In wallpaper.c in feh before v2.18.3, if a malicious client pretends to be the E17 window manager, it is possible to trigger an out-of-boundary heap write while receiving an IPC message. An integer overflow leads to a buffer overflow and/or a double free.  Assigned (20170414)  None (candidate not yet proposed)    View
104694  CVE-2017-7874  Candidate  udevd in udev 232, when the Linux kernel 4.8.0 is used, does not properly verify the source of a Netlink message, which allows local users to execute arbitrary commands by leveraging access to the NETLINK_KOBJECT_UEVENT family, and the presence of the /lib/udev/rules.d/50-udev-default.rules file, to provide a crafted REMOVE_CMD value.  Assigned (20170414)  None (candidate not yet proposed)    View
104693  CVE-2017-7873  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170414)  None (candidate not yet proposed)    View
104692  CVE-2017-7872  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170414)  None (candidate not yet proposed)    View
104691  CVE-2017-7871  Candidate  trollepierre/tdm before 2017-04-13 is vulnerable to a reflected XSS in tdm-master/webhook.php (challenge parameter).  Assigned (20170414)  None (candidate not yet proposed)    View

Page 5 of 20943, showing 5 records out of 104715 total, starting on record 21, ending on 25

<<first 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 last>>

Actions