CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6662  CVE-2002-2280  Candidate  syslogd on OpenBSD 2.9 through 3.2 does not change the source IP address of syslog packets when the machine"s IP addressed is changed without rebooting, e.g. via ifconfig, which can cause incorrect information to be sent to the syslog server.  Assigned (20071017)  None (candidate not yet proposed)    View
72198  CVE-2014-4901  Candidate  The Bond Trading (aka com.appmakr.app613309) application 197705 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140710)  None (candidate not yet proposed)    View
6918  CVE-2003-0089  Candidate  Buffer overflow in the Software Distributor utilities for HP-UX B.11.00 and B.11.11 allows local users to execute arbitrary code via a long LANG environment variable to setuid programs such as (1) swinstall and (2) swmodify.  Assigned (20030211)  None (candidate not yet proposed)    View
72454  CVE-2014-5157  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5196. Reason: This candidate is a reservation duplicate of CVE-2014-5196. Notes: All CVE users should reference CVE-2014-5196 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20140731)  None (candidate not yet proposed)    View
7174  CVE-2003-0346  Candidate  Multiple integer overflows in a Microsoft Windows DirectX MIDI library (QUARTZ.DLL) allow remote attackers to execute arbitrary code via a MIDI (.mid) file with (1) large length for a Text or Copyright string, or (2) a large number of tracks, which leads to a heap-based buffer overflow.  Assigned (20030528)  None (candidate not yet proposed)    View

Page 507 of 20943, showing 5 records out of 104715 total, starting on record 2531, ending on 2535

Actions