CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
75542 | CVE-2014-8241 | Candidate | XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL pointer dereference) by leveraging failure to check a malloc return value, a similar issue to CVE-2014-6052. | Assigned (20141011) | None (candidate not yet proposed) | View | |
103787 | CVE-2017-6967 | Candidate | xrdp 0.9.1 calls the PAM function auth_start_session() in an incorrect location, leading to PAM session modules not being properly initialized, with a potential consequence of incorrect configurations or elevation of privileges, aka a pam_limits.so bypass. | Assigned (20170317) | None (candidate not yet proposed) | View | |
48377 | CVE-2011-0465 | Candidate | xrdb.c in xrdb before 1.0.9 in X.Org X11R7.6 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a (1) DHCP or (2) XDMCP message. | Assigned (20110114) | None (candidate not yet proposed) | View | |
13446 | CVE-2005-2240 | Candidate | xpvm.tcl in xpvm 1.2.5 allows local users to overwrite arbitrary files via a symlink attack on the xpvm.trace.$user temporary file. | Assigned (20050712) | None (candidate not yet proposed) | View | |
14829 | CVE-2005-3625 | Candidate | Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1) CCITTFaxDecode and (2) DCTDecode streams, aka "Infinite CPU spins." | Assigned (20051116) | None (candidate not yet proposed) | View |
Page 64 of 20943, showing 5 records out of 104715 total, starting on record 316, ending on 320