CVE List

Id CVE No. Status Description Phase Votes Comments Actions
75542  CVE-2014-8241  Candidate  XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL pointer dereference) by leveraging failure to check a malloc return value, a similar issue to CVE-2014-6052.  Assigned (20141011)  None (candidate not yet proposed)    View
103787  CVE-2017-6967  Candidate  xrdp 0.9.1 calls the PAM function auth_start_session() in an incorrect location, leading to PAM session modules not being properly initialized, with a potential consequence of incorrect configurations or elevation of privileges, aka a pam_limits.so bypass.  Assigned (20170317)  None (candidate not yet proposed)    View
48377  CVE-2011-0465  Candidate  xrdb.c in xrdb before 1.0.9 in X.Org X11R7.6 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a (1) DHCP or (2) XDMCP message.  Assigned (20110114)  None (candidate not yet proposed)    View
13446  CVE-2005-2240  Candidate  xpvm.tcl in xpvm 1.2.5 allows local users to overwrite arbitrary files via a symlink attack on the xpvm.trace.$user temporary file.  Assigned (20050712)  None (candidate not yet proposed)    View
14829  CVE-2005-3625  Candidate  Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1) CCITTFaxDecode and (2) DCTDecode streams, aka "Infinite CPU spins."  Assigned (20051116)  None (candidate not yet proposed)    View

Page 64 of 20943, showing 5 records out of 104715 total, starting on record 316, ending on 320

Actions