CVE List

Id CVE No. Status Description Phase Votes Comments Actions
48128  CVE-2011-0216  Candidate  Off-by-one error in libxml in Apple Safari before 5.0.6 allows remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow and application crash) via a crafted web site.  Assigned (20101223)  None (candidate not yet proposed)    View
48384  CVE-2011-0472  Candidate  Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle the printing of PDF documents, which allows user-assisted remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a multi-page document.  Assigned (20110114)  None (candidate not yet proposed)    View
48640  CVE-2011-0728  Candidate  Cross-site scripting (XSS) vulnerability in templatefunctions.py in Loggerhead before 1.18.1 allows remote authenticated users to inject arbitrary web script or HTML via a filename, which is not properly handled in a revision view.  Assigned (20110201)  None (candidate not yet proposed)    View
48896  CVE-2011-0984  Candidate  Google Chrome before 9.0.597.94 does not properly handle plug-ins, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.  Assigned (20110210)  None (candidate not yet proposed)    View
49152  CVE-2011-1240  Candidate  Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application that leverages incorrect driver object management, a different vulnerability than other "Vulnerability Type 1" CVEs listed in MS11-034, aka "Win32k Use After Free Vulnerability."  Assigned (20110304)  None (candidate not yet proposed)    View

Page 67 of 20943, showing 5 records out of 104715 total, starting on record 331, ending on 335

Actions