CVE List

Id CVE No. Status Description Phase Votes Comments Actions
54423  CVE-2012-1180  Candidate  Use-after-free vulnerability in nginx before 1.0.14 and 1.1.x before 1.1.17 allows remote HTTP servers to obtain sensitive information from process memory via a crafted backend response, in conjunction with a client request.  Assigned (20120214)  None (candidate not yet proposed)    View
67393  CVE-2013-7446  Candidate  Use-after-free vulnerability in net/unix/af_unix.c in the Linux kernel before 4.3.3 allows local users to bypass intended AF_UNIX socket permissions or cause a denial of service (panic) via crafted epoll_ctl calls.  Assigned (20151118)  None (candidate not yet proposed)    View
43772  CVE-2010-1188  Candidate  Use-after-free vulnerability in net/ipv4/tcp_input.c in the Linux kernel 2.6 before 2.6.20, when IPV6_RECVPKTINFO is set on a listening socket, allows remote attackers to cause a denial of service (kernel panic) via a SYN packet while the socket is in a listening (TCP_LISTEN) state, which is not properly handled and causes the skb structure to be freed.  Assigned (20100330)  None (candidate not yet proposed)    View
43076  CVE-2010-0492  Candidate  Use-after-free vulnerability in mstime.dll in Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code via vectors related to the TIME2 behavior, the CTimeAction object, and destruction of markup, leading to memory corruption, aka "HTML Object Memory Corruption Vulnerability."  Assigned (20100202)  None (candidate not yet proposed)    View
89647  CVE-2016-2828  Candidate  Use-after-free vulnerability in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allows remote attackers to execute arbitrary code via WebGL content that triggers texture access after destruction of the texture"s recycle pool.  Assigned (20160301)  None (candidate not yet proposed)    View

Page 688 of 20943, showing 5 records out of 104715 total, starting on record 3436, ending on 3440

Actions