CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102658  CVE-2017-5838  Candidate  The gst_date_time_new_from_iso8601_string function in gst/gstdatetime.c in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a malformed datetime string.  Assigned (20170201)  None (candidate not yet proposed)    View
37378  CVE-2008-7261  Candidate  The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-010 records DEBUG messages containing user credentials in the log4j.xml file, which might allow local users to obtain sensitive information by reading this file.  Assigned (20100920)  None (candidate not yet proposed)    View
102914  CVE-2017-6094  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170218)  None (candidate not yet proposed)    View
37634  CVE-2009-0199  Candidate  Heap-based buffer overflow in the VMnc media codec in vmnc.dll in VMware Movie Decoder before 6.5.3 build 185404, VMware Workstation 6.5.x before 6.5.3 build 185404, VMware Player 2.5.x before 2.5.3 build 185404, and VMware ACE 2.5.x before 2.5.3 build 185404 on Windows might allow remote attackers to execute arbitrary code via a video file with crafted dimensions (aka framebuffer parameters).  Assigned (20090120)  None (candidate not yet proposed)    View
103170  CVE-2017-6350  Candidate  An integer overflow at an unserialize_uep memory allocation site would occur for vim before patch 8.0.0378, if it does not properly validate values for tree length when reading a corrupted undo file, which may lead to resultant buffer overflows.  Assigned (20170226)  None (candidate not yet proposed)    View

Page 827 of 20943, showing 5 records out of 104715 total, starting on record 4131, ending on 4135

Actions