CVE List

Id CVE No. Status Description Phase Votes Comments Actions
88067  CVE-2016-1248  Candidate  vim before patch 8.0.0056 does not properly validate values for the "filetype", "syntax" and "keymap" options, which may result in the execution of arbitrary code if a file with a specially crafted modeline is opened.  Assigned (20151227)  None (candidate not yet proposed)    View
22787  CVE-2006-6683  Candidate  Pedro Lineu Orso chetcpasswd 2.4.1 and earlier verifies and updates user accounts via custom code that processes /etc/shadow and does not follow the PAM configuration, which might allow remote attackers to bypass intended restrictions implemented through PAM.  Assigned (20061221)  None (candidate not yet proposed)    View
88323  CVE-2016-1504  Candidate  dhcpcd before 6.10.0 allows remote attackers to cause a denial of service (invalid read and crash) via vectors related to the option length.  Assigned (20160107)  None (candidate not yet proposed)    View
23043  CVE-2006-6939  Candidate  GNU ed before 0.3 allows local users to overwrite arbitrary files via a symlink attack on temporary files, possibly in the open_sbuf function.  Assigned (20070116)  None (candidate not yet proposed)    View
88579  CVE-2016-1760  Candidate  The XPC Services API in LaunchServices in Apple iOS before 9.3 allows attackers to bypass intended event-handler restrictions and modify an arbitrary app"s events via a crafted app.  Assigned (20160113)  None (candidate not yet proposed)    View

Page 884 of 20943, showing 5 records out of 104715 total, starting on record 4416, ending on 4420

Actions