CVE List

Id CVE No. Status Description Phase Votes Comments Actions
39691  CVE-2009-2256  Candidate  The administrative web interface on the Netgear DG632 with firmware 3.4.0_ap allows remote attackers to cause a denial of service (web outage) via an HTTP POST request to cgi-bin/firmwarecfg.  Assigned (20090629)  None (candidate not yet proposed)    View
39947  CVE-2009-2512  Candidate  The Web Services on Devices API (WSDAPI) in Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2 does not properly process the headers of WSD messages, which allows remote attackers to execute arbitrary code via a crafted (1) message or (2) response, aka "Web Services on Devices API Memory Corruption Vulnerability."  Assigned (20090717)  None (candidate not yet proposed)    View
40203  CVE-2009-2768  Candidate  The load_flat_shared_library function in fs/binfmt_flat.c in the flat subsystem in the Linux kernel before 2.6.31-rc6 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by executing a shared flat binary, which triggers an access of an "uninitialized cred pointer."  Assigned (20090814)  None (candidate not yet proposed)    View
40459  CVE-2009-3024  Candidate  The verify_hostname_of_cert function in the certificate checking feature in IO-Socket-SSL (IO::Socket::SSL) 1.14 through 1.25 only matches the prefix of a hostname when no wildcard is used, which allows remote attackers to bypass the hostname check for a certificate.  Assigned (20090831)  None (candidate not yet proposed)    View
40715  CVE-2009-3280  Candidate  Integer signedness error in the find_ie function in net/wireless/scan.c in the cfg80211 subsystem in the Linux kernel before 2.6.31.1-rc1 allows remote attackers to cause a denial of service (soft lockup) via malformed packets.  Assigned (20090921)  None (candidate not yet proposed)    View

Page 943 of 20943, showing 5 records out of 104715 total, starting on record 4711, ending on 4715

Actions