CVE List

Id CVE No. Status Description Phase Votes Comments Actions
74508  CVE-2014-7207  Candidate  A certain Debian patch to the IPv6 implementation in the Linux kernel 3.2.x through 3.2.63 does not properly validate arguments in ipv6_select_ident function calls, which allows local users to cause a denial of service (NULL pointer dereference and system crash) by leveraging (1) tun or (2) macvtap device access.  Assigned (20140927)  None (candidate not yet proposed)    View
9228  CVE-2004-0800  Candidate  Format string vulnerability in CDE Mailer (dtmail) on Solaris 8 and 9 allows local users to gain privileges via format strings in the argv[0] value.  Assigned (20040824)  None (candidate not yet proposed)    View
74764  CVE-2014-7463  Candidate  The IM5 Fans Planet (aka uk.co.pixelkicks.im5) application 2.3.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9484  CVE-2004-1056  Candidate  Direct Rendering Manager (DRM) driver in Linux kernel 2.6 does not properly check the DMA lock, which could allow remote attackers or local users to cause a denial of service (X Server crash) and possibly modify the video output.  Assigned (20041123)  None (candidate not yet proposed)    View
75020  CVE-2014-7719  Candidate  The BASEBALL MANAGER K (aka com.cjenm.yagamkgoogle) application 1.13 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View

Page 969 of 20943, showing 5 records out of 104715 total, starting on record 4841, ending on 4845

Actions