NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
25636 | CVE-2015-4145 | The EAP-pwd server and peer implementation in hostapd and wpa_supplicant 1.0 through 2.4 does not validate a fragment is already being processed, which allows remote attackers to cause a denial of service (memory leak) via a crafted message. | 2 | 5 | Medium | 2017-01-19 | 2016-07-29 | View | |
25892 | CVE-2015-4469 | The chmd_read_headers function in chmd.c in libmspack before 0.5 does not validate name lengths, which allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted CHM file. | 2 | 4.3 | Medium | 2017-01-19 | 2016-06-09 | View | |
26148 | CVE-2015-4827 | Unspecified vulnerability in the Oracle Retail Open Commerce Platform component in Oracle Retail Applications 3.0 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Framework. | 2 | 6.4 | Medium | 2017-01-19 | 2016-12-23 | View | |
26404 | CVE-2015-5156 | The virtnet_probe function in drivers/net/virtio_net.c in the Linux kernel before 4.2 attempts to support a FRAGLIST feature without proper memory allocation, which allows guest OS users to cause a denial of service (buffer overflow and memory corruption) via a crafted sequence of fragmented packets. | 2 | 6.1 | Medium | 2017-01-19 | 2016-12-07 | View | |
26660 | CVE-2015-5523 | The ParseValue function in lexer.c in tidy before 4.9.31 allows remote attackers to cause a denial of service (crash) via vectors involving multiple whitespace characters before an empty href, which triggers a large memory allocation. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 1328 of 17672, showing 5 records out of 88360 total, starting on record 6636, ending on 6640