NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25636  CVE-2015-4145  The EAP-pwd server and peer implementation in hostapd and wpa_supplicant 1.0 through 2.4 does not validate a fragment is already being processed, which allows remote attackers to cause a denial of service (memory leak) via a crafted message.    Medium  2017-01-19  2016-07-29  View
25892  CVE-2015-4469  The chmd_read_headers function in chmd.c in libmspack before 0.5 does not validate name lengths, which allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted CHM file.    4.3  Medium  2017-01-19  2016-06-09  View
26148  CVE-2015-4827  Unspecified vulnerability in the Oracle Retail Open Commerce Platform component in Oracle Retail Applications 3.0 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Framework.    6.4  Medium  2017-01-19  2016-12-23  View
26404  CVE-2015-5156  The virtnet_probe function in drivers/net/virtio_net.c in the Linux kernel before 4.2 attempts to support a FRAGLIST feature without proper memory allocation, which allows guest OS users to cause a denial of service (buffer overflow and memory corruption) via a crafted sequence of fragmented packets.    6.1  Medium  2017-01-19  2016-12-07  View
26660  CVE-2015-5523  The ParseValue function in lexer.c in tidy before 4.9.31 allows remote attackers to cause a denial of service (crash) via vectors involving multiple whitespace characters before an empty href, which triggers a large memory allocation.    4.3  Medium  2017-01-19  2016-12-07  View

Page 1328 of 17672, showing 5 records out of 88360 total, starting on record 6636, ending on 6640

Actions