NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
23264  CVE-2015-0825  Stack-based buffer underflow in the mozilla::MP3FrameParser::ParseBuffer function in Mozilla Firefox before 36.0 allows remote attackers to obtain sensitive information from process memory via a malformed MP3 file that improperly interacts with memory allocation during playback.    4.3  Medium  2017-01-19  2016-12-21  View
23520  CVE-2015-1134  fontd in Apple Type Services (ATS) in Apple OS X before 10.10.3 allows local users to gain privileges via unspecified vectors, a different vulnerability than CVE-2015-1131, CVE-2015-1132, CVE-2015-1133, and CVE-2015-1135.    7.2  High  2017-01-19  2015-09-17  View
23776  CVE-2015-1462  ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a crafted upx packer file, related to a "heap out of bounds condition."    7.5  High  2017-01-19  2016-12-07  View
24032  CVE-2015-1792  The do_free_upto function in crypto/cms/cms_smime.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (infinite loop) via vectors that trigger a NULL value of a BIO data structure, as demonstrated by an unrecognized X.660 OID for a hash function.    Medium  2017-01-19  2016-12-30  View
24288  CVE-2015-2136  HP ArcSight Logger before 6.0 P2 allows remote authenticated users to bypass the intended authorization policy via unspecified vectors.    Medium  2017-01-19  2015-09-17  View

Page 14681 of 17672, showing 5 records out of 88360 total, starting on record 73401, ending on 73405

Actions