NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83955  CVE-2016-4912  The _xrealloc function in xlsp_xmalloc.c in OpenSLP 2.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a large number of crafted packets, which triggers a memory allocation failure.    Medium  2017-07-18  2017-07-10  View
7490  CVE-2011-0421  The _zip_name_locate function in zip_name_locate.c in the Zip extension in PHP before 5.3.6 does not properly handle a ZIPARCHIVE::FL_UNCHANGED argument, which might allow context-dependent attackers to cause a denial of service (NULL pointer dereference) via an empty ZIP archive that is processed with a (1) locateName or (2) statName operation.    4.3  Medium  2017-01-07  2016-08-22  View
63434  CVE-2006-4813  The __block_prepare_write function in fs/buffer.c for Linux kernel 2.6.x before 2.6.13 does not properly clear buffers during certain error conditions, which allows local users to read portions of files that have been unlinked.    2.1  Low  2016-12-20  2010-09-15  View
35136  CVE-2014-7843  The __clear_user function in arch/arm64/lib/clear_user.S in the Linux kernel before 3.17.4 on the ARM64 platform allows local users to cause a denial of service (system crash) by reading one byte beyond a /dev/zero page boundary.    4.9  Medium  2017-01-19  2015-01-22  View
83669  CVE-2016-6485  The __construct function in Framework/Encryption/Crypt.php in Magento 2 uses the PHP rand function to generate a random number for the initialization vector, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by guessing the value.    Medium  2017-03-18  2017-03-13  View

Page 15134 of 17672, showing 5 records out of 88360 total, starting on record 75666, ending on 75670

Actions