NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86306  CVE-2017-9225  An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5. A stack out-of-bounds write in onigenc_unicode_get_case_fold_codes_by_str() occurs during regular expression compilation. Code point 0xFFFFFFFF is not properly handled in unicode_unfold_key(). A malformed regular expression could result in 4 bytes being written off the end of a stack buffer of expand_case_fold_string() during the call to onigenc_unicode_get_case_fold_codes_by_str(), a typical stack buffer overflow.    7.5  High  2017-06-03  2017-06-02  View
86562  CVE-2016-8230  In Lenovo Service Bridge before version 4, an insecure HTTP connection is used by LSB to send system serial number, machine type and model and product name to Lenovo's servers.    Medium  2017-06-12  2017-06-09  View
86818  CVE-2016-5648  Acer Portal app before 3.9.4.2000 for Android does not properly validate SSL certificates, which allows remote attackers to perform a Man-in-the-middle attack via a crafted SSL certificate.    4.3  Medium  2017-06-18  2017-06-15  View
87074  CVE-2017-8545  A spoofing vulnerability exists in when Microsoft Outlook for Mac does not sanitize html properly, aka Microsoft Outlook for Mac Spoofing Vulnerability.    4.3  Medium  2017-07-18  2017-07-07  View
87330  CVE-2017-9763  The grub_ext2_read_block function in fs/ext2.c in GNU GRUB before 2013-11-12, as used in shlr/grub/fs/ext2.c in radare2 1.5.0, allows remote attackers to cause a denial of service (excessive stack use and application crash) via a crafted binary file, related to use of a variable-size stack array.    Medium  2017-07-18  2017-07-05  View

Page 15760 of 17672, showing 5 records out of 88360 total, starting on record 78796, ending on 78800

Actions