NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86089  CVE-2017-8843  The join_pthread function in stream.c in liblrzip.so in lrzip 0.631 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted archive.    4.3  Medium  2017-05-27  2017-05-16  View
85322  CVE-2016-4893  SQL injection vulnerability in the SetsucoCMS all versions allows remote authenticated attackers to execute arbitrary SQL commands via unspecified vectors.    6.5  Medium  2017-05-27  2017-05-22  View
85578  CVE-2017-8455  Foxit Reader before 8.2.1 and PhantomPDF before 8.2.1 have an out-of-bounds read that allows remote attackers to obtain sensitive information or possibly execute arbitrary code via a crafted font in a PDF document.    6.8  Medium  2017-05-27  2017-05-12  View
86090  CVE-2017-8844  The read_1g function in stream.c in liblrzip.so in lrzip 0.631 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted archive.    6.8  Medium  2017-05-27  2017-05-16  View
85067  CVE-2017-8288  gnome-shell 3.22 through 3.24.1 mishandles extensions that fail to reload, which can lead to leaving extensions enabled in the lock screen. With these extensions, a bystander could launch applications (but not interact with them), see information from the extensions (e.g., what applications you have opened or what music you were playing), or even execute arbitrary commands. It all depends on what extensions a user has enabled. The problem is caused by lack of exception handling in js/ui/extensionSystem.js.    6.8  Medium  2017-05-27  2017-05-10  View

Page 16016 of 17672, showing 5 records out of 88360 total, starting on record 80076, ending on 80080

Actions