NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83751 | CVE-2017-5932 | The path autocompletion feature in Bash 4.4 allows local users to gain privileges via a crafted filename starting with a (double quote) character and a command substitution metacharacter. | 2 | 4.6 | Medium | 2017-04-27 | 2017-03-31 | View | |
83752 | CVE-2017-5956 | The vrend_draw_vbo function in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (out-of-bounds array access and QEMU process crash) via vectors involving vertext_buffer_index. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
83753 | CVE-2017-5973 | The xhci_kick_epctx function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (infinite loop and QEMU process crash) via vectors related to control transfer descriptor sequence. | 2 | 2.1 | Low | 2017-07-18 | 2017-06-30 | View | |
83754 | CVE-2017-5987 | The sdhci_sdma_transfer_multi_blocks function in hw/sd/sdhci.c in QEMU (aka Quick Emulator) allows local OS guest privileged users to cause a denial of service (infinite loop and QEMU process crash) via vectors involving the transfer mode register during multi block transfer. | 2 | 2.1 | Low | 2017-07-18 | 2017-06-30 | View | |
83755 | CVE-2017-6002 | Subrion CMS 4.0.5.10 has CSRF in admin/blog/add/. The attacker can add any blog entry, and can optionally insert XSS into that entry via the body parameter. | 2 | 6.8 | Medium | 2017-03-29 | 2017-03-28 | View |
Page 16751 of 17672, showing 5 records out of 88360 total, starting on record 83751, ending on 83755