NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
37118 | CVE-2013-0848 | The decode_init function in libavcodec/huffyuv.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a crafted width in huffyuv data with the predictor set to median and the colorspace set to YUV422P, which triggers an out-of-bounds array access. | 2 | 9.3 | High | 2017-01-18 | 2015-11-16 | View | |
37374 | CVE-2013-1124 | The Cisco Network Admission Control (NAC) agent on Mac OS X does not verify the X.509 certificate of an Identity Services Engine (ISE) server during an SSL session, which allows man-in-the-middle attackers to spoof ISE servers via an arbitrary certificate, aka Bug ID CSCub24309. | 2 | 5.8 | Medium | 2017-01-18 | 2013-03-01 | View | |
37630 | CVE-2013-1418 | The setup_server_realm function in main.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.10.7, when multiple realms are configured, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request. | 2 | 4.3 | Medium | 2017-01-18 | 2017-01-06 | View | |
37886 | CVE-2013-1724 | Use-after-free vulnerability in the mozilla::dom::HTMLFormElement::IsDefaultSubmitElement function in Mozilla Firefox before 24.0, Thunderbird before 24.0, and SeaMonkey before 2.21 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via vectors involving a destroyed SELECT element. | 2 | 9.3 | High | 2017-01-18 | 2017-01-06 | View | |
38142 | CVE-2013-2027 | Jython 2.2.1 uses the current umask to set the privileges of the class cache files, which allows local users to bypass intended access restrictions via unspecified vectors. | 2 | 4.6 | Medium | 2017-01-18 | 2016-08-29 | View |
Page 17591 of 17672, showing 5 records out of 88360 total, starting on record 87951, ending on 87955