NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85182  CVE-2016-6341  oVirt Engine before 4.0.3 does not include DWH_DB_PASSWORD in the list of keys to hide in log files, which allows local users to obtain sensitive password information by reading engine log files.    2.1  Low  2017-04-27  2017-04-25  View
21694  CVE-2016-7170  The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vectors related to cursor.mask[] and cursor.image[] array sizes when processing a DEFINE_CURSOR svga command.    2.1  Low  2017-01-19  2017-01-06  View
23742  CVE-2015-1415  The bsdinstall installer in FreeBSD 10.x before 10.1 p9, when configuring full disk encrypted ZFS, uses world-readable permissions for the GELI keyfile (/boot/encryption.key), which allows local users to obtain sensitive key information by reading the file.    2.1  Low  2017-01-19  2015-04-10  View
26814  CVE-2015-5748  The kernel in Apple OS X before 10.10.5 does not properly mount HFS volumes, which allows local users to cause a denial of service via a crafted volume.    2.1  Low  2017-01-19  2016-11-28  View
30398  CVE-2014-1832  Phusion Passenger 4.0.37 allows local users to write to certain files and directories via a symlink attack on (1) control_process.pid or a (2) generation-* file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-1831.    2.1  Low  2017-01-19  2015-02-20  View

Page 2130 of 17672, showing 5 records out of 88360 total, starting on record 10646, ending on 10650

Actions