NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
81663  CVE-2017-5577  The vc4_get_bcl function in drivers/gpu/drm/vc4/vc4_gem.c in the VideoCore DRM driver in the Linux kernel before 4.9.7 does not set an errno value upon certain overflow detections, which allows local users to cause a denial of service (incorrect pointer dereference and OOPS) via inconsistent size values in a VC4_SUBMIT_CL ioctl call.    4.9  Medium  2017-02-15  2017-02-08  View
8981  CVE-2011-2160  The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-2011-0723.    9.3  High  2017-01-07  2011-09-06  View
28252  CVE-2015-7808  The vB_Api_Hook::decodeArguments method in vBulletin 5 Connect 5.1.2 through 5.1.9 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via a crafted serialized object in the arguments parameter to ajax/api/hook/decodeArguments.    7.5  High  2017-01-19  2015-11-25  View
29172  CVE-2014-0271  The VBScript engine in Microsoft Internet Explorer 6 through 11, and VBScript 5.6 through 5.8, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "VBScript Memory Corruption Vulnerability."    9.3  High  2017-01-19  2014-02-12  View
82961  CVE-2017-0049  The VBScript engine in Microsoft Internet Explorer 11 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka Scripting Engine Information Disclosure Vulnerability. This vulnerability is different from those described in CVE-2017-0018, and CVE-2017-0037.    4.3  Medium  2017-07-18  2017-07-11  View

Page 2813 of 17672, showing 5 records out of 88360 total, starting on record 14061, ending on 14065

Actions