NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 25192 | CVE-2015-3335 | The NaClSandbox::InitializeLayerTwoSandbox function in components/nacl/loader/sandbox_linux/nacl_sandbox_linux.cc in Google Chrome before 42.0.2311.90 does not have RLIMIT_AS and RLIMIT_DATA limits for Native Client (aka NaCl) processes, which might make it easier for remote attackers to conduct row-hammer attacks or have unspecified other impact by leveraging the ability to run a crafted program in the NaCl sandbox. | 2 | 7.5 | High | 2017-01-19 | 2017-01-03 | View | |
| 25960 | CVE-2015-4538 | The XML parser in EMC Atmos before 2.2.3.426 and 2.3.x before 2.3.1.0 allows remote authenticated users to read arbitrary files or cause a denial of service (CPU and memory consumption) via an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | 2 | 7.5 | High | 2017-01-19 | 2016-12-21 | View | |
| 26728 | CVE-2015-5621 | The snmp_pdu_parse function in snmp_api.c in net-snmp 5.7.2 and earlier does not remove the varBind variable in a netsnmp_variable_list item when parsing of the SNMP PDU fails, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted packet. | 2 | 7.5 | High | 2017-01-19 | 2016-12-23 | View | |
| 27496 | CVE-2015-6637 | The MediaTek misc-sd driver in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to gain privileges via a crafted application, aka internal bug 25307013. | 2 | 9.3 | High | 2017-01-19 | 2016-12-07 | View | |
| 27752 | CVE-2015-7004 | The kernel in Apple iOS before 9.1 allows attackers to cause a denial of service via a crafted app. | 2 | 7.1 | High | 2017-01-19 | 2016-12-23 | View |
Page 3130 of 17672, showing 5 records out of 88360 total, starting on record 15646, ending on 15650