NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25192  CVE-2015-3335  The NaClSandbox::InitializeLayerTwoSandbox function in components/nacl/loader/sandbox_linux/nacl_sandbox_linux.cc in Google Chrome before 42.0.2311.90 does not have RLIMIT_AS and RLIMIT_DATA limits for Native Client (aka NaCl) processes, which might make it easier for remote attackers to conduct row-hammer attacks or have unspecified other impact by leveraging the ability to run a crafted program in the NaCl sandbox.    7.5  High  2017-01-19  2017-01-03  View
25960  CVE-2015-4538  The XML parser in EMC Atmos before 2.2.3.426 and 2.3.x before 2.3.1.0 allows remote authenticated users to read arbitrary files or cause a denial of service (CPU and memory consumption) via an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.    7.5  High  2017-01-19  2016-12-21  View
26728  CVE-2015-5621  The snmp_pdu_parse function in snmp_api.c in net-snmp 5.7.2 and earlier does not remove the varBind variable in a netsnmp_variable_list item when parsing of the SNMP PDU fails, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted packet.    7.5  High  2017-01-19  2016-12-23  View
27496  CVE-2015-6637  The MediaTek misc-sd driver in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to gain privileges via a crafted application, aka internal bug 25307013.    9.3  High  2017-01-19  2016-12-07  View
27752  CVE-2015-7004  The kernel in Apple iOS before 9.1 allows attackers to cause a denial of service via a crafted app.    7.1  High  2017-01-19  2016-12-23  View

Page 3130 of 17672, showing 5 records out of 88360 total, starting on record 15646, ending on 15650

Actions