NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
20016  CVE-2016-4332  The library"s failure to check if certain message types support a particular flag, the HDF5 1.8.16 library will cast the structure to an alternative structure and then assign to fields that aren"t supported by the message type and the library will write outside the bounds of the heap buffer. This can lead to code execution under the context of the library.    6.9  Medium  2017-01-19  2016-11-28  View
85552  CVE-2017-8373  The mad_layer_III function in layer3.c in Underbit MAD libmad 0.15.1b allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted audio file.    6.8  Medium  2017-05-27  2017-05-12  View
20272  CVE-2016-4703  Bluetooth in Apple OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.    9.3  High  2017-01-19  2016-11-28  View
85808  CVE-2017-1291  IBM Maximo Asset Management 7.5 and 7.6 is vulnerable to HTTP response splitting attacks. A remote attacker could exploit this vulnerability using specially-crafted URL to cause the server to return a split response, once the URL is clicked. This would allow the attacker to perform further attacks, such as Web cache poisoning, cross-site scripting, and possibly obtain sensitive information. IBM X-Force ID: 125152.    3.5  Low  2017-06-03  2017-05-31  View
20528  CVE-2016-5193  Google Chrome prior to 54.0 for iOS had insufficient validation of URLs for windows open by DOM, which allowed a remote attacker to bypass restrictions on navigation to certain URL schemes via crafted HTML pages.    4.3  Medium  2017-01-19  2016-12-20  View

Page 3286 of 17672, showing 5 records out of 88360 total, starting on record 16426, ending on 16430

Actions