NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85535  CVE-2017-8352  In ImageMagick 7.0.5-5, the ReadXWDImage function in xwd.c allows attackers to cause a denial of service (memory leak) via a crafted file.    4.3  Medium  2017-05-27  2017-05-11  View
85791  CVE-2017-0631  An information disclosure vulnerability in the Qualcomm camera driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-35399756. References: QC-CR#1093232.    2.6  Low  2017-05-27  2017-05-19  View
86047  CVE-2017-7887  Dolibarr ERP/CRM 4.0.4 has XSS in doli/societe/list.php via the sall parameter.    4.3  Medium  2017-05-27  2017-05-15  View
86303  CVE-2017-9216  libjbig2dec.a in Artifex jbig2dec 0.13, as used in MuPDF and Ghostscript, has a NULL pointer dereference in the jbig2_huffman_get function in jbig2_huffman.c. For example, the jbig2dec utility will crash (segmentation fault) when parsing an invalid file.    4.3  Medium  2017-06-12  2017-06-06  View
86559  CVE-2016-3083  Apache Hive (JDBC + HiveServer2) implements SSL for plain TCP and HTTP connections (it supports both transport modes). While validating the server's certificate during the connection setup, the client in Apache Hive before 1.2.2 and 2.0.x before 2.0.1 doesn't seem to be verifying the common name attribute of the certificate. In this way, if a JDBC client sends an SSL request to server abc.com, and the server responds with a valid certificate (certified by CA) but issued to xyz.com, the client will accept that as a valid certificate and the SSL handshake will go through.    Medium  2017-06-04  2017-05-31  View

Page 487 of 17672, showing 5 records out of 88360 total, starting on record 2431, ending on 2435

Actions