NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84995 | CVE-2017-7961 | ** DISPUTED ** The cr_tknzr_parse_rgb function in cr-tknzr.c in libcroco 0.6.11 and 0.6.12 has an outside the range of representable values of type long undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted CSS file. NOTE: third-party analysis reports This is not a security issue in my view. The conversion surely is truncating the double into a long value, but there is no impact as the value is one of the RGB components. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
84994 | CVE-2017-7960 | The cr_input_new_from_uri function in cr-input.c in libcroco 0.6.11 and 0.6.12 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted CSS file. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
84993 | CVE-2017-7951 | WonderCMS before 2.0.3 has CSRF because of lack of a token in an unspecified context. | 2 | 6.8 | Medium | 2017-04-27 | 2017-04-24 | View | |
84992 | CVE-2017-7948 | Integer overflow in the mark_curve function in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly have unspecified other impact via a crafted PostScript document. | 2 | 6.8 | Medium | 2017-04-27 | 2017-04-25 | View | |
84991 | CVE-2017-7946 | The get_relocs_64 function in libr/bin/format/mach0/mach0.c in radare2 1.3.0 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted Mach0 file. | 2 | 4.3 | Medium | 2017-04-27 | 2017-04-21 | View |
Page 674 of 17672, showing 5 records out of 88360 total, starting on record 3366, ending on 3370