NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84995  CVE-2017-7961  ** DISPUTED ** The cr_tknzr_parse_rgb function in cr-tknzr.c in libcroco 0.6.11 and 0.6.12 has an outside the range of representable values of type long undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted CSS file. NOTE: third-party analysis reports This is not a security issue in my view. The conversion surely is truncating the double into a long value, but there is no impact as the value is one of the RGB components.    6.8  Medium  2017-07-18  2017-07-10  View
84994  CVE-2017-7960  The cr_input_new_from_uri function in cr-input.c in libcroco 0.6.11 and 0.6.12 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted CSS file.    4.3  Medium  2017-07-18  2017-07-10  View
84993  CVE-2017-7951  WonderCMS before 2.0.3 has CSRF because of lack of a token in an unspecified context.    6.8  Medium  2017-04-27  2017-04-24  View
84992  CVE-2017-7948  Integer overflow in the mark_curve function in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly have unspecified other impact via a crafted PostScript document.    6.8  Medium  2017-04-27  2017-04-25  View
84991  CVE-2017-7946  The get_relocs_64 function in libr/bin/format/mach0/mach0.c in radare2 1.3.0 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted Mach0 file.    4.3  Medium  2017-04-27  2017-04-21  View

Page 674 of 17672, showing 5 records out of 88360 total, starting on record 3366, ending on 3370

Actions