NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83475 | CVE-2017-6849 | The PoDoFo::PdfColorGray::~PdfColorGray function in PdfColor.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-16 | View | |
18195 | CVE-2016-1848 | QuickTime in Apple OS X before 10.11.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-30 | View | |
83731 | CVE-2017-5509 | coders/psd.c in ImageMagick allows remote attackers to have unspecified impact via a crafted PSD file, which triggers an out-of-bounds write. | 2 | 6.8 | Medium | 2017-07-18 | 2017-06-30 | View | |
18451 | CVE-2016-2181 | The Anti-Replay feature in the DTLS implementation in OpenSSL before 1.1.0 mishandles early use of a new epoch number in conjunction with a large sequence number, which allows remote attackers to cause a denial of service (false-positive packet drops) via spoofed DTLS records, related to rec_layer_d1.c and ssl3_record.c. | 2 | 5 | Medium | 2017-02-28 | 2017-02-23 | View | |
83987 | CVE-2016-9121 | go-jose before 1.0.4 suffers from an invalid curve attack for the ECDH-ES algorithm. When deriving a shared key using ECDH-ES for an encrypted message, go-jose neglected to check that the received public key on a message is on the same curve as the static private key of the receiver, thus making it vulnerable to an invalid curve attack. | 2 | 6.4 | Medium | 2017-03-29 | 2017-03-29 | View |
Page 700 of 17672, showing 5 records out of 88360 total, starting on record 3496, ending on 3500