CVE Feed

    Dashboard / CVE

    7
    High

    CVE-2017-10661

    Last Modified: 20 Apr 2025

    Race condition in fs/timerfd.c in the Linux kernel before 4.10.15 allows local users to gain privileges or cause a denial of service (list corruption or use-after-free) via simultaneous file-descriptor operations that leverage improper might_cancel queueing.

    Published: 10 Feb 2017
    4
    Medium

    CVE-2017-5967

    Last Modified: 20 Apr 2025

    The time subsystem in the Linux kernel through 4.9.9, when CONFIG_TIMER_STATS is enabled, allows local users to discover real PID values (as distinguished from PID values inside a PID namespace) by reading the /proc/timer_list file, related to the print_timer function in kernel/time/timer_list.c and the __timer_stats_timer_set_start_info function in kernel/time/timer.c.

    Published: 10 Feb 2017
    5.5
    Medium

    CVE-2017-6501

    Last Modified: 20 Apr 2025

    An issue was discovered in ImageMagick 6.9.7. A specially crafted xcf file could lead to a NULL pointer dereference.

    Published: 10 Feb 2017
    5.9
    Medium

    CVE-2017-5590

    Last Modified: 20 Apr 2025

    An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for ChatSecure (3.2.0 - 4.0.0; only iOS) and Zom (all versions up to 1.0.11; only iOS).

    Published: 9 Feb 2017
    5.9
    Medium

    CVE-2017-5592

    Last Modified: 20 Apr 2025

    An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for profanity (0.4.7 - 0.5.0).

    Published: 9 Feb 2017
    5.9
    Medium

    CVE-2017-5603

    Last Modified: 20 Apr 2025

    An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for Jitsi 2.5.5061 - 2.9.5544.

    Published: 9 Feb 2017
    5.9
    Medium

    CVE-2017-5604

    Last Modified: 20 Apr 2025

    An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for mcabber 1.0.0 - 1.0.4.

    Published: 9 Feb 2017
    5.9
    Medium

    CVE-2017-5605

    Last Modified: 20 Apr 2025

    An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for Movim 0.8 - 0.10.

    Published: 9 Feb 2017
    5.9
    Medium

    CVE-2017-5858

    Last Modified: 20 Apr 2025

    An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for Converse.js (0.8.0 - 1.0.6, 2.0.0 - 2.0.4).

    Published: 9 Feb 2017
    5.9
    Medium

    CVE-2017-5589

    Last Modified: 20 Apr 2025

    An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for yaxim and Bruno (0.8.6 - 0.8.8; Android).

    Published: 9 Feb 2017
    5.9
    Medium

    CVE-2017-5591

    Last Modified: 20 Apr 2025

    An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for SleekXMPP up to 1.3.1 and Slixmpp all versions up to 1.2.3, as bundled in poezio (0.8 - 0.10) and other products.

    Published: 9 Feb 2017
    5.9
    Medium

    CVE-2017-5593

    Last Modified: 20 Apr 2025

    An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for Psi+ (0.16.563.580 - 0.16.571.627).

    Published: 9 Feb 2017
    5.9
    Medium

    CVE-2017-5602

    Last Modified: 20 Apr 2025

    An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for jappix 1.0.0 to 1.1.6.

    Published: 9 Feb 2017
    5.9
    Medium

    CVE-2017-5606

    Last Modified: 20 Apr 2025

    An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for Xabber (only if manually enabled: 1.0.30, 1.0.30 VIP, beta 1.0.3 - 1.0.74; Android).

    Published: 9 Feb 2017
    9.8
    Critical

    CVE-2017-5941

    Last Modified: 20 Apr 2025

    An issue was discovered in the node-serialize package 0.0.4 for Node.js. Untrusted data passed into the unserialize() function can be exploited to achieve arbitrary code execution by passing a JavaScript Object with an Immediately Invoked Function Expression (IIFE).

    Published: 9 Feb 2017
    8.8
    High

    CVE-2017-5180

    Last Modified: 20 Apr 2025

    Firejail before 0.9.44.4 and 0.9.38.x LTS before 0.9.38.8 LTS does not consider the .Xauthority case during its attempt to prevent accessing user files with an euid of zero, which allows local users to conduct sandbox-escape attacks via vectors involving a symlink and the --private option.

    Published: 9 Feb 2017
    8.8
    High

    CVE-2017-5940

    Last Modified: 20 Apr 2025

    Firejail before 0.9.44.6 and 0.9.38.x LTS before 0.9.38.10 LTS does not comprehensively address dotfile cases during its attempt to prevent accessing user files with an euid of zero, which allows local users to conduct sandbox-escape attacks via vectors involving a symlink and the --private option. NOTE: this vulnerability exists because of an incomplete fix for CVE-2017-5180.

    Published: 9 Feb 2017
    8.8
    High

    CVE-2017-3807

    Last Modified: 20 Apr 2025

    A vulnerability in Common Internet Filesystem (CIFS) code in the Clientless SSL VPN functionality of Cisco ASA Software, Major Releases 9.0-9.6, could allow an authenticated, remote attacker to cause a heap overflow. The vulnerability is due to insufficient validation of user supplied input. An attacker could exploit this vulnerability by sending a crafted URL to the affected system. An exploit could allow the remote attacker to cause a reload of the affected system or potentially execute code. Note: Only traffic directed to the affected system can be used to exploit this vulnerability. This vulnerability affects systems configured in routed firewall mode only and in single or multiple context mode. This vulnerability can be triggered by IPv4 or IPv6 traffic. A valid TCP connection is needed to perform the attack. The attacker needs to have valid credentials to log in to the Clientless SSL VPN portal. Vulnerable Cisco ASA Software running on the following products may be affected by this vulnerability: Cisco ASA 5500 Series Adaptive Security Appliances, Cisco ASA 5500-X Series Next-Generation Firewalls, Cisco Adaptive Security Virtual Appliance (ASAv), Cisco ASA for Firepower 9300 Series, Cisco ASA for Firepower 4100 Series. Cisco Bug IDs: CSCvc23838.

    Published: 9 Feb 2017
    7.8
    High

    CVE-2017-3813

    Last Modified: 20 Apr 2025

    A vulnerability in the Start Before Logon (SBL) module of Cisco AnyConnect Secure Mobility Client Software for Windows could allow an unauthenticated, local attacker to open Internet Explorer with the privileges of the SYSTEM user. The vulnerability is due to insufficient implementation of the access controls. An attacker could exploit this vulnerability by opening the Internet Explorer browser. An exploit could allow the attacker to use Internet Explorer with the privileges of the SYSTEM user. This may allow the attacker to execute privileged commands on the targeted system. This vulnerability affects versions prior to released versions 4.4.00243 and later and 4.3.05017 and later. Cisco Bug IDs: CSCvc43976.

    Published: 9 Feb 2017
    6.6
    Medium

    CVE-2017-5634

    Last Modified: 20 Apr 2025

    The Norwegian Air Shuttle (aka norwegian.com) airline kiosk allows physically proximate attackers to bypass the intended "Please select booking identification" UI step, and obtain administrative privileges and network access on the underlying Windows OS, by accessing a touch-screen print icon to manipulate the print dialog.

    Published: 9 Feb 2017
    7.5
    High

    CVE-2017-5847

    Last Modified: 17 Mar 2026

    The gst_asf_demux_process_ext_content_desc function in gst/asfdemux/gstasfdemux.c in gst-plugins-ugly in GStreamer allows remote attackers to cause a denial of service (out-of-bounds heap read) via vectors involving extended content descriptors.

    Published: 9 Feb 2017
    6.1
    Medium

    CVE-2015-8831

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in admin/comments.php in Dotclear before 2.8.2 allows remote attackers to inject arbitrary web script or HTML via the author name in a comment.

    Published: 9 Feb 2017
    9.8
    Critical

    CVE-2016-10192

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in ffserver.c in FFmpeg before 2.8.10, 3.0.x before 3.0.5, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 allows remote attackers to execute arbitrary code by leveraging failure to check chunk size.

    Published: 9 Feb 2017
    8.6
    High

    CVE-2016-6171

    Last Modified: 20 Apr 2025

    Knot DNS before 2.3.0 allows remote DNS servers to cause a denial of service (memory exhaustion and slave server crash) via a large zone transfer for (1) DDNS, (2) AXFR, or (3) IXFR.

    Published: 9 Feb 2017
    7.5
    High

    CVE-2016-6173

    Last Modified: 20 Apr 2025

    NSD before 4.1.11 allows remote DNS master servers to cause a denial of service (/tmp disk consumption and slave server crash) via a zone transfer with unlimited data.

    Published: 9 Feb 2017
    8.8
    High

    CVE-2015-8832

    Last Modified: 20 Apr 2025

    Multiple incomplete blacklist vulnerabilities in inc/core/class.dc.core.php in Dotclear before 2.8.2 allow remote authenticated users with "manage their own media items" and "manage their own entries and comments" permissions to execute arbitrary PHP code by uploading a file with a (1) .pht, (2) .phps, or (3) .phtml extension.

    Published: 9 Feb 2017
    5.5
    Medium

    CVE-2017-5846

    Last Modified: 17 Mar 2026

    The gst_asf_demux_process_ext_stream_props function in gst/asfdemux/gstasfdemux.c in gst-plugins-ugly in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (invalid memory read and crash) via vectors related to the number of languages in a video file.

    Published: 9 Feb 2017
    7.3
    High

    CVE-2015-6023

    Last Modified: 20 Apr 2025

    ping.cgi in NetCommWireless HSPA 3G10WVE wireless routers with firmware before 3G10WVE-L101-S306ETS-C01_R05 allows remote attackers to bypass intended access restrictions via a direct request. NOTE: this issue can be combined with CVE-2015-6024 to execute arbitrary commands.

    Published: 9 Feb 2017
    9.8
    Critical

    CVE-2015-6024

    Last Modified: 20 Apr 2025

    ping.cgi in NetCommWireless HSPA 3G10WVE wireless routers with firmware before 3G10WVE-L101-S306ETS-C01_R05 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the DIA_IPADDRESS parameter.

    Published: 9 Feb 2017
    6.1
    Medium

    CVE-2015-8936

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in squidGuard.cgi in squidGuard before 1.5 allows remote attackers to inject arbitrary web script or HTML via a blocked site link.

    Published: 9 Feb 2017
    9.8
    Critical

    CVE-2016-10190

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in libavformat/http.c in FFmpeg before 2.8.10, 3.0.x before 3.0.5, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 allows remote web servers to execute arbitrary code via a negative chunk size in an HTTP response.

    Published: 9 Feb 2017
    9.8
    Critical

    CVE-2016-10191

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in libavformat/rtmppkt.c in FFmpeg before 2.8.10, 3.0.x before 3.0.5, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 allows remote attackers to execute arbitrary code by leveraging failure to check for RTMP packet size mismatches.

    Published: 9 Feb 2017
    7.5
    High

    CVE-2016-4986

    Last Modified: 20 Apr 2025

    Directory traversal vulnerability in the TAP plugin before 1.25 in Jenkins allows remote attackers to read arbitrary files via an unspecified parameter.

    Published: 9 Feb 2017
    6.5
    Medium

    CVE-2016-4987

    Last Modified: 20 Apr 2025

    Directory traversal vulnerability in the Image Gallery plugin before 1.4 in Jenkins allows remote attackers to list arbitrary directories and read arbitrary files via unspecified form fields.

    Published: 9 Feb 2017
    6.1
    Medium

    CVE-2016-4988

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Build Failure Analyzer plugin before 1.16.0 in Jenkins allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter.

    Published: 9 Feb 2017
    9.8
    Critical

    CVE-2016-5726

    Last Modified: 20 Apr 2025

    Packages.php in Simple Machines Forum (SMF) 2.1 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via the themechanges array parameter.

    Published: 9 Feb 2017
    8.8
    High

    CVE-2016-5727

    Last Modified: 20 Apr 2025

    LogInOut.php in Simple Machines Forum (SMF) 2.1 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via vectors related to variables derived from user input in a foreach loop.

    Published: 9 Feb 2017
    7.2
    High

    CVE-2016-8494

    Last Modified: 20 Apr 2025

    Insufficient verification of uploaded files allows attackers with webui administrators privileges to perform arbitrary code execution by uploading a new webui theme.

    Published: 9 Feb 2017
    7.5
    High

    CVE-2016-9244

    Last Modified: 20 Apr 2025

    A BIG-IP virtual server configured with a Client SSL profile that has the non-default Session Tickets option enabled may leak up to 31 bytes of uninitialized memory. A remote attacker may exploit this vulnerability to obtain Secure Sockets Layer (SSL) session IDs from other sessions. It is possible that other data from uninitialized memory may be returned as well.

    Published: 9 Feb 2017
    5.5
    Medium

    CVE-2017-5977

    Last Modified: 10 Jul 2025

    The zzip_mem_entry_extra_block function in memdisk.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted ZIP file.

    Published: 9 Feb 2017
    5.5
    Medium

    CVE-2017-5976

    Last Modified: 10 Jul 2025

    Heap-based buffer overflow in the zzip_mem_entry_extra_block function in memdisk.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.

    Published: 9 Feb 2017
    7.7
    High

    CVE-2017-2635

    Last Modified: 21 Nov 2024

    A NULL pointer deference flaw was found in the way libvirt from 2.5.0 to 3.0.0 handled empty drives. A remote authenticated attacker could use this flaw to crash libvirtd daemon resulting in denial of service.

    Published: 9 Feb 2017
    5.5
    Medium

    CVE-2017-5974

    Last Modified: 10 Jul 2025

    Heap-based buffer overflow in the __zzip_get32 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.

    Published: 9 Feb 2017
    5.5
    Medium

    CVE-2017-5975

    Last Modified: 10 Jul 2025

    Heap-based buffer overflow in the __zzip_get64 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.

    Published: 9 Feb 2017
    5.5
    Medium

    CVE-2017-5978

    Last Modified: 10 Jul 2025

    The zzip_mem_entry_new function in memdisk.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted ZIP file.

    Published: 9 Feb 2017
    5.5
    Medium

    CVE-2017-5979

    Last Modified: 10 Jul 2025

    The prescan_entry function in fseeko.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted ZIP file.

    Published: 9 Feb 2017
    5.5
    Medium

    CVE-2017-5980

    Last Modified: 10 Jul 2025

    The zzip_mem_entry_new function in memdisk.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted ZIP file.

    Published: 9 Feb 2017
    5.5
    Medium

    CVE-2017-5981

    Last Modified: 10 Jul 2025

    seeko.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (assertion failure and crash) via a crafted ZIP file.

    Published: 9 Feb 2017
    5.5
    Medium

    CVE-2017-6499

    Last Modified: 20 Apr 2025

    An issue was discovered in Magick++ in ImageMagick 6.9.7. A specially crafted file creating a nested exception could lead to a memory leak (thus, a DoS).

    Published: 9 Feb 2017
    4.7
    Medium

    CVE-2015-7493

    Last Modified: 20 Apr 2025

    IBM InfoSphere Information Server could allow a local user under special circumstances to execute commands during installation processes that could expose sensitive information.

    Published: 8 Feb 2017