CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2017-2936

    Last Modified: 20 Apr 2025

    Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable use after free vulnerability in the ActionScript FileReference class. Successful exploitation could lead to arbitrary code execution.

    Published: 10 Jan 2017
    7.5
    High

    CVE-2017-5335

    Last Modified: 20 Apr 2025

    The stream reading functions in lib/opencdk/read-packet.c in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to cause a denial of service (out-of-memory error and crash) via a crafted OpenPGP certificate.

    Published: 10 Jan 2017
    5.5
    Medium

    CVE-2016-7056

    Last Modified: 21 Nov 2024

    A timing attack flaw was found in OpenSSL 1.0.1u and before that could allow a malicious user with local access to recover ECDSA P-256 private keys.

    Published: 10 Jan 2017
    8.8
    High

    CVE-2017-2930

    Last Modified: 20 Apr 2025

    Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable memory corruption vulnerability due to a concurrency error when manipulating a display list. Successful exploitation could lead to arbitrary code execution.

    Published: 10 Jan 2017
    8.8
    High

    CVE-2017-2927

    Last Modified: 20 Apr 2025

    Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable heap overflow vulnerability when processing Adobe Texture Format files. Successful exploitation could lead to arbitrary code execution.

    Published: 10 Jan 2017
    8.8
    High

    CVE-2017-2928

    Last Modified: 20 Apr 2025

    Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable memory corruption vulnerability related to setting visual mode effects. Successful exploitation could lead to arbitrary code execution.

    Published: 10 Jan 2017
    8.8
    High

    CVE-2017-2933

    Last Modified: 20 Apr 2025

    Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable heap overflow vulnerability related to texture compression. Successful exploitation could lead to arbitrary code execution.

    Published: 10 Jan 2017
    8.8
    High

    CVE-2017-2934

    Last Modified: 20 Apr 2025

    Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable heap overflow vulnerability when parsing Adobe Texture Format files. Successful exploitation could lead to arbitrary code execution.

    Published: 10 Jan 2017
    8.8
    High

    CVE-2017-2935

    Last Modified: 20 Apr 2025

    Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable heap overflow vulnerability when processing the Flash Video container file format. Successful exploitation could lead to arbitrary code execution.

    Published: 10 Jan 2017
    6.5
    Medium

    CVE-2017-2938

    Last Modified: 20 Apr 2025

    Adobe Flash Player versions 24.0.0.186 and earlier have a security bypass vulnerability related to handling TCP connections.

    Published: 10 Jan 2017
    7.8
    High

    CVE-2017-5330

    Last Modified: 20 Apr 2025

    ark before 16.12.1 might allow remote attackers to execute arbitrary code via an executable in an archive, related to associated applications.

    Published: 10 Jan 2017
    9.8
    Critical

    CVE-2017-5334

    Last Modified: 20 Apr 2025

    Double free vulnerability in the gnutls_x509_ext_import_proxy function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via crafted policy language information in an X.509 certificate with a Proxy Certificate Information extension.

    Published: 10 Jan 2017
    9.8
    Critical

    CVE-2017-5336

    Last Modified: 20 Apr 2025

    Stack-based buffer overflow in the cdk_pk_get_keyid function in lib/opencdk/pubkey.c in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via a crafted OpenPGP certificate.

    Published: 10 Jan 2017
    9.8
    Critical

    CVE-2017-5337

    Last Modified: 20 Apr 2025

    Multiple heap-based buffer overflows in the read_attribute function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to have unspecified impact via a crafted OpenPGP certificate.

    Published: 10 Jan 2017
    7.8
    High

    CVE-2017-5509

    Last Modified: 20 Apr 2025

    coders/psd.c in ImageMagick allows remote attackers to have unspecified impact via a crafted PSD file, which triggers an out-of-bounds write.

    Published: 10 Jan 2017
    5.5
    Medium

    CVE-2017-5549

    Last Modified: 20 Apr 2025

    The klsi_105_get_line_state function in drivers/usb/serial/kl5kusb105.c in the Linux kernel before 4.9.5 places uninitialized heap-memory contents into a log entry upon a failure to read the line status, which allows local users to obtain sensitive information by reading the log.

    Published: 10 Jan 2017
    8.8
    High

    CVE-2017-5931

    Last Modified: 20 Apr 2025

    Integer overflow in hw/virtio/virtio-crypto.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (QEMU process crash) or possibly execute arbitrary code on the host via a crafted virtio-crypto request, which triggers a heap-based buffer overflow.

    Published: 10 Jan 2017
    9.8
    Critical

    CVE-2017-7870

    Last Modified: 20 Apr 2025

    LibreOffice before 2017-01-02 has an out-of-bounds write caused by a heap-based buffer overflow related to the tools::Polygon::Insert function in tools/source/generic/poly.cxx.

    Published: 10 Jan 2017
    8.8
    High

    CVE-2017-2926

    Last Modified: 20 Apr 2025

    Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable memory corruption vulnerability related to processing of atoms in MP4 files. Successful exploitation could lead to arbitrary code execution.

    Published: 10 Jan 2017
    8.8
    High

    CVE-2017-2931

    Last Modified: 20 Apr 2025

    Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable memory corruption vulnerability related to the parsing of SWF metadata. Successful exploitation could lead to arbitrary code execution.

    Published: 10 Jan 2017
    8.8
    High

    CVE-2017-2932

    Last Modified: 20 Apr 2025

    Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable use after free vulnerability in the ActionScript MovieClip class. Successful exploitation could lead to arbitrary code execution.

    Published: 10 Jan 2017
    8.8
    High

    CVE-2017-2937

    Last Modified: 20 Apr 2025

    Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable use after free vulnerability in the ActionScript FileReference class, when using class inheritance. Successful exploitation could lead to arbitrary code execution.

    Published: 10 Jan 2017
    8.1
    High

    CVE-2016-10125

    Last Modified: 20 Apr 2025

    D-Link DGS-1100 devices with Rev.B firmware 1.01.018 have a hardcoded SSL private key, which allows man-in-the-middle attackers to spoof devices by hijacking an HTTPS session.

    Published: 9 Jan 2017
    8.6
    High

    CVE-2016-10124

    Last Modified: 20 Apr 2025

    An issue was discovered in Linux Containers (LXC) before 2016-02-22. When executing a program via lxc-attach, the nonpriv session can escape to the parent session by using the TIOCSTI ioctl to push characters into the terminal's input buffer, allowing an attacker to escape the container.

    Published: 9 Jan 2017
    5.5
    Medium

    CVE-2017-5216

    Last Modified: 20 Apr 2025

    Stack-based buffer overflow vulnerability in Netop Remote Control versions 11.53, 12.21 and prior. The affected module in the Guest client is the "Import to Phonebook" option. When a specially designed malicious file containing special characters is loaded, the overflow occurs. 12.51 is the fixed version. The Support case ref is 00109744.

    Published: 9 Jan 2017
    5.5
    Medium

    CVE-2017-5217

    Last Modified: 20 Apr 2025

    Installing a zero-permission Android application on certain Samsung Android devices with KK(4.4), L(5.0/5.1), and M(6.0) software can continually crash the system_server process in the Android OS. The zero-permission app will create an active install session for a separate app that it has embedded within it. The active install session of the embedded app is performed using the android.content.pm.PackageInstaller class and its nested classes in the Android API. The active install session will write the embedded APK file to the /data/app directory, but the app will not be installed since third-party applications cannot programmatically install apps. Samsung has modified AOSP in order to accelerate the parsing of APKs by introducing the com.android.server.pm.PackagePrefetcher class and its nested classes. These classes will parse the APKs present in the /data/app directory and other directories, even if the app is not actually installed. The embedded APK that was written to the /data/app directory via the active install session has a very large but valid AndroidManifest.xml file. Specifically, the AndroidManifest.xml file contains a very large string value for the name of a permission-tree that it declares. When system_server tries to parse the APK file of the embedded app from the active install session, it will crash due to an uncaught error (i.e., java.lang.OutOfMemoryError) or an uncaught exception (i.e., std::bad_alloc) because of memory constraints. The Samsung Android device will encounter a soft reboot due to a system_server crash, and this action will keep repeating since parsing the APKs in the /data/app directory as performed by the system_server process is part of the normal boot process. The Samsung ID is SVE-2016-6917.

    Published: 9 Jan 2017
    5.9
    Medium

    CVE-2016-8106

    Last Modified: 20 Apr 2025

    A Denial of Service in Intel Ethernet Controller's X710/XL710 with Non-Volatile Memory Images before version 5.05 allows a remote attacker to stop the controller from processing network traffic working under certain network use conditions.

    Published: 9 Jan 2017
    4.4
    Medium

    CVE-2017-5551

    Last Modified: 20 Apr 2025

    The simple_set_acl function in fs/posix_acl.c in the Linux kernel before 4.9.6 preserves the setgid bit during a setxattr call involving a tmpfs filesystem, which allows local users to gain group privileges by leveraging the existence of a setgid program with restrictions on execute permissions. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-7097.

    Published: 9 Jan 2017
    8.1
    High

    CVE-2016-9587

    Last Modified: 21 Nov 2024

    Ansible before versions 2.1.4, 2.2.1 is vulnerable to an improper input validation in Ansible's handling of data sent from client systems. An attacker with control over a client system being managed by Ansible and the ability to send facts back to the Ansible server could use this flaw to execute arbitrary code on the Ansible server using the Ansible server privileges.

    Published: 9 Jan 2017
    8.8
    High

    CVE-2017-5208

    Last Modified: 20 Apr 2025

    Integer overflow in the wrestool program in icoutils before 0.31.1 allows remote attackers to cause a denial of service (memory corruption) via a crafted executable, which triggers a denial of service (application crash) or the possibility of execution of arbitrary code.

    Published: 8 Jan 2017
    7.8
    High

    CVE-2017-5332

    Last Modified: 21 Nov 2024

    The extract_group_icon_cursor_resource in wrestool/extract.c in icoutils before 0.31.1 can access unallocated memory, which allows local users to cause a denial of service (process crash) and execute arbitrary code via a crafted executable.

    Published: 8 Jan 2017
    7.8
    High

    CVE-2017-5331

    Last Modified: 21 Nov 2024

    Integer overflow in the check_offset function in b/wrestool/fileread.c in icoutils before 0.31.1 allows local users to cause a denial of service (process crash) and execute arbitrary code via a crafted executable.

    Published: 8 Jan 2017
    7.8
    High

    CVE-2017-5333

    Last Modified: 21 Nov 2024

    Integer overflow in the extract_group_icon_cursor_resource function in b/wrestool/extract.c in icoutils before 0.31.1 allows local users to cause a denial of service (process crash) or execute arbitrary code via a crafted executable file.

    Published: 8 Jan 2017
    9.8
    Critical

    CVE-2017-5511

    Last Modified: 20 Apr 2025

    coders/psd.c in ImageMagick allows remote attackers to have unspecified impact by leveraging an improper cast, which triggers a heap-based buffer overflow.

    Published: 7 Jan 2017
    7.8
    High

    CVE-2017-5510

    Last Modified: 20 Apr 2025

    coders/psd.c in ImageMagick allows remote attackers to have unspecified impact via a crafted PSD file, which triggers an out-of-bounds write.

    Published: 7 Jan 2017
    5.5
    Medium

    CVE-2016-9869

    Last Modified: 20 Apr 2025

    An issue was discovered in EMC ScaleIO versions before 2.0.1.1. Incorrect permissions on the SCINI driver may allow a low-privileged local attacker to modify the configuration and render the ScaleIO Data Client (SDC) server unavailable.

    Published: 6 Jan 2017
    9.8
    Critical

    CVE-2016-9885

    Last Modified: 20 Apr 2025

    An issue was discovered in Pivotal GemFire for PCF 1.6.x versions prior to 1.6.5 and 1.7.x versions prior to 1.7.1. The gfsh (Geode Shell) endpoint, used by operators and application developers to connect to their cluster, is unauthenticated and publicly accessible. Because HTTPS communications are terminated at the gorouter, communications from the gorouter to GemFire clusters are unencrypted. An attacker could run any command available on gfsh and could cause denial of service, lost confidentiality of data, escalate privileges, or eavesdrop on other communications between the gorouter and the cluster.

    Published: 6 Jan 2017
    5.5
    Medium

    CVE-2016-9868

    Last Modified: 20 Apr 2025

    An issue was discovered in EMC ScaleIO versions before 2.0.1.1. A low-privileged local attacker may cause a denial-of-service by generating a kernel panic in the SCINI driver using IOCTL calls which may render the ScaleIO Data Client (SDC) server unavailable until the next reboot.

    Published: 6 Jan 2017
    8.8
    High

    CVE-2016-9867

    Last Modified: 20 Apr 2025

    An issue was discovered in EMC ScaleIO versions before 2.0.1.1. A low-privileged local attacker may be able to modify the kernel memory in the SCINI driver and may achieve code execution to escalate privileges to root on ScaleIO Data Client (SDC) servers.

    Published: 6 Jan 2017
    9.8
    Critical

    CVE-2015-2868

    Last Modified: 20 Apr 2025

    An exploitable remote code execution vulnerability exists in the Trane ComfortLink II firmware version 2.0.2 in DSS service. An attacker who can connect to the DSS service on the Trane ComfortLink II device can send an overly long REG request that can overflow a fixed size stack buffer, resulting in arbitrary code execution.

    Published: 6 Jan 2017
    Unknown

    CVE-2016-1515

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2015-8789. Reason: This candidate is a reservation duplicate of CVE-2015-8789. Notes: All CVE users should reference CVE-2015-8789 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 6 Jan 2017
    8.4
    High

    CVE-2016-4288

    Last Modified: 20 Apr 2025

    A local privilege escalation vulnerability exists in BlueStacks App Player. The BlueStacks App Player installer creates a registry key with weak permissions that allows users to execute arbitrary programs with SYSTEM privileges.

    Published: 6 Jan 2017
    7.8
    High

    CVE-2016-4292

    Last Modified: 20 Apr 2025

    When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a static size to allocate a heap buffer yet explicitly trust a size from the file when modifying data inside of it. Due to this, an aggressor can corrupt memory outside the bounds of this buffer which can lead to code execution under the context of the application.

    Published: 6 Jan 2017
    7.8
    High

    CVE-2016-4295

    Last Modified: 20 Apr 2025

    When opening a Hangul Hcell Document (.cell) and processing a particular record within the Workbook stream, an index miscalculation leading to a heap overlow can be made to occur in Hancom Office 2014. The vulnerability occurs when processing data for a formula used to render a chart via the HncChartPlugin.hplg library. Due to a lack of bounds-checking when incrementing an index that is used for writing into a buffer for formulae, the application can be made to write pointer data outside its bounds which can lead to code execution under the context of the application.

    Published: 6 Jan 2017
    9.8
    Critical

    CVE-2015-2867

    Last Modified: 20 Apr 2025

    A design flaw in the Trane ComfortLink II SCC firmware version 2.0.2 service allows remote attackers to take complete control of the system.

    Published: 6 Jan 2017
    Unknown

    CVE-2016-1514

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2015-8790. Reason: This candidate is a reservation duplicate of CVE-2015-8790. Notes: All CVE users should reference CVE-2015-8790 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 6 Jan 2017
    5.5
    Medium

    CVE-2016-4329

    Last Modified: 20 Apr 2025

    A local denial of service vulnerability exists in window broadcast message handling functionality of Kaspersky Anti-Virus software. Sending certain unhandled window messages, an attacker can cause application termination and in the same way bypass KAV self-protection mechanism.

    Published: 6 Jan 2017
    7.8
    High

    CVE-2016-4294

    Last Modified: 20 Apr 2025

    When opening a Hangul Hcell Document (.cell) and processing a property record within the Workbook stream, Hancom Office 2014 will attempt to allocate space for an element using a length from the file. When copying user-supplied data to this buffer, however, the application will use a different size which leads to a heap-based buffer overflow. This vulnerability can lead to code-execution under the context of the application.

    Published: 6 Jan 2017
    7.8
    High

    CVE-2016-4290

    Last Modified: 20 Apr 2025

    When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will attempt to allocate space for a block of data within the file. When calculating this length, the application will use a value from the file and add a constant to it without checking whether the addition of the constant will cause the integer to overflow which will cause the buffer to be undersized when the application tries to copy file data into it. This allows one to overwrite contiguous data in the heap which can lead to code-execution under the context of the application.

    Published: 6 Jan 2017
    5.5
    Medium

    CVE-2016-4305

    Last Modified: 20 Apr 2025

    A denial of service vulnerability exists in the syscall filtering functionality of Kaspersky Internet Security KLIF driver. A specially crafted native api call can cause a access violation in KLIF kernel driver resulting in local denial of service. An attacker can run program from user-mode to trigger this vulnerability.

    Published: 6 Jan 2017