CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2016-2477

    Last Modified: 12 Apr 2025

    mm-video-v4l2/vidc/vdec/src/omx_vdec_msm8974.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles pointers, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27251096.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2478

    Last Modified: 12 Apr 2025

    mm-video-v4l2/vidc/vdec/src/omx_vdec_msm8974.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles pointers, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27475409.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2485

    Last Modified: 12 Apr 2025

    libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 does not validate OMX buffer sizes for the GSM and G711 codecs, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27793367.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2486

    Last Modified: 12 Apr 2025

    mp3dec/SoftMP3.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 does not validate the relationship between allocated memory and the frame size, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27793371.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2493

    Last Modified: 12 Apr 2025

    The Broadcom Wi-Fi driver in Android before 2016-06-01 on Nexus 5, Nexus 6, Nexus 6P, Nexus 7 (2013), Nexus Player, and Pixel C devices allows attackers to gain privileges via a crafted application, aka internal bug 26571522.

    Published: 13 Jun 2016
    8.4
    High

    CVE-2016-2463

    Last Modified: 12 Apr 2025

    Multiple integer overflows in the h264dec component in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file that triggers a large memory allocation, aka internal bug 27855419.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2464

    Last Modified: 12 Apr 2025

    libvpx in libwebm in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted mkv file, aka internal bug 23167726.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2465

    Last Modified: 12 Apr 2025

    The Qualcomm video driver in Android before 2016-06-01 on Nexus 5, 5X, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 27407865.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2466

    Last Modified: 12 Apr 2025

    The Qualcomm sound driver in Android before 2016-06-01 on Nexus 6 devices allows attackers to gain privileges via a crafted application, aka internal bug 27947307.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2467

    Last Modified: 12 Apr 2025

    The Qualcomm sound driver in Android before 2016-06-01 on Nexus 5 devices allows attackers to gain privileges via a crafted application, aka internal bug 28029010.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2468

    Last Modified: 12 Apr 2025

    The Qualcomm GPU driver in Android before 2016-06-01 on Nexus 5, 5X, 6, 6P, and 7 devices allows attackers to gain privileges via a crafted application, aka internal bug 27475454.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2471

    Last Modified: 12 Apr 2025

    The Qualcomm Wi-Fi driver in Android before 2016-06-01 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka internal bug 27773913.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2472

    Last Modified: 12 Apr 2025

    The Qualcomm Wi-Fi driver in Android before 2016-06-01 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka internal bug 27776888.

    Published: 13 Jun 2016
    9.8
    Critical

    CVE-2016-2473

    Last Modified: 12 Apr 2025

    The Qualcomm Wi-Fi driver in Android before 2016-06-01 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka internal bug 27777501.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2474

    Last Modified: 12 Apr 2025

    The Qualcomm Wi-Fi driver in Android before 2016-06-01 on Nexus 5X devices allows attackers to gain privileges via a crafted application, aka internal bug 27424603.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2476

    Last Modified: 12 Apr 2025

    mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 does not validate OMX buffer sizes, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27207275.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2479

    Last Modified: 12 Apr 2025

    The mm-video-v4l2 vdec component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles a buffer count, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27532282.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2480

    Last Modified: 12 Apr 2025

    The mm-video-v4l2 vidc component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 does not validate certain OMX parameter data structures, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27532721.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2481

    Last Modified: 12 Apr 2025

    The mm-video-v4l2 venc component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles a buffer count, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27532497.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2482

    Last Modified: 12 Apr 2025

    The mm-video-v4l2 vdec component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles a buffer count, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27661749.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2483

    Last Modified: 12 Apr 2025

    The mm-video-v4l2 venc component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles a buffer count, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27662502.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2487

    Last Modified: 12 Apr 2025

    libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27833616.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2488

    Last Modified: 12 Apr 2025

    The Qualcomm camera driver in Android before 2016-06-01 on Nexus 5, 5X, 6, 6P, and 7 (2013) devices allows attackers to gain privileges via a crafted application, aka internal bug 27600832.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2489

    Last Modified: 12 Apr 2025

    The Qualcomm video driver in Android before 2016-06-01 on Nexus 5, 5X, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 27407629.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2490

    Last Modified: 12 Apr 2025

    The NVIDIA camera driver in Android before 2016-06-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27533373.

    Published: 13 Jun 2016
    7.8
    High

    CVE-2016-2491

    Last Modified: 12 Apr 2025

    The NVIDIA camera driver in Android before 2016-06-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27556408.

    Published: 13 Jun 2016
    5.5
    Medium

    CVE-2016-2495

    Last Modified: 12 Apr 2025

    SampleTable.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 allows remote attackers to cause a denial of service (device hang or reboot) via a crafted file, aka internal bug 28076789.

    Published: 13 Jun 2016
    9.8
    Critical

    CVE-2016-2496

    Last Modified: 12 Apr 2025

    The Framework UI permission-dialog implementation in Android 6.x before 2016-06-01 allows attackers to conduct tapjacking attacks and access arbitrary private-storage files by creating a partially overlapping window, aka internal bug 26677796.

    Published: 13 Jun 2016
    5.5
    Medium

    CVE-2016-2498

    Last Modified: 12 Apr 2025

    The Qualcomm Wi-Fi driver in Android before 2016-06-01 on Nexus 7 (2013) devices allows attackers to bypass intended data-access restrictions via a crafted application, aka internal bug 27777162.

    Published: 13 Jun 2016
    5.5
    Medium

    CVE-2016-2499

    Last Modified: 12 Apr 2025

    AudioSource.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 does not initialize certain data, which allows attackers to obtain sensitive information via a crafted application, aka internal bug 27855172.

    Published: 13 Jun 2016
    8.8
    High

    CVE-2016-4474

    Last Modified: 12 Apr 2025

    The image build process for the overcloud images in Red Hat OpenStack Platform 8.0 (Liberty) director and Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) director (aka overcloud-full) use a default root password of ROOTPW, which allows attackers to gain access via unspecified vectors.

    Published: 13 Jun 2016
    4.7
    Medium

    CVE-2016-4984

    Last Modified: 20 Apr 2025

    /usr/libexec/openldap/generate-server-cert.sh in openldap-servers sets weak permissions for the TLS certificate, which allows local users to obtain the TLS certificate by leveraging a race condition between the creation of the certificate, and the chmod to protect it.

    Published: 13 Jun 2016
    9.8
    Critical

    CVE-2016-3690

    Last Modified: 20 Apr 2025

    The PooledInvokerServlet in JBoss EAP 4.x and 5.x allows remote attackers to execute arbitrary code via a crafted serialized payload.

    Published: 13 Jun 2016
    2.5
    Low

    CVE-2016-4980

    Last Modified: 21 Nov 2024

    A password generation weakness exists in xquest through 2016-06-13.

    Published: 13 Jun 2016
    4.7
    Medium

    CVE-2016-4982

    Last Modified: 20 Apr 2025

    authd sets weak permissions for /etc/ident.key, which allows local users to obtain the key by leveraging a race condition between the creation of the key, and the chmod to protect it.

    Published: 13 Jun 2016
    3.3
    Low

    CVE-2016-4983

    Last Modified: 21 Nov 2024

    A postinstall script in the dovecot rpm allows local users to read the contents of newly created SSL/TLS key files.

    Published: 13 Jun 2016
    6.1
    Medium

    CVE-2016-5325

    Last Modified: 12 Apr 2025

    CRLF injection vulnerability in the ServerResponse#writeHead function in Node.js 0.10.x before 0.10.47, 0.12.x before 0.12.16, 4.x before 4.6.0, and 6.x before 6.7.0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the reason argument.

    Published: 13 Jun 2016
    6.5
    Medium

    CVE-2016-0772

    Last Modified: 12 Apr 2025

    The smtplib library in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 does not return an error when StartTLS fails, which might allow man-in-the-middle attackers to bypass the TLS protections by leveraging a network position between the client and the registry to block the StartTLS command, aka a "StartTLS stripping attack."

    Published: 11 Jun 2016
    3.7
    Low

    CVE-2016-5233

    Last Modified: 12 Apr 2025

    Huawei Mate 8 smartphones with software NXT-AL10 before NXT-AL10C00B182, NXT-CL00 before NXT-CL00C92B182, NXT-DL00 before NXT-DL00C17B182, and NXT-TL00 before NXT-TL00C01B182 allow remote base stations to obtain sensitive subscriber signal strength information via vectors involving improper security status verification, aka HWPSIRT-2015-12007.

    Published: 10 Jun 2016
    6.5
    Medium

    CVE-2016-3085

    Last Modified: 12 Apr 2025

    Apache CloudStack 4.5.x before 4.5.2.1, 4.6.x before 4.6.2.1, 4.7.x before 4.7.1.1, and 4.8.x before 4.8.0.1, when SAML-based authentication is enabled and used, allow remote attackers to bypass authentication and access the user interface via vectors related to the SAML plugin.

    Published: 10 Jun 2016
    9.8
    Critical

    CVE-2016-2786

    Last Modified: 12 Apr 2025

    The pxp-agent component in Puppet Enterprise 2015.3.x before 2015.3.3 and Puppet Agent 1.3.x before 1.3.6 does not properly validate server certificates, which might allow remote attackers to spoof brokers and execute arbitrary commands via a crafted certificate.

    Published: 10 Jun 2016
    7.5
    High

    CVE-2016-1421

    Last Modified: 12 Apr 2025

    A vulnerability in the web application for Cisco IP Phones could allow an unauthenticated, remote attacker to execute code with root privileges or cause a reload of an affected IP phone, resulting in a denial of service (DoS) condition. The vulnerability exists because the affected software fails to check the bounds of input data. An attacker could exploit this vulnerability by sending a crafted HTTP request to the web server of a targeted device. A successful exploit could allow the attacker to remotely execute code with root privileges or cause a reload of an affected IP phone, resulting in a DoS condition.

    Published: 10 Jun 2016
    2.8
    Low

    CVE-2016-4511

    Last Modified: 12 Apr 2025

    ABB PCM600 before 2.7 uses an improper hash algorithm for the main application password, which makes it easier for local users to obtain sensitive cleartext information by leveraging read access to the ACTConfig configuration file.

    Published: 10 Jun 2016
    7.8
    High

    CVE-2016-1420

    Last Modified: 12 Apr 2025

    The installation component on Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.3(2f) mishandles binary files, which allows local users to obtain root access via unspecified vectors, aka Bug ID CSCuz72347.

    Published: 10 Jun 2016
    7.5
    High

    CVE-2015-8268

    Last Modified: 12 Apr 2025

    The up.time agent in Idera Uptime Infrastructure Monitor 7.5 and 7.6 on Linux allows remote attackers to read arbitrary files via unspecified vectors.

    Published: 10 Jun 2016
    8.8
    High

    CVE-2016-0910

    Last Modified: 12 Apr 2025

    EMC Data Domain OS 5.5 before 5.5.4.0, 5.6 before 5.6.1.004, and 5.7 before 5.7.2.0 stores session identifiers of GUI users in a world-readable file, which allows local users to hijack arbitrary accounts via unspecified vectors.

    Published: 10 Jun 2016
    9.8
    Critical

    CVE-2016-0916

    Last Modified: 12 Apr 2025

    EMC NetWorker 8.2.1.x and 8.2.2.x before 8.2.2.6 and 9.x before 9.0.0.6 mishandles authentication, which allows remote attackers to execute arbitrary commands by leveraging access to a different NetWorker instance.

    Published: 10 Jun 2016
    8.1
    High

    CVE-2016-1419

    Last Modified: 12 Apr 2025

    Cisco Access Point devices with software 8.2(102.43) allow remote attackers to cause a denial of service (device reload) via crafted ARP packets, aka Bug ID CSCuy55803.

    Published: 10 Jun 2016
    9.8
    Critical

    CVE-2016-4328

    Last Modified: 12 Apr 2025

    MEDHOST Perioperative Information Management System (aka PIMS or VPIMS) before 2015R1 has hardcoded credentials, which makes it easier for remote attackers to obtain sensitive information via direct requests to the application database server.

    Published: 10 Jun 2016
    9.8
    Critical

    CVE-2016-4326

    Last Modified: 12 Apr 2025

    The Chef Manage (formerly opscode-manage) add-on before 1.12.0 for Chef allows remote attackers to execute arbitrary code via crafted serialized data in a cookie.

    Published: 10 Jun 2016