CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2016-2432

    Last Modified: 12 Apr 2025

    The Qualcomm TrustZone component in Android before 2016-05-01 on Nexus 6 and Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 25913059.

    Published: 9 May 2016
    7.8
    High

    CVE-2016-2434

    Last Modified: 12 Apr 2025

    The NVIDIA video driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27251090.

    Published: 9 May 2016
    7.8
    High

    CVE-2016-2435

    Last Modified: 12 Apr 2025

    The NVIDIA video driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27297988.

    Published: 9 May 2016
    Unknown

    CVE-2016-2438

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-2547, CVE-2016-2548. Reason: This candidate is a duplicate of CVE-2016-2547 and CVE-2016-2548. Notes: All CVE users should reference CVE-2016-2547 and/or CVE-2016-2548 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 9 May 2016
    8.8
    High

    CVE-2016-2439

    Last Modified: 12 Apr 2025

    Buffer overflow in btif/src/btif_dm.c in Bluetooth in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 allows remote attackers to execute arbitrary code via a long PIN value, aka internal bug 27411268.

    Published: 9 May 2016
    7.8
    High

    CVE-2016-2440

    Last Modified: 12 Apr 2025

    libs/binder/IPCThreadState.cpp in Binder in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 mishandles object references, which allows attackers to gain privileges via a crafted application, aka internal bug 27252896.

    Published: 9 May 2016
    7
    High

    CVE-2016-2441

    Last Modified: 12 Apr 2025

    The Qualcomm buspm driver in Android before 2016-05-01 on Nexus 5X, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 26354602.

    Published: 9 May 2016
    7
    High

    CVE-2016-2442

    Last Modified: 12 Apr 2025

    The Qualcomm buspm driver in Android before 2016-05-01 on Nexus 5X, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 26494907.

    Published: 9 May 2016
    7
    High

    CVE-2016-2443

    Last Modified: 12 Apr 2025

    The Qualcomm MDP driver in Android before 2016-05-01 on Nexus 5 and Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka internal bug 26404525.

    Published: 9 May 2016
    7
    High

    CVE-2016-2446

    Last Modified: 12 Apr 2025

    The NVIDIA media driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27441354.

    Published: 9 May 2016
    Unknown

    CVE-2016-2447

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-4477. Reason: This candidate is a reservation duplicate of CVE-2016-4477. Notes: All CVE users should reference CVE-2016-4477 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 9 May 2016
    7.8
    High

    CVE-2016-2449

    Last Modified: 12 Apr 2025

    services/camera/libcameraservice/device3/Camera3Device.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate template IDs, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27568958.

    Published: 9 May 2016
    7.8
    High

    CVE-2016-2451

    Last Modified: 12 Apr 2025

    codecs/on2/dec/SoftVPX.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate VPX output buffer sizes, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27597103.

    Published: 9 May 2016
    5.5
    Medium

    CVE-2016-2454

    Last Modified: 12 Apr 2025

    The Qualcomm hardware video codec in Android before 2016-05-01 on Nexus 5 devices allows remote attackers to cause a denial of service (reboot) via a crafted file, aka internal bug 26221024.

    Published: 9 May 2016
    5.5
    Medium

    CVE-2016-2457

    Last Modified: 12 Apr 2025

    server/pm/UserManagerService.java in Wi-Fi in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 allows attackers to bypass intended restrictions on Wi-Fi configuration changes by leveraging guest access, aka internal bug 27411179.

    Published: 9 May 2016
    5.5
    Medium

    CVE-2016-2458

    Last Modified: 12 Apr 2025

    The compose functionality in AOSP Mail in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not properly restrict attachments, which allows attackers to obtain sensitive information via a crafted application, related to ComposeActivity.java and ComposeActivityEmail.java, aka internal bug 27335139.

    Published: 9 May 2016
    9.8
    Critical

    CVE-2016-2099

    Last Modified: 12 Apr 2025

    Use-after-free vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 3.1.3 and earlier allows context-dependent attackers to have unspecified impact via an invalid character in an XML document.

    Published: 9 May 2016
    5.5
    Medium

    CVE-2016-3712

    Last Modified: 12 Apr 2025

    Integer overflow in the VGA module in QEMU allows local guest OS users to cause a denial of service (out-of-bounds read and QEMU process crash) by editing VGA registers in VBE mode.

    Published: 9 May 2016
    8.8
    High

    CVE-2016-3710

    Last Modified: 12 Apr 2025

    The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS administrators to execute arbitrary code on the host by changing access modes after setting the bank register, aka the "Dark Portal" issue.

    Published: 9 May 2016
    7.8
    High

    CVE-2016-10059

    Last Modified: 20 Apr 2025

    Buffer overflow in coders/tiff.c in ImageMagick before 6.9.4-1 allows remote attackers to cause a denial of service (application crash) or have unspecified other impact via a crafted TIFF file.

    Published: 8 May 2016
    7.5
    High

    CVE-2016-4580

    Last Modified: 12 Apr 2025

    The x25_negotiate_facilities function in net/x25/x25_facilities.c in the Linux kernel before 4.5.5 does not properly initialize a certain data structure, which allows attackers to obtain sensitive information from kernel stack memory via an X.25 Call Request.

    Published: 8 May 2016
    9.8
    Critical

    CVE-2016-5239

    Last Modified: 20 Apr 2025

    The gnuplot delegate functionality in ImageMagick before 6.9.4-0 and GraphicsMagick allows remote attackers to execute arbitrary commands via unspecified vectors.

    Published: 8 May 2016
    6.5
    Medium

    CVE-2016-6161

    Last Modified: 12 Apr 2025

    The output function in gd_gif_out.c in the GD Graphics Library (aka libgd) allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted image.

    Published: 8 May 2016
    5.5
    Medium

    CVE-2016-4569

    Last Modified: 12 Apr 2025

    The snd_timer_user_params function in sound/core/timer.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via crafted use of the ALSA timer interface.

    Published: 8 May 2016
    5.9
    Medium

    CVE-2015-6551

    Last Modified: 12 Apr 2025

    Veritas NetBackup 7.x through 7.5.0.7 and 7.6.0.x through 7.6.0.4 and NetBackup Appliance through 2.5.4 and 2.6.0.x through 2.6.0.4 do not use TLS for administration-console traffic to the NBU server, which allows remote attackers to obtain sensitive information by sniffing the network for key-exchange packets.

    Published: 7 May 2016
    6.1
    Medium

    CVE-2016-2350

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities on the Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allow remote attackers to inject arbitrary web script or HTML via unspecified input to (1) getimageajax.php, (2) move_partition_frame.html, or (3) wmInfo.html.

    Published: 7 May 2016
    9.8
    Critical

    CVE-2015-6552

    Last Modified: 12 Apr 2025

    The management-services protocol implementation in Veritas NetBackup 7.x through 7.5.0.7, 7.6.0.x through 7.6.0.4, 7.6.1.x through 7.6.1.2, and 7.7.x before 7.7.2 and NetBackup Appliance through 2.5.4, 2.6.0.x through 2.6.0.4, 2.6.1.x through 2.6.1.2, and 2.7.x before 2.7.2 allows remote attackers to make arbitrary RPC calls via unspecified vectors.

    Published: 7 May 2016
    9.8
    Critical

    CVE-2015-6550

    Last Modified: 12 Apr 2025

    bpcd in Veritas NetBackup 7.x through 7.5.0.7, 7.6.0.x through 7.6.0.4, 7.6.1.x through 7.6.1.2, and 7.7.x before 7.7.2 and NetBackup Appliance through 2.5.4, 2.6.0.x through 2.6.0.4, 2.6.1.x through 2.6.1.2, and 2.7.x before 2.7.2 allows remote attackers to execute arbitrary commands via crafted input.

    Published: 7 May 2016
    9.8
    Critical

    CVE-2016-2351

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in home/seos/courier/security_key2.api on the Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows remote attackers to execute arbitrary SQL commands via the client_id parameter.

    Published: 7 May 2016
    8.8
    High

    CVE-2016-2352

    Last Modified: 12 Apr 2025

    The Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows remote authenticated users to execute arbitrary commands by leveraging the YUM_CLIENT restricted-user role.

    Published: 7 May 2016
    7.8
    High

    CVE-2016-2353

    Last Modified: 12 Apr 2025

    The Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows local users to add an SSH key to an arbitrary group, and consequently gain privileges, via unspecified vectors.

    Published: 7 May 2016
    6.5
    Medium

    CVE-2016-2012

    Last Modified: 12 Apr 2025

    HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote attackers to bypass authentication via unspecified vectors.

    Published: 7 May 2016
    5.4
    Medium

    CVE-2016-2011

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2016-2010.

    Published: 7 May 2016
    6.1
    Medium

    CVE-2016-0900

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in EMC RSA Authentication Manager before 8.1 SP1 P14 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2016-0901.

    Published: 7 May 2016
    6.1
    Medium

    CVE-2016-0901

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in EMC RSA Authentication Manager before 8.1 SP1 P14 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2016-0900.

    Published: 7 May 2016
    5.3
    Medium

    CVE-2016-0902

    Last Modified: 12 Apr 2025

    CRLF injection vulnerability in EMC RSA Authentication Manager before 8.1 SP1 P14 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.

    Published: 7 May 2016
    8.8
    High

    CVE-2016-2009

    Last Modified: 12 Apr 2025

    HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections (ACC) library.

    Published: 7 May 2016
    5.4
    Medium

    CVE-2016-2010

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2016-2011.

    Published: 7 May 2016
    6.5
    Medium

    CVE-2016-2013

    Last Modified: 12 Apr 2025

    HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to obtain sensitive information via unspecified vectors.

    Published: 7 May 2016
    8.1
    High

    CVE-2016-2014

    Last Modified: 12 Apr 2025

    HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to modify data or cause a denial of service via unspecified vectors.

    Published: 7 May 2016
    7.8
    High

    CVE-2016-4565

    Last Modified: 12 Apr 2025

    The InfiniBand (aka IB) stack in the Linux kernel before 4.5.3 incorrectly relies on the write system call, which allows local users to cause a denial of service (kernel memory write operation) or possibly have unspecified other impact via a uAPI interface.

    Published: 7 May 2016
    7.8
    High

    CVE-2016-4568

    Last Modified: 12 Apr 2025

    drivers/media/v4l2-core/videobuf2-v4l2.c in the Linux kernel before 4.5.3 allows local users to cause a denial of service (kernel memory write operation) or possibly have unspecified other impact via a crafted number of planes in a VIDIOC_DQBUF ioctl call.

    Published: 7 May 2016
    9.8
    Critical

    CVE-2015-0857

    Last Modified: 12 Apr 2025

    Cool Projects TarDiff allows remote attackers to execute arbitrary commands via shell metacharacters in the name of a (1) tar file or (2) file within a tar file.

    Published: 6 May 2016
    3.3
    Low

    CVE-2015-0858

    Last Modified: 12 Apr 2025

    Cool Projects TarDiff allows local users to write to arbitrary files via a symlink attack on a pathname in a /tmp/tardiff-$$ temporary directory.

    Published: 6 May 2016
    9.8
    Critical

    CVE-2016-4422

    Last Modified: 12 Apr 2025

    The pam_sm_authenticate function in pam_sshauth.c in libpam-sshauth might allow context-dependent attackers to bypass authentication or gain privileges via a system user account.

    Published: 6 May 2016
    8.6
    High

    CVE-2016-4553

    Last Modified: 12 Apr 2025

    client_side.cc in Squid before 3.5.18 and 4.x before 4.0.10 does not properly ignore the Host header when absolute-URI is provided, which allows remote attackers to conduct cache-poisoning attacks via an HTTP request.

    Published: 6 May 2016
    8.6
    High

    CVE-2016-4554

    Last Modified: 12 Apr 2025

    mime_header.cc in Squid before 3.5.18 allows remote attackers to bypass intended same-origin restrictions and possibly conduct cache-poisoning attacks via a crafted HTTP Host header, aka a "header smuggling" issue.

    Published: 6 May 2016
    9.8
    Critical

    CVE-2016-3737

    Last Modified: 12 Apr 2025

    The server in Red Hat JBoss Operations Network (JON) before 3.3.6 allows remote attackers to execute arbitrary code via a crafted HTTP request, related to message deserialization.

    Published: 6 May 2016
    7.5
    High

    CVE-2016-4555

    Last Modified: 12 Apr 2025

    client_side_request.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (crash) via crafted Edge Side Includes (ESI) responses.

    Published: 6 May 2016
    7.5
    High

    CVE-2016-4556

    Last Modified: 12 Apr 2025

    Double free vulnerability in Esi.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (crash) via a crafted Edge Side Includes (ESI) response.

    Published: 6 May 2016