CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2016-5037

    Last Modified: 20 Apr 2025

    The _dwarf_load_section function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.

    Published: 6 May 2016
    7.5
    High

    CVE-2016-5039

    Last Modified: 20 Apr 2025

    The get_attr_value function in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted object with all-bits on.

    Published: 6 May 2016
    5.5
    Medium

    CVE-2016-4796

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in the color_cmyk_to_rgb in common/color.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of service (crash) via a crafted .j2k file.

    Published: 6 May 2016
    7
    High

    CVE-2016-2059

    Last Modified: 12 Apr 2025

    The msm_ipc_router_bind_control_port function in net/ipc_router/ipc_router_core.c in the IPC router kernel module for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not verify that a port is a client port, which allows attackers to gain privileges or cause a denial of service (race condition and list corruption) by making many BIND_CONTROL_PORT ioctl calls.

    Published: 5 May 2016
    7.5
    High

    CVE-2016-1369

    Last Modified: 12 Apr 2025

    The Adaptive Security Appliance (ASA) 5585-X FirePOWER Security Services Processor (SSP) module for Cisco ASA with FirePOWER Services 5.3.1 through 6.0.0 misconfigures kernel logging, which allows remote attackers to cause a denial of service (resource consumption, and inspection outage or module outage) via a flood of crafted IP traffic, aka Bug ID CSCux19922.

    Published: 5 May 2016
    8.6
    High

    CVE-2016-1373

    Last Modified: 12 Apr 2025

    The gadgets-integration API in Cisco Finesse 8.5(1) through 8.5(5), 8.6(1), 9.0(1), 9.0(2), 9.1(1), 9.1(1)SU1, 9.1(1)SU1.1, 9.1(1)ES1 through 9.1(1)ES5, 10.0(1), 10.0(1)SU1, 10.0(1)SU1.1, 10.5(1), 10.5(1)ES1 through 10.5(1)ES4, 10.5(1)SU1, 10.5(1)SU1.1, 10.5(1)SU1.7, 10.6(1), 10.6(1)SU1, 10.6(1)SU2, and 11.0(1) allows remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted request, aka Bug ID CSCuw86623.

    Published: 5 May 2016
    9.8
    Critical

    CVE-2016-1387

    Last Modified: 12 Apr 2025

    The XML API in TelePresence Codec (TC) 7.2.0, 7.2.1, 7.3.0, 7.3.1, 7.3.2, 7.3.3, 7.3.4, and 7.3.5 and Collaboration Endpoint (CE) 8.0.0, 8.0.1, and 8.1.0 in Cisco TelePresence Software mishandles authentication, which allows remote attackers to execute control commands or make configuration changes via an API request, aka Bug ID CSCuz26935.

    Published: 5 May 2016
    7.5
    High

    CVE-2016-1368

    Last Modified: 12 Apr 2025

    Cisco FirePOWER System Software 5.3.x through 5.3.0.6 and 5.4.x through 5.4.0.3 on FirePOWER 7000 and 8000 appliances, and on the Advanced Malware Protection (AMP) for Networks component on these appliances, allows remote attackers to cause a denial of service (packet-processing outage) via crafted packets, aka Bug ID CSCuu86214.

    Published: 5 May 2016
    7.4
    High

    CVE-2016-1392

    Last Modified: 12 Apr 2025

    Open redirect vulnerability in Cisco Prime Collaboration Assurance Software 10.5 through 11.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors, aka Bug ID CSCuu34121.

    Published: 5 May 2016
    7.8
    High

    CVE-2016-2062

    Last Modified: 12 Apr 2025

    The adreno_perfcounter_query_group function in drivers/gpu/msm/adreno_perfcounter.c in the Adreno GPU driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, uses an incorrect integer data type, which allows attackers to cause a denial of service (integer overflow, heap-based buffer overflow, and incorrect memory allocation) or possibly have unspecified other impact via a crafted IOCTL_KGSL_PERFCOUNTER_QUERY ioctl call.

    Published: 5 May 2016
    9.8
    Critical

    CVE-2016-4351

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in the authentication functionality in Trend Micro Email Encryption Gateway (TMEEG) 5.5 before build 1107 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 5 May 2016
    3
    Low

    CVE-2016-4534

    Last Modified: 12 Apr 2025

    The McAfee VirusScan Console (mcconsol.exe) in McAfee VirusScan Enterprise 8.8.0 before Hotfix 1123565 (8.8.0.1546) on Windows allows local administrators to bypass intended self-protection rules and unlock the console window by closing registry handles.

    Published: 5 May 2016
    7.5
    High

    CVE-2016-4535

    Last Modified: 12 Apr 2025

    Integer signedness error in the AV engine before DAT 8145, as used in McAfee LiveSafe 14.0, allows remote attackers to cause a denial of service (memory corruption and crash) via a crafted packed executable.

    Published: 5 May 2016
    9.8
    Critical

    CVE-2016-2177

    Last Modified: 12 Apr 2025

    OpenSSL through 1.0.2h incorrectly uses pointer arithmetic for heap-buffer boundary checks, which might allow remote attackers to cause a denial of service (integer overflow and application crash) or possibly have unspecified other impact by leveraging unexpected malloc behavior, related to s3_srvr.c, ssl_sess.c, and t1_lib.c.

    Published: 5 May 2016
    8.8
    High

    CVE-2016-3728

    Last Modified: 12 Apr 2025

    Eval injection vulnerability in tftp_api.rb in the TFTP module in the Smart-Proxy in Foreman before 1.10.4 and 1.11.x before 1.11.2 allows remote attackers to execute arbitrary code via the PXE template type portion of the PATH_INFO to tftp/.

    Published: 5 May 2016
    5.5
    Medium

    CVE-2016-4581

    Last Modified: 12 Apr 2025

    fs/pnode.c in the Linux kernel before 4.5.4 does not properly traverse a mount propagation tree in a certain case involving a slave mount, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a crafted series of mount system calls.

    Published: 5 May 2016
    7.8
    High

    CVE-2016-4913

    Last Modified: 12 Apr 2025

    The get_rock_ridge_filename function in fs/isofs/rock.c in the Linux kernel before 4.5.5 mishandles NM (aka alternate name) entries containing \0 characters, which allows local users to obtain sensitive information from kernel memory or possibly have unspecified other impact via a crafted isofs filesystem.

    Published: 5 May 2016
    7.5
    High

    CVE-2016-5040

    Last Modified: 20 Apr 2025

    libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a large length value in a compilation unit header.

    Published: 4 May 2016
    9.8
    Critical

    CVE-2013-7455

    Last Modified: 12 Apr 2025

    Double free vulnerability in the DefaultICCintents function in cmscnvrt.c in liblcms2 in Little CMS 2.x before 2.6 allows remote attackers to execute arbitrary code via a malformed ICC profile that triggers an error in the default intent handler.

    Published: 4 May 2016
    7.5
    High

    CVE-2016-4485

    Last Modified: 12 Apr 2025

    The llc_cmsg_rcv function in net/llc/af_llc.c in the Linux kernel before 4.5.5 does not initialize a certain data structure, which allows attackers to obtain sensitive information from kernel stack memory by reading a message.

    Published: 4 May 2016
    7.5
    High

    CVE-2016-5041

    Last Modified: 20 Apr 2025

    dwarf_macro5.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a debugging information entry using DWARF5 and without a DW_AT_name.

    Published: 4 May 2016
    7.5
    High

    CVE-2016-5042

    Last Modified: 20 Apr 2025

    The dwarf_get_aranges_list function in libdwarf before 20160923 allows remote attackers to cause a denial of service (infinite loop and crash) via a crafted DWARF section.

    Published: 4 May 2016
    7.5
    High

    CVE-2016-5043

    Last Modified: 20 Apr 2025

    The dwarf_dealloc function in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted DWARF section.

    Published: 4 May 2016
    7.5
    High

    CVE-2016-5044

    Last Modified: 20 Apr 2025

    The WRITE_UNALIGNED function in dwarf_elf_access.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via a crafted DWARF section.

    Published: 4 May 2016
    9.8
    Critical

    CVE-2016-3720

    Last Modified: 12 Apr 2025

    XML external entity (XXE) vulnerability in XmlMapper in the Data format extension for Jackson (aka jackson-dataformat-xml) allows attackers to have unspecified impact via unknown vectors.

    Published: 4 May 2016
    3.3
    Low

    CVE-2016-4486

    Last Modified: 12 Apr 2025

    The rtnl_fill_link_ifmap function in net/core/rtnetlink.c in the Linux kernel before 4.5.5 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory by reading a Netlink message.

    Published: 4 May 2016
    4.3
    Medium

    CVE-2016-0895

    Last Modified: 12 Apr 2025

    EMC RSA Data Loss Prevention 9.6 before SP2 P5 allows remote attackers to conduct clickjacking attacks via web-site elements with crafted transparency or opacity.

    Published: 3 May 2016
    6.1
    Medium

    CVE-2016-0892

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in EMC RSA Data Loss Prevention 9.6 before SP2 P5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 3 May 2016
    4.3
    Medium

    CVE-2016-0893

    Last Modified: 12 Apr 2025

    EMC RSA Data Loss Prevention 9.6 before SP2 P5 allows remote authenticated users to obtain sensitive information by reading error messages.

    Published: 3 May 2016
    6.3
    Medium

    CVE-2016-0894

    Last Modified: 12 Apr 2025

    EMC RSA Data Loss Prevention 9.6 before SP2 P5 allows remote authenticated users to bypass intended object access restrictions via a modified parameter.

    Published: 3 May 2016
    7.5
    High

    CVE-2016-4483

    Last Modified: 20 Apr 2025

    The xmlBufAttrSerializeTxtContent function in xmlsave.c in libxml2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and application crash) via a non-UTF-8 attribute value, related to serialization. NOTE: this vulnerability may be a duplicate of CVE-2016-3627.

    Published: 3 May 2016
    6.2
    Medium

    CVE-2016-4482

    Last Modified: 12 Apr 2025

    The proc_connectinfo function in drivers/usb/core/devio.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted USBDEVFS_CONNECTINFO ioctl call.

    Published: 3 May 2016
    4.4
    Medium

    CVE-2016-4492

    Last Modified: 20 Apr 2025

    Buffer overflow in the do_type function in cplus-dem.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary.

    Published: 3 May 2016
    5.5
    Medium

    CVE-2016-3718

    Last Modified: 22 Apr 2026

    The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted image.

    Published: 3 May 2016
    5.5
    Medium

    CVE-2016-3717

    Last Modified: 12 Apr 2025

    The LABEL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to read arbitrary files via a crafted image.

    Published: 3 May 2016
    3.3
    Low

    CVE-2016-3716

    Last Modified: 12 Apr 2025

    The MSL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to move arbitrary files via a crafted image.

    Published: 3 May 2016
    7.5
    High

    CVE-2016-2106

    Last Modified: 12 Apr 2025

    Integer overflow in the EVP_EncryptUpdate function in crypto/evp/evp_enc.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of data.

    Published: 3 May 2016
    9.8
    Critical

    CVE-2016-2108

    Last Modified: 12 Apr 2025

    The ASN.1 implementation in OpenSSL before 1.0.1o and 1.0.2 before 1.0.2c allows remote attackers to execute arbitrary code or cause a denial of service (buffer underflow and memory corruption) via an ANY field in crafted serialized data, aka the "negative zero" issue.

    Published: 3 May 2016
    7.5
    High

    CVE-2016-2105

    Last Modified: 12 Apr 2025

    Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of binary data.

    Published: 3 May 2016
    5.9
    Medium

    CVE-2016-2107

    Last Modified: 12 Apr 2025

    The AES-NI implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h does not consider memory allocation during a certain padding check, which allows remote attackers to obtain sensitive cleartext information via a padding-oracle attack against an AES CBC session. NOTE: this vulnerability exists because of an incorrect fix for CVE-2013-0169.

    Published: 3 May 2016
    7.5
    High

    CVE-2016-9597

    Last Modified: 21 Nov 2024

    It was found that Red Hat JBoss Core Services erratum RHSA-2016:2957 for CVE-2016-3705 did not actually include the fix for the issue found in libxml2, making it vulnerable to a Denial of Service attack due to a Stack Overflow. This is a regression CVE for the same issue as CVE-2016-3705.

    Published: 3 May 2016
    6.5
    Medium

    CVE-2016-9598

    Last Modified: 21 Nov 2024

    libxml2, as used in Red Hat JBoss Core Services, allows context-dependent attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted XML document. NOTE: this vulnerability exists because of a missing fix for CVE-2016-4483.

    Published: 3 May 2016
    7
    High

    CVE-2016-10151

    Last Modified: 20 Apr 2025

    The hesiod_init function in lib/hesiod.c in Hesiod 3.2.1 compares EUID with UID to determine whether to use configurations from environment variables, which allows local users to gain privileges via the (1) HESIOD_CONFIG or (2) HES_DOMAIN environment variable and leveraging certain SUID/SGUID binary.

    Published: 3 May 2016
    9.8
    Critical

    CVE-2016-10152

    Last Modified: 20 Apr 2025

    The read_config_file function in lib/hesiod.c in Hesiod 3.2.1 falls back to the ".athena.mit.edu" default domain when opening the configuration file fails, which allows remote attackers to gain root privileges by poisoning the DNS cache.

    Published: 3 May 2016
    8.2
    High

    CVE-2016-2176

    Last Modified: 12 Apr 2025

    The X509_NAME_oneline function in crypto/x509/x509_obj.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to obtain sensitive information from process stack memory or cause a denial of service (buffer over-read) via crafted EBCDIC ASN.1 data.

    Published: 3 May 2016
    5.5
    Medium

    CVE-2016-4493

    Last Modified: 20 Apr 2025

    The demangle_template_value_parm and do_hpacc_template_literal functions in cplus-dem.c in libiberty allow remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted binary.

    Published: 3 May 2016
    5.5
    Medium

    CVE-2016-4578

    Last Modified: 12 Apr 2025

    sound/core/timer.c in the Linux kernel through 4.6 does not initialize certain r1 data structures, which allows local users to obtain sensitive information from kernel stack memory via crafted use of the ALSA timer interface, related to the (1) snd_timer_user_ccallback and (2) snd_timer_user_tinterrupt functions.

    Published: 3 May 2016
    8.4
    High

    CVE-2016-3714

    Last Modified: 21 Apr 2026

    The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to execute arbitrary code via shell metacharacters in a crafted image, aka "ImageTragick."

    Published: 3 May 2016
    5.5
    Medium

    CVE-2016-3715

    Last Modified: 22 Apr 2026

    The EPHEMERAL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to delete arbitrary files via a crafted image.

    Published: 3 May 2016
    7.5
    High

    CVE-2016-3705

    Last Modified: 12 Apr 2025

    The (1) xmlParserEntityCheck and (2) xmlParseAttValueComplex functions in parser.c in libxml2 2.9.3 do not properly keep track of the recursion depth, which allows context-dependent attackers to cause a denial of service (stack consumption and application crash) via a crafted XML document containing a large number of nested entity references.

    Published: 3 May 2016