CVE Feed

    Dashboard / CVE

    5.3
    Medium

    CVE-2015-4951

    Last Modified: 12 Apr 2025

    Client Acceptor Daemon (CAD) in the client in IBM Spectrum Protect (formerly Tivoli Storage Manager) 5.5 and 6.x before 6.3.2.5, 6.4 before 6.4.3.1, and 7.1 before 7.1.3 allows remote attackers to cause a denial of service (daemon crash) via a crafted Web client URL.

    Published: 20 Jan 2016
    7.5
    High

    CVE-2016-1296

    Last Modified: 12 Apr 2025

    The proxy engine on Cisco Web Security Appliance (WSA) devices with software 8.5.3-055, 9.1.0-000, and 9.5.0-235 allows remote attackers to bypass intended proxy restrictions via a malformed HTTP method, aka Bug ID CSCux00848.

    Published: 20 Jan 2016
    7.5
    High

    CVE-2017-5845

    Last Modified: 17 Mar 2026

    The gst_avi_demux_parse_ncdt function in gst/avi/gstavidemux.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (invalid memory read and crash) via a ncdt sub-tag that "goes behind" the surrounding tag.

    Published: 20 Jan 2016
    6.2
    Medium

    CVE-2015-7975

    Last Modified: 20 Apr 2025

    The nextvar function in NTP before 4.2.8p6 and 4.3.x before 4.3.90 does not properly validate the length of its input, which allows an attacker to cause a denial of service (application crash).

    Published: 20 Jan 2016
    7.5
    High

    CVE-2015-7978

    Last Modified: 20 Apr 2025

    NTP before 4.2.8p6 and 4.3.0 before 4.3.90 allows a remote attackers to cause a denial of service (stack exhaustion) via an ntpdc relist command, which triggers recursive traversal of the restriction list.

    Published: 20 Jan 2016
    5.3
    Medium

    CVE-2015-8138

    Last Modified: 20 Apr 2025

    NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to bypass the origin timestamp validation via a packet with an origin timestamp set to zero.

    Published: 20 Jan 2016
    5.9
    Medium

    CVE-2015-8158

    Last Modified: 20 Apr 2025

    The getresponse function in ntpq in NTP versions before 4.2.8p9 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (infinite loop) via crafted packets with incorrect values.

    Published: 20 Jan 2016
    6.3
    Medium

    CVE-2016-1571

    Last Modified: 12 Apr 2025

    The paging_invlpg function in include/asm-x86/paging.h in Xen 3.3.x through 4.6.x, when using shadow mode paging or nested virtualization is enabled, allows local HVM guest users to cause a denial of service (host crash) via a non-canonical guest address in an INVVPID instruction, which triggers a hypervisor bug check.

    Published: 20 Jan 2016
    4.3
    Medium

    CVE-2016-1616

    Last Modified: 12 Apr 2025

    The CustomButton::AcceleratorPressed function in ui/views/controls/button/custom_button.cc in Google Chrome before 48.0.2564.82 allows remote attackers to spoof URLs via vectors involving an unfocused custom button.

    Published: 20 Jan 2016
    4.3
    Medium

    CVE-2016-1617

    Last Modified: 12 Apr 2025

    The CSPSource::schemeMatches function in WebKit/Source/core/frame/csp/CSPSource.cpp in the Content Security Policy (CSP) implementation in Blink, as used in Google Chrome before 48.0.2564.82, does not apply http policies to https URLs and does not apply ws policies to wss URLs, which makes it easier for remote attackers to determine whether a specific HSTS web site has been visited by reading a CSP report.

    Published: 20 Jan 2016
    6.5
    Medium

    CVE-2015-7973

    Last Modified: 20 Apr 2025

    NTP before 4.2.8p6 and 4.3.x before 4.3.90, when configured in broadcast mode, allows man-in-the-middle attackers to conduct replay attacks by sniffing the network.

    Published: 20 Jan 2016
    4.3
    Medium

    CVE-2015-7976

    Last Modified: 20 Apr 2025

    The ntpq saveconfig command in NTP 4.1.2, 4.2.x before 4.2.8p6, 4.3, 4.3.25, 4.3.70, and 4.3.77 does not properly filter special characters, which allows attackers to cause unspecified impact via a crafted filename.

    Published: 20 Jan 2016
    5.9
    Medium

    CVE-2015-7977

    Last Modified: 20 Apr 2025

    ntpd in NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (NULL pointer dereference) via a ntpdc reslist command.

    Published: 20 Jan 2016
    5.3
    Medium

    CVE-2015-8139

    Last Modified: 20 Apr 2025

    ntpq in NTP before 4.2.8p7 allows remote attackers to obtain origin timestamps and then impersonate peers via unspecified vectors.

    Published: 20 Jan 2016
    8.4
    High

    CVE-2016-1572

    Last Modified: 12 Apr 2025

    mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types, which allows local users to gain privileges by mounting over a nonstandard filesystem, as demonstrated by /proc/$pid.

    Published: 20 Jan 2016
    7.5
    High

    CVE-2016-0737

    Last Modified: 12 Apr 2025

    OpenStack Object Storage (Swift) before 2.4.0 does not properly close client connections, which allows remote attackers to cause a denial of service (proxy-server resource consumption) via a series of interrupted requests to a Large Object URL.

    Published: 20 Jan 2016
    6.5
    Medium

    CVE-2016-1618

    Last Modified: 12 Apr 2025

    Blink, as used in Google Chrome before 48.0.2564.82, does not ensure that a proper cryptographicallyRandomValues random number generator is used, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via unspecified vectors.

    Published: 20 Jan 2016
    7.7
    High

    CVE-2015-7974

    Last Modified: 12 Apr 2025

    NTP 4.x before 4.2.8p6 and 4.3.x before 4.3.90 do not verify peer associations of symmetric keys when authenticating packets, which might allow remote attackers to conduct impersonation attacks via an arbitrary trusted key, aka a "skeleton key."

    Published: 20 Jan 2016
    7.5
    High

    CVE-2015-7979

    Last Modified: 20 Apr 2025

    NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (client-server association tear down) by sending broadcast packets with invalid authentication to a broadcast client.

    Published: 20 Jan 2016
    4.8
    Medium

    CVE-2015-8140

    Last Modified: 20 Apr 2025

    The ntpq protocol in NTP before 4.2.8p7 allows remote attackers to conduct replay attacks by sniffing the network.

    Published: 20 Jan 2016
    7.5
    High

    CVE-2016-0738

    Last Modified: 12 Apr 2025

    OpenStack Object Storage (Swift) before 2.3.1 (Kilo), 2.4.x, and 2.5.x before 2.5.1 (Liberty) do not properly close server connections, which allows remote attackers to cause a denial of service (proxy-server resource consumption) via a series of interrupted requests to a Large Object URL.

    Published: 20 Jan 2016
    7.8
    High

    CVE-2016-1233

    Last Modified: 12 Apr 2025

    An unspecified udev rule in the Debian fuse package in jessie before 2.9.3-15+deb8u2, in stretch before 2.9.5-1, and in sid before 2.9.5-1 sets world-writable permissions for the /dev/cuse character device, which allows local users to gain privileges via a character device in /dev, related to an ioctl.

    Published: 20 Jan 2016
    8.1
    High

    CVE-2016-1567

    Last Modified: 12 Apr 2025

    chrony before 1.31.2 and 2.x before 2.2.1 do not verify peer associations of symmetric keys when authenticating packets, which might allow remote attackers to conduct impersonation attacks via an arbitrary trusted key, aka a "skeleton key."

    Published: 20 Jan 2016
    8.5
    High

    CVE-2016-1570

    Last Modified: 12 Apr 2025

    The PV superpage functionality in arch/x86/mm.c in Xen 3.4.0, 3.4.1, and 4.1.x through 4.6.x allows local PV guests to obtain sensitive information, cause a denial of service, gain privileges, or have unspecified other impact via a crafted page identifier (MFN) to the (1) MMUEXT_MARK_SUPER or (2) MMUEXT_UNMARK_SUPER sub-op in the HYPERVISOR_mmuext_op hypercall or (3) unknown vectors related to page table updates.

    Published: 20 Jan 2016
    7.6
    High

    CVE-2016-1612

    Last Modified: 12 Apr 2025

    The LoadIC::UpdateCaches function in ic/ic.cc in Google V8, as used in Google Chrome before 48.0.2564.82, does not ensure receiver compatibility before performing a cast of an unspecified variable, which allows remote attackers to cause a denial of service or possibly have unknown other impact via crafted JavaScript code.

    Published: 20 Jan 2016
    7.6
    High

    CVE-2016-1613

    Last Modified: 12 Apr 2025

    Multiple use-after-free vulnerabilities in the formfiller implementation in PDFium, as used in Google Chrome before 48.0.2564.82, allow remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted PDF document, related to improper tracking of the destruction of (1) IPWL_FocusHandler and (2) IPWL_Provider objects.

    Published: 20 Jan 2016
    4.3
    Medium

    CVE-2016-1614

    Last Modified: 12 Apr 2025

    The UnacceleratedImageBufferSurface class in WebKit/Source/platform/graphics/UnacceleratedImageBufferSurface.cpp in Blink, as used in Google Chrome before 48.0.2564.82, mishandles the initialization mode, which allows remote attackers to obtain sensitive information from process memory via a crafted web site.

    Published: 20 Jan 2016
    6.5
    Medium

    CVE-2016-1615

    Last Modified: 12 Apr 2025

    The Omnibox implementation in Google Chrome before 48.0.2564.82 allows remote attackers to spoof a document's origin via unspecified vectors.

    Published: 20 Jan 2016
    7.6
    High

    CVE-2016-1619

    Last Modified: 12 Apr 2025

    Multiple integer overflows in the (1) sycc422_to_rgb and (2) sycc444_to_rgb functions in fxcodec/codec/fx_codec_jpx_opj.cpp in PDFium, as used in Google Chrome before 48.0.2564.82, allow remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted PDF document.

    Published: 20 Jan 2016
    8.8
    High

    CVE-2016-1620

    Last Modified: 12 Apr 2025

    Multiple unspecified vulnerabilities in Google Chrome before 48.0.2564.82 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.

    Published: 20 Jan 2016
    6.2
    Medium

    CVE-2013-4312

    Last Modified: 12 Apr 2025

    The Linux kernel before 4.4.1 allows local users to bypass file-descriptor limits and cause a denial of service (memory consumption) by sending each descriptor over a UNIX socket before closing it, related to net/unix/af_unix.c and net/unix/garbage.c.

    Published: 19 Jan 2016
    6.5
    Medium

    CVE-2016-2037

    Last Modified: 12 Apr 2025

    The cpio_safer_name_suffix function in util.c in cpio 2.11 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted cpio file.

    Published: 19 Jan 2016
    4
    Medium

    CVE-2016-0448

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66, and Java SE Embedded 8u65 allows remote authenticated users to affect confidentiality via vectors related to JMX.

    Published: 19 Jan 2016
    5.8
    Medium

    CVE-2016-0475

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in the Java SE, Java SE Embedded, and JRockit components in Oracle Java SE 8u66; Java SE Embedded 8u65; and JRockit R28.3.8 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries.

    Published: 19 Jan 2016
    10
    Critical

    CVE-2016-0483

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u105, 7u91, and 8u66; Java SE Embedded 8u65; and JRockit R28.3.8 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT. NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-party claims that this is a heap-based buffer overflow in the readImage function, which allows remote attackers to execute arbitrary code via crafted image data.

    Published: 19 Jan 2016
    7.8
    High

    CVE-2016-0728

    Last Modified: 12 Apr 2025

    The join_session_keyring function in security/keys/process_keys.c in the Linux kernel before 4.4.1 mishandles object references in a certain error case, which allows local users to gain privileges or cause a denial of service (integer overflow and use-after-free) via crafted keyctl commands.

    Published: 19 Jan 2016
    6.5
    Medium

    CVE-2016-2050

    Last Modified: 20 Apr 2025

    The get_abbrev_array_info function in libdwarf-20151114 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted elf file.

    Published: 19 Jan 2016
    5.1
    Medium

    CVE-2016-2545

    Last Modified: 12 Apr 2025

    The snd_timer_interrupt function in sound/core/timer.c in the Linux kernel before 4.4.1 does not properly maintain a certain linked list, which allows local users to cause a denial of service (race condition and system crash) via a crafted ioctl call.

    Published: 19 Jan 2016
    7.5
    High

    CVE-2016-2515

    Last Modified: 12 Apr 2025

    Hawk before 3.1.3 and 4.x before 4.1.1 allow remote attackers to cause a denial of service (CPU consumption or partial outage) via a long (1) header or (2) URI that is matched against an improper regular expression.

    Published: 19 Jan 2016
    5.4
    Medium

    CVE-2015-5295

    Last Modified: 12 Apr 2025

    The template-validate command in OpenStack Orchestration API (Heat) before 2015.1.3 (kilo) and 5.0.x before 5.0.1 (liberty) allows remote authenticated users to cause a denial of service (memory consumption) or determine the existence of local files via the resource type in a template, as demonstrated by file:///dev/zero.

    Published: 19 Jan 2016
    6.5
    Medium

    CVE-2015-8704

    Last Modified: 12 Apr 2025

    apl_42.c in ISC BIND 9.x before 9.9.8-P3, 9.9.x, and 9.10.x before 9.10.3-P3 allows remote authenticated users to cause a denial of service (INSIST assertion failure and daemon exit) via a malformed Address Prefix List (APL) record.

    Published: 19 Jan 2016
    5
    Medium

    CVE-2016-0466

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in the Java SE, Java SE Embedded, and JRockit components in Oracle Java SE 6u105, 7u91, and 8u66; Java SE Embedded 8u65; and JRockit R28.3.8 allows remote attackers to affect availability via vectors related to JAXP.

    Published: 19 Jan 2016
    10
    Critical

    CVE-2016-0494

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66 and Java SE Embedded 8u65 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.

    Published: 19 Jan 2016
    7.8
    High

    CVE-2016-2568

    Last Modified: 20 Apr 2025

    pkexec, when used with --user nonpriv, allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal's input buffer.

    Published: 19 Jan 2016
    7
    High

    CVE-2015-8705

    Last Modified: 12 Apr 2025

    buffer.c in named in ISC BIND 9.10.x before 9.10.3-P3, when debug logging is enabled, allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit, or daemon crash) or possibly have unspecified other impact via (1) OPT data or (2) an ECS option.

    Published: 19 Jan 2016
    5
    Medium

    CVE-2016-0402

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66 and Java SE Embedded 8u65 allows remote attackers to affect integrity via unknown vectors related to Networking.

    Published: 19 Jan 2016
    5.5
    Medium

    CVE-2016-1981

    Last Modified: 12 Apr 2025

    QEMU (aka Quick Emulator) built with the e1000 NIC emulation support is vulnerable to an infinite loop issue. It could occur while processing data via transmit or receive descriptors, provided the initial receive/transmit descriptor head (TDH/RDH) is set outside the allocated descriptor buffer. A privileged user inside guest could use this flaw to crash the QEMU instance resulting in DoS.

    Published: 19 Jan 2016
    3.3
    Low

    CVE-2016-2091

    Last Modified: 12 Apr 2025

    The dwarf_read_cie_fde_prefix function in dwarf_frame2.c in libdwarf 20151114 allows attackers to cause a denial of service (out-of-bounds read) via a crafted ELF object file.

    Published: 19 Jan 2016
    6.2
    Medium

    CVE-2016-2543

    Last Modified: 12 Apr 2025

    The snd_seq_ioctl_remove_events function in sound/core/seq/seq_clientmgr.c in the Linux kernel before 4.4.1 does not verify FIFO assignment before proceeding with FIFO clearing, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a crafted ioctl call.

    Published: 19 Jan 2016
    5.1
    Medium

    CVE-2016-2544

    Last Modified: 12 Apr 2025

    Race condition in the queue_delete function in sound/core/seq/seq_queue.c in the Linux kernel before 4.4.1 allows local users to cause a denial of service (use-after-free and system crash) by making an ioctl call at a certain time.

    Published: 19 Jan 2016