Skip to main content

Year archive

CVEs published in 2016

Archive summary

6,449 CVEs published in 2016 — 895 Critical, 2,887 High, 2,446 Medium, 221 Low, 0 Unrated.

CVE-2015-8966

Published Dec 8, 2016

arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 4.4 allows local users to gain privileges via a crafted (1) F_OFD_GETLK, (2) F_OFD_SETLK, or (3) F_OFD_SETLKW command…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-9920

Published Dec 8, 2016

steps/mail/sendmail.inc in Roundcube before 1.1.7 and 1.2.x before 1.2.3, when no SMTP server is configured and the sendmail program is enabled, does not properly restrict the use…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-9919

Published Dec 8, 2016

The icmp6_send function in net/ipv6/icmp.c in the Linux kernel through 4.8.12 omits a certain check of the dst data structure, which allows remote attackers to cause a denial of s…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-8102

Published Dec 8, 2016

Unquoted service path vulnerability in Intel Wireless Bluetooth Drivers 16.x, 17.x, and before 18.1.1607.3129 allows local users to launch processes with elevated privileges.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-9918

Published Dec 8, 2016

In BlueZ 5.42, an out-of-bounds read was identified in "packet_hexdump" function in "monitor/packet.c" source file. This issue can be triggered by processing a corrupted dump file…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-9917

Published Dec 8, 2016

In BlueZ 5.42, a buffer overflow was observed in "read_n" function in "tools/hcidump.c" source file. This issue can be triggered by processing a corrupted dump file and will resul…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-9888

Published Dec 8, 2016

An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.41 can be exploited to trigger a Null pointer dereference a…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-9839

Published Dec 8, 2016

In MapServer before 7.0.3, OGR driver error messages are too verbose and may leak sensitive information if data connection fails.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-8655

Published Dec 8, 2016

Race condition in net/packet/af_packet.c in the Linux kernel through 4.8.12 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging the C…

CVSS 7.8 · High
evidence mentions
4
Buzz score
26.1
Vendor/product tagsBeta · best-effort

CVE-2015-8870

Published Dec 6, 2016

Integer overflow in tools/bmp2tiff.c in LibTIFF before 4.0.4 allows remote attackers to cause a denial of service (heap-based buffer over-read), or possibly obtain sensitive infor…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2016-5341

Published Dec 6, 2016

The GPS component in Android before 2016-12-05 allows man-in-the-middle attackers to cause a denial of service (GPS signal-acquisition delay) via an incorrect xtra.bin or xtra2.bi…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-8740

Published Dec 5, 2016

The mod_http2 module in the Apache HTTP Server 2.4.17 through 2.4.23, when the Protocols configuration includes h2 or h2c, does not restrict request-header length, which allows re…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2016-9152

Published Dec 5, 2016

Cross-site scripting (XSS) vulnerability in ecrire/exec/plonger.php in SPIP 3.1.3 allows remote attackers to inject arbitrary web script or HTML via the rac parameter.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-7171

Published Dec 5, 2016

NetApp Plug-in for Symantec NetBackup prior to version 2.0.1 makes use of a non-unique server certificate, making it vulnerable to impersonation.

CVSS 5.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-9836

Published Dec 5, 2016

The file scanning mechanism of JFilterInput::isFileSafe() in Joomla! CMS before 3.6.5 does not consider alternative PHP file extensions when checking uploaded files for PHP conten…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2016-9835

Published Dec 5, 2016

Directory traversal vulnerability in file "jcss.php" in Zikula 1.3.x before 1.3.11 and 1.4.x before 1.4.4 on Windows allows a remote attacker to launch a PHP object injection by u…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2016-9157

Published Dec 5, 2016

A vulnerability in Siemens SICAM PAS (all versions before V8.09) could allow a remote attacker to cause a Denial of Service condition and potentially lead to unauthenticated remot…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2016-9156

Published Dec 5, 2016

A vulnerability in Siemens SICAM PAS (all versions before V8.09) could allow a remote attacker to upload, download, or delete files in certain parts of the file system by sending…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2016-9804

Published Dec 3, 2016

In BlueZ 5.42, a buffer overflow was observed in "commands_dump" function in "tools/parser/csr.c" source file. The issue exists because "commands" array is overflowed by supplied…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-9803

Published Dec 3, 2016

In BlueZ 5.42, an out-of-bounds read was observed in "le_meta_ev_dump" function in "tools/parser/hci.c" source file. This issue exists because 'subevent' (which is used to read co…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-9802

Published Dec 3, 2016

In BlueZ 5.42, a buffer over-read was identified in "l2cap_packet" function in "monitor/packet.c" source file. This issue can be triggered by processing a corrupted dump file and…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-9801

Published Dec 3, 2016

In BlueZ 5.42, a buffer overflow was observed in "set_ext_ctrl" function in "tools/parser/l2cap.c" source file when processing corrupted dump file.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-9800

Published Dec 3, 2016

In BlueZ 5.42, a buffer overflow was observed in "pin_code_reply_dump" function in "tools/parser/hci.c" source file. The issue exists because "pin" array is overflowed by supplied…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 476-500 of 6,449 CVEsPage 20 of 258