Skip to main content

Vendor/product archive

oracle / vm_server CVEs

Beta · best-effort

38 CVEs tagged to oracle / vm_server3 Critical, 13 High, 19 Medium, 3 Low, 0 Unrated.

CVE-2023-22024

Published Sep 20, 2023

In the Unbreakable Enterprise Kernel (UEK), the RDS module in UEK has two setsockopt(2) options, RDS_CONN_RESET and RDS6_CONN_RESET, that are not re-entrant. A malicious local us…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-2571

Published Jan 15, 2020

Vulnerability in the Oracle VM Server for SPARC product of Oracle Systems (component: Templates). The supported version that is affected is 3.6. Easily exploitable vulnerability a…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-3242

Published Jan 27, 2017

Vulnerability in the Oracle VM Server for Sparc component of Oracle Sun Systems Products Suite (subcomponent: LDOM Manager). Supported versions that are affected are 3.2 and 3.4.…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-3991

Published Sep 21, 2016

Heap-based buffer overflow in the loadImage function in the tiffcrop tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) o…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-3990

Published Sep 21, 2016

Heap-based buffer overflow in the horizontalDifference8 function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (crash) or exe…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-3945

Published Sep 21, 2016

Multiple integer overflows in the (1) cvt_by_strip and (2) cvt_by_tile functions in the tiff2rgba tool in LibTIFF 4.0.6 and earlier, when -b mode is enabled, allow remote attacker…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-3632

Published Sep 21, 2016

The _TIFFVGetField function in tif_dirinfo.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) or execute arbitrary code via…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-5403

Published Aug 2, 2016

The virtqueue_pop function in hw/virtio/virtio.c in QEMU allows local guest OS administrators to cause a denial of service (memory consumption and QEMU process crash) by submittin…

CVSS 5.5 · Medium

CVE-2016-4962

Published Jun 7, 2016

The libxl device-handling in Xen 4.6.x and earlier allows local OS guest administrators to cause a denial of service (resource consumption or management facility confusion) or gai…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-4480

Published May 18, 2016

The guest_walk_tables function in arch/x86/mm/guest_walk.c in Xen 4.6.x and earlier does not properly handle the Page Size (PS) page table entry bit at the L4 and L3 page table le…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2016-3627

Published May 17, 2016

The xmlStringGetNodeList function in tree.c in libxml2 2.9.3 and earlier, when used in recovery mode, allows context-dependent attackers to cause a denial of service (infinite rec…

CVSS 7.5 · High

CVE-2016-3712

Published May 11, 2016

Integer overflow in the VGA module in QEMU allows local guest OS users to cause a denial of service (out-of-bounds read and QEMU process crash) by editing VGA registers in VBE mod…

CVSS 5.5 · Medium
Showing 1-25 of 38 CVEsPage 1 of 2