CVE-2017-3244
- EPSS 0.3%
- Veröffentlicht 27.01.2017 22:59:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DML). Supported versions that are affected are 5.5.53 and earlier, 5.6.34 and earlier and 5.7.16 and earlier. Easily exploitable vulnerability allows low privileged at...
CVE-2017-3258
- EPSS 0.71%
- Veröffentlicht 27.01.2017 22:59:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are affected are 5.5.53 and earlier, 5.6.34 and earlier and 5.7.16 and earlier. Easily exploitable vulnerability allows low privileged at...
CVE-2016-5824
- EPSS 0.44%
- Veröffentlicht 27.01.2017 22:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
libical 1.0 allows remote attackers to cause a denial of service (use-after-free) via a crafted ics file.
CVE-2016-9446
- EPSS 1.28%
- Veröffentlicht 23.01.2017 21:59:03
- Zuletzt bearbeitet 20.04.2025 01:37:25
The vmnc decoder in the gstreamer does not initialize the render canvas, which allows remote attackers to obtain sensitive information as demonstrated by thumbnailing a simple 1 frame vmnc movie that does not draw to the allocated render canvas.
CVE-2016-9401
- EPSS 0.03%
- Veröffentlicht 23.01.2017 21:59:02
- Zuletzt bearbeitet 06.08.2025 22:15:28
popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address.
CVE-2016-9811
- EPSS 0.49%
- Veröffentlicht 13.01.2017 16:59:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
The windows_icon_typefind function in gst-plugins-base in GStreamer before 1.10.2, when G_SLICE is set to always-malloc, allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted ico file.
CVE-2016-7426
- EPSS 38.91%
- Veröffentlicht 13.01.2017 16:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
NTP before 4.2.8p9 rate limits responses received from the configured sources when rate limiting for all associations is enabled, which allows remote attackers to cause a denial of service (prevent responses from the sources) by sending responses wit...
CVE-2016-9131
- EPSS 58.07%
- Veröffentlicht 12.01.2017 06:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
named in ISC BIND 9.x before 9.9.9-P5, 9.10.x before 9.10.4-P5, and 9.11.x before 9.11.0-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a malformed response to an RTYPE ANY query.
CVE-2016-8864
- EPSS 43.01%
- Veröffentlicht 02.11.2016 17:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
named in ISC BIND 9.x before 9.9.9-P4, 9.10.x before 9.10.4-P4, and 9.11.x before 9.11.0-P1 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a DNAME record in the answer section of a response to a recursive...
CVE-2016-5629
- EPSS 1.16%
- Veröffentlicht 25.10.2016 14:31:44
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier, 5.6.32 and earlier, and 5.7.14 and earlier allows remote administrators to affect availability via vectors related to Server: Federated.