CVE-2016-0505
- EPSS 0.92%
- Published 21.01.2016 03:00:53
- Last modified 12.04.2025 10:46:40
Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows remote authenticated users to affect availability via unknown vectors relat...
CVE-2015-1779
- EPSS 5.08%
- Published 12.01.2016 19:59:00
- Last modified 12.04.2025 10:46:40
The VNC websocket frame decoder in QEMU allows remote attackers to cause a denial of service (memory and CPU consumption) via a large (1) websocket payload or (2) HTTP headers section.
- EPSS 14.19%
- Published 08.01.2016 21:59:02
- Last modified 12.04.2025 10:46:40
Buffer overflow in the pcnet_receive function in hw/net/pcnet.c in QEMU, when a guest NIC has a larger MTU, allows remote attackers to cause a denial of service (guest OS crash) or execute arbitrary code via a large packet.
CVE-2015-8651
- EPSS 89.78%
- Published 28.12.2015 23:59:19
- Last modified 12.04.2025 10:46:40
Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0....
CVE-2015-8327
- EPSS 19.36%
- Published 17.12.2015 19:59:05
- Last modified 12.04.2025 10:46:40
Incomplete blacklist vulnerability in util.c in foomatic-rip in cups-filters 1.0.42 before 1.2.0 and in foomatic-filters in Foomatic 4.0.x allows remote attackers to execute arbitrary commands via ` (backtick) characters in a print job.
CVE-2015-5277
- EPSS 0.09%
- Published 17.12.2015 19:59:02
- Last modified 12.04.2025 10:46:40
The get_contents function in nss_files/files-XXX.c in the Name Service Switch (NSS) in GNU C Library (aka glibc or libc6) before 2.20 might allow local users to cause a denial of service (heap corruption) or gain privileges via a long line in the NSS...
- EPSS 0.33%
- Published 15.12.2015 21:59:09
- Last modified 12.04.2025 10:46:40
The xmlParseXMLDecl function in parser.c in libxml2 before 2.9.3 allows context-dependent attackers to obtain sensitive information via an (1) unterminated encoding value or (2) incomplete XML declaration in XML data, which triggers an out-of-bounds ...
CVE-2015-8242
- EPSS 1.66%
- Published 15.12.2015 21:59:07
- Last modified 12.04.2025 10:46:40
The xmlSAX2TextNode function in SAX2.c in the push interface in the HTML parser in libxml2 before 2.9.3 allows context-dependent attackers to cause a denial of service (stack-based buffer over-read and application crash) or obtain sensitive informati...
CVE-2015-8241
- EPSS 1.75%
- Published 15.12.2015 21:59:06
- Last modified 12.04.2025 10:46:40
The xmlNextChar function in libxml2 2.9.2 does not properly check the state, which allows context-dependent attackers to cause a denial of service (heap-based buffer over-read and application crash) or obtain sensitive information via crafted XML dat...
- EPSS 4.25%
- Published 15.12.2015 21:59:05
- Last modified 12.04.2025 10:46:40
The xmlParseMisc function in parser.c in libxml2 before 2.9.3 allows context-dependent attackers to cause a denial of service (out-of-bounds heap read) via unspecified vectors related to incorrect entities boundaries and start tags.