CVE-2016-2815
- EPSS 0.36%
- Veröffentlicht 13.06.2016 10:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 47.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
CVE-2016-0376
- EPSS 1.93%
- Veröffentlicht 03.06.2016 14:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The com.ibm.rmi.io.SunSerializableFactory class in IBM SDK, Java Technology Edition 6 before SR16 FP25 (6.0.16.25), 6 R1 before SR8 FP25 (6.1.8.25), 7 before SR9 FP40 (7.0.9.40), 7 R1 before SR3 FP40 (7.1.3.40), and 8 before SR3 (8.0.3.0) does not pr...
CVE-2016-0363
- EPSS 0.64%
- Veröffentlicht 03.06.2016 14:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
The com.ibm.CORBA.iiop.ClientDelegate class in IBM SDK, Java Technology Edition 6 before SR16 FP25 (6.0.16.25), 6 R1 before SR8 FP25 (6.1.8.25), 7 before SR9 FP40 (7.0.9.40), 7 R1 before SR3 FP40 (7.1.3.40), and 8 before SR3 (8.0.3.0) uses the invoke...
CVE-2016-4913
- EPSS 0.1%
- Veröffentlicht 23.05.2016 10:59:14
- Zuletzt bearbeitet 12.04.2025 10:46:40
The get_rock_ridge_filename function in fs/isofs/rock.c in the Linux kernel before 4.5.5 mishandles NM (aka alternate name) entries containing \0 characters, which allows local users to obtain sensitive information from kernel memory or possibly have...
CVE-2016-4805
- EPSS 0.09%
- Veröffentlicht 23.05.2016 10:59:13
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in drivers/net/ppp/ppp_generic.c in the Linux kernel before 4.5.2 allows local users to cause a denial of service (memory corruption and system crash, or spinlock) or possibly have unspecified other impact by removing a n...
CVE-2016-4569
- EPSS 0.37%
- Veröffentlicht 23.05.2016 10:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
The snd_timer_user_params function in sound/core/timer.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via crafted use of the ALSA timer...
CVE-2016-4486
- EPSS 0.52%
- Veröffentlicht 23.05.2016 10:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The rtnl_fill_link_ifmap function in net/core/rtnetlink.c in the Linux kernel before 4.5.5 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory by reading a Netlink message.
CVE-2016-4485
- EPSS 0.51%
- Veröffentlicht 23.05.2016 10:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
The llc_cmsg_rcv function in net/llc/af_llc.c in the Linux kernel before 4.5.5 does not initialize a certain data structure, which allows attackers to obtain sensitive information from kernel stack memory by reading a message.
CVE-2016-4482
- EPSS 0.04%
- Veröffentlicht 23.05.2016 10:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The proc_connectinfo function in drivers/usb/core/devio.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted USBDEVFS_CONNECTIN...
CVE-2016-3951
- EPSS 0.02%
- Veröffentlicht 02.05.2016 10:59:41
- Zuletzt bearbeitet 12.04.2025 10:46:40
Double free vulnerability in drivers/net/usb/cdc_ncm.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (system crash) or possibly have unspecified other impact by inserting a USB device with an invali...