CVE-2015-8918
- EPSS 2.57%
- Published 20.09.2016 14:15:04
- Last modified 12.04.2025 10:46:40
The archive_string_append function in archive_string.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (crash) via a crafted cab files, related to "overlapping memcpy."
CVE-2016-4997
- EPSS 5.22%
- Published 03.07.2016 21:59:16
- Last modified 12.04.2025 10:46:40
The compat IPT_SO_SET_REPLACE and IP6T_SO_SET_REPLACE setsockopt implementations in the netfilter subsystem in the Linux kernel before 4.6.3 allow local users to gain privileges or cause a denial of service (memory corruption) by leveraging in-contai...
CVE-2016-1583
- EPSS 0.25%
- Published 27.06.2016 10:59:03
- Last modified 12.04.2025 10:46:40
The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in the Linux kernel before 4.6.3 allows local users to gain privileges or cause a denial of service (stack memory consumption) via vectors involving crafted mmap calls for /proc pathnames...
CVE-2016-2834
- EPSS 1.55%
- Published 13.06.2016 10:59:15
- Last modified 12.04.2025 10:46:40
Mozilla Network Security Services (NSS) before 3.23, as used in Mozilla Firefox before 47.0, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors.
CVE-2016-2818
- EPSS 0.59%
- Published 13.06.2016 10:59:01
- Last modified 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary cod...
CVE-2016-2815
- EPSS 0.36%
- Published 13.06.2016 10:59:00
- Last modified 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 47.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
CVE-2016-0376
- EPSS 1.93%
- Published 03.06.2016 14:59:02
- Last modified 12.04.2025 10:46:40
The com.ibm.rmi.io.SunSerializableFactory class in IBM SDK, Java Technology Edition 6 before SR16 FP25 (6.0.16.25), 6 R1 before SR8 FP25 (6.1.8.25), 7 before SR9 FP40 (7.0.9.40), 7 R1 before SR3 FP40 (7.1.3.40), and 8 before SR3 (8.0.3.0) does not pr...
CVE-2016-0363
- EPSS 0.64%
- Published 03.06.2016 14:59:01
- Last modified 12.04.2025 10:46:40
The com.ibm.CORBA.iiop.ClientDelegate class in IBM SDK, Java Technology Edition 6 before SR16 FP25 (6.0.16.25), 6 R1 before SR8 FP25 (6.1.8.25), 7 before SR9 FP40 (7.0.9.40), 7 R1 before SR3 FP40 (7.1.3.40), and 8 before SR3 (8.0.3.0) uses the invoke...
CVE-2016-4913
- EPSS 0.1%
- Published 23.05.2016 10:59:14
- Last modified 12.04.2025 10:46:40
The get_rock_ridge_filename function in fs/isofs/rock.c in the Linux kernel before 4.5.5 mishandles NM (aka alternate name) entries containing \0 characters, which allows local users to obtain sensitive information from kernel memory or possibly have...
CVE-2016-4805
- EPSS 0.09%
- Published 23.05.2016 10:59:13
- Last modified 12.04.2025 10:46:40
Use-after-free vulnerability in drivers/net/ppp/ppp_generic.c in the Linux kernel before 4.5.2 allows local users to cause a denial of service (memory corruption and system crash, or spinlock) or possibly have unspecified other impact by removing a n...