Oracle

Linux

228 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 9.76%
  • Veröffentlicht 21.07.2016 10:12:53
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3508.

  • EPSS 0.09%
  • Veröffentlicht 21.07.2016 10:12:30
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Unspecified vulnerability in Oracle MySQL 5.5.49 and earlier, 5.6.30 and earlier, and 5.7.12 and earlier and MariaDB before 5.5.50, 10.0.x before 10.0.26, and 10.1.x before 10.1.15 allows local users to affect confidentiality, integrity, and availabi...

  • EPSS 2.12%
  • Veröffentlicht 21.07.2016 10:12:18
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; and Java SE Embedded 8u91 allows remote attackers to affect integrity via vectors related to CORBA.

  • EPSS 3.27%
  • Veröffentlicht 21.07.2016 10:12:16
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Unspecified vulnerability in Oracle MySQL 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.10 and earlier and MariaDB before 5.5.49, 10.0.x before 10.0.25, and 10.1.x before 10.1.14 allows remote attackers to affect confidentiality via vectors related...

  • EPSS 36.76%
  • Veröffentlicht 19.07.2016 02:00:20
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Apache Tomcat 7.x through 7.0.70 and 8.x through 8.5.4, when the CGI Servlet is enabled, follows RFC 3875 section 4.1.18 and therefore does not protect applications from the presence of untrusted client data in the HTTP_PROXY environment variable, wh...

  • EPSS 60.28%
  • Veröffentlicht 19.07.2016 02:00:19
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The Apache HTTP Server through 2.4.23 follows RFC 3875 section 4.1.18 and therefore does not protect applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which might allow remote attackers to redirect an app...

  • EPSS 45.9%
  • Veröffentlicht 19.07.2016 02:00:18
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The net/http package in Go through 1.6 does not attempt to address RFC 3875 section 4.1.18 namespace conflicts and therefore does not protect CGI applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which mi...

  • EPSS 81.35%
  • Veröffentlicht 19.07.2016 02:00:17
  • Zuletzt bearbeitet 06.05.2026 22:30:45

PHP through 7.0.8 does not attempt to address RFC 3875 section 4.1.18 namespace conflicts and therefore does not protect applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which might allow remote attacker...

  • EPSS 1.63%
  • Veröffentlicht 03.07.2016 21:59:17
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The IPT_SO_SET_REPLACE setsockopt implementation in the netfilter subsystem in the Linux kernel before 4.6 allows local users to cause a denial of service (out-of-bounds read) or possibly obtain sensitive information from kernel heap memory by levera...

Exploit
  • EPSS 4.79%
  • Veröffentlicht 03.07.2016 21:59:16
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The compat IPT_SO_SET_REPLACE and IP6T_SO_SET_REPLACE setsockopt implementations in the netfilter subsystem in the Linux kernel before 4.6.3 allow local users to gain privileges or cause a denial of service (memory corruption) by leveraging in-contai...