CVE-2016-2776
- EPSS 90.73%
- Veröffentlicht 28.09.2016 10:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
buffer.c in named in ISC BIND 9 before 9.9.9-P3, 9.10.x before 9.10.4-P3, and 9.11.x before 9.11.0rc3 does not properly construct responses, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted ...
CVE-2016-5844
- EPSS 2.48%
- Veröffentlicht 21.09.2016 14:25:16
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the ISO parser in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) via a crafted ISO file.
CVE-2016-6302
- EPSS 19.8%
- Veröffentlicht 16.09.2016 05:59:12
- Zuletzt bearbeitet 12.04.2025 10:46:40
The tls_decrypt_ticket function in ssl/t1_lib.c in OpenSSL before 1.1.0 does not consider the HMAC size during validation of the ticket length, which allows remote attackers to cause a denial of service via a ticket that is too short.
CVE-2016-5358
- EPSS 0.21%
- Veröffentlicht 07.08.2016 16:59:13
- Zuletzt bearbeitet 12.04.2025 10:46:40
epan/dissectors/packet-pktap.c in the Ethernet dissector in Wireshark 2.x before 2.0.4 mishandles the packet-header data type, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
CVE-2016-5357
- EPSS 0.67%
- Veröffentlicht 07.08.2016 16:59:12
- Zuletzt bearbeitet 12.04.2025 10:46:40
wiretap/netscreen.c in the NetScreen file parser in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles sscanf unsigned-integer processing, which allows remote attackers to cause a denial of service (application crash) via a crafted file.
CVE-2016-6185
- EPSS 0.25%
- Veröffentlicht 02.08.2016 14:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The XSLoader::load method in XSLoader in Perl does not properly locate .so files when called in a string eval, which might allow local users to execute arbitrary code via a Trojan horse library under the current working directory.
CVE-2016-5471
- EPSS 0.17%
- Veröffentlicht 21.07.2016 10:15:28
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerability than CVE-2016-3497 and CVE-2016-5469.
CVE-2016-5469
- EPSS 0.1%
- Veröffentlicht 21.07.2016 10:15:26
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerability than CVE-2016-3497 and CVE-2016-5471.
CVE-2016-5454
- EPSS 0.14%
- Veröffentlicht 21.07.2016 10:15:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect integrity and availability via vectors related to Verified Boot.
CVE-2016-5452
- EPSS 0.1%
- Veröffentlicht 21.07.2016 10:15:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect confidentiality via vectors related to Verified Boot.