- EPSS 1.32%
- Published 30.04.2016 17:59:02
- Last modified 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 46.0 and Firefox ESR 45.x before 45.1 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary cod...
CVE-2016-2143
- EPSS 0.17%
- Published 27.04.2016 17:59:08
- Last modified 12.04.2025 10:46:40
The fork implementation in the Linux kernel before 4.5 on s390 platforms mishandles the case of four page-table levels, which allows local users to cause a denial of service (system crash) or possibly have unspecified other impact via a crafted appli...
CVE-2016-4002
- EPSS 9.18%
- Published 26.04.2016 14:59:04
- Last modified 12.04.2025 10:46:40
Buffer overflow in the mipsnet_receive function in hw/net/mipsnet.c in QEMU, when the guest NIC is configured to accept large packets, allows remote attackers to cause a denial of service (memory corruption and QEMU crash) or possibly execute arbitra...
CVE-2016-3074
- EPSS 52.52%
- Published 26.04.2016 14:59:01
- Last modified 12.04.2025 10:46:40
Integer signedness error in GD Graphics Library 2.1.1 (aka libgd or libgd2) allows remote attackers to cause a denial of service (crash) or potentially execute arbitrary code via crafted compressed gd2 data, which triggers a heap-based buffer overflo...
CVE-2015-8852
- EPSS 1.09%
- Published 25.04.2016 14:59:01
- Last modified 12.04.2025 10:46:40
Varnish 3.x before 3.0.7, when used in certain stacked installations, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a header line terminated by a \r (carriage return) character in conjunction...
CVE-2016-4085
- EPSS 0.65%
- Published 25.04.2016 10:59:10
- Last modified 12.04.2025 10:46:40
Stack-based buffer overflow in epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 1.12.x before 1.12.11 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a long st...
CVE-2016-4082
- EPSS 0.23%
- Published 25.04.2016 10:59:07
- Last modified 12.04.2025 10:46:40
epan/dissectors/packet-gsm_cbch.c in the GSM CBCH dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 uses the wrong variable to index an array, which allows remote attackers to cause a denial of service (out-of-bounds access and appl...
CVE-2016-4079
- EPSS 0.23%
- Published 25.04.2016 10:59:04
- Last modified 12.04.2025 10:46:40
epan/dissectors/packet-pktc.c in the PKTC dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not verify BER identifiers, which allows remote attackers to cause a denial of service (out-of-bounds write and application crash) via ...
- EPSS 93.75%
- Published 21.04.2016 11:00:21
- Last modified 12.04.2025 10:46:40
Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JMX.
CVE-2016-0668
- EPSS 0.36%
- Published 21.04.2016 10:59:32
- Last modified 12.04.2025 10:46:40
Unspecified vulnerability in Oracle MySQL 5.6.28 and earlier and 5.7.10 and earlier and MariaDB 10.0.x before 10.0.24 and 10.1.x before 10.1.12 allows local users to affect availability via vectors related to InnoDB.