CVE-2016-9373
- EPSS 1.22%
- Veröffentlicht 17.11.2016 05:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the DCERPC dissector could crash with a use-after-free, triggered by network traffic or a capture file. This was addressed in epan/dissectors/packet-dcerpc-nt.c and epan/dissectors/packet-dcerpc-spoolss...
CVE-2016-5195
- EPSS 94.25%
- Veröffentlicht 10.11.2016 21:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in Oc...
- EPSS 0.1%
- Veröffentlicht 04.11.2016 21:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
The rtl8139_cplus_transmit function in hw/net/rtl8139.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) by leveraging failure to limit the ring descriptor count.
- EPSS 0.04%
- Veröffentlicht 04.11.2016 21:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The intel_hda_xfer function in hw/audio/intel-hda.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via an entry with the same value for buffer length and pointer posi...
- EPSS 0.07%
- Veröffentlicht 04.11.2016 21:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The serial_update_parameters function in hw/char/serial.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (divide-by-zero error and QEMU process crash) via vectors involving a value of divider greater th...
- EPSS 0.08%
- Veröffentlicht 04.11.2016 21:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
The rc4030_write function in hw/dma/rc4030.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (divide-by-zero error and QEMU process crash) via a large interval timer reload value.
- EPSS 0.12%
- Veröffentlicht 04.11.2016 21:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The v9fs_iov_vunmarshal function in fsdev/9p-iov-marshal.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process crash) by sending an empty string parameter to a 9P o...
- EPSS 0.12%
- Veröffentlicht 04.11.2016 21:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
Memory leak in the v9fs_read function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption) via vectors related to an I/O read operation.
- EPSS 0.11%
- Veröffentlicht 04.11.2016 21:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The xhci_ring_fetch function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by leveraging failure to limit the number of link Transfer Request...
CVE-2016-9190
- EPSS 0.57%
- Veröffentlicht 04.11.2016 10:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
Pillow before 3.3.2 allows context-dependent attackers to execute arbitrary code by using the "crafted image file" approach, related to an "Insecure Sign Extension" issue affecting the ImagingNew in Storage.c component.