Canonical

Ubuntu Linux

4106 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.15%
  • Veröffentlicht 20.05.2016 10:59:50
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Use-after-free vulnerability in the xmlDictComputeFastKey function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to cause a denial of service via ...

  • EPSS 2.57%
  • Veröffentlicht 20.05.2016 10:59:49
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Use-after-free vulnerability in the xmlSAX2AttributeNs function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2 and OS X before 10.11.5, allows remote attackers to cause a denial of service via a crafted XML document.

Exploit
  • EPSS 2.37%
  • Veröffentlicht 20.05.2016 10:59:48
  • Zuletzt bearbeitet 04.12.2025 18:15:49

Heap-based buffer overflow in the xmlStrncat function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to execute arbitrary code or cause a denial of...

Exploit
  • EPSS 1.21%
  • Veröffentlicht 20.05.2016 10:59:47
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The htmlCurrentChar function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafte...

  • EPSS 1.03%
  • Veröffentlicht 17.05.2016 14:08:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The (1) xmlParserEntityCheck and (2) xmlParseAttValueComplex functions in parser.c in libxml2 2.9.3 do not properly keep track of the recursion depth, which allows context-dependent attackers to cause a denial of service (stack consumption and applic...

  • EPSS 0.16%
  • Veröffentlicht 17.05.2016 14:08:02
  • Zuletzt bearbeitet 04.12.2025 17:15:48

The xmlStringGetNodeList function in tree.c in libxml2 2.9.3 and earlier, when used in recovery mode, allows context-dependent attackers to cause a denial of service (infinite recursion, stack consumption, and application crash) via a crafted XML doc...

  • EPSS 1.63%
  • Veröffentlicht 14.05.2016 21:59:09
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as used in Google Chrome before 50.0.2661.102, does not properly determine when to expand certain memory allocations, which allows remote attackers to cause a denial of service (buffer ...

  • EPSS 2.21%
  • Veröffentlicht 13.05.2016 14:59:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Use-after-free vulnerability in Oxide allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via unspecified vectors, related to responding synchronously to permission requests.

  • EPSS 0.14%
  • Veröffentlicht 11.05.2016 21:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer overflow in the VGA module in QEMU allows local guest OS users to cause a denial of service (out-of-bounds read and QEMU process crash) by editing VGA registers in VBE mode.

  • EPSS 0.1%
  • Veröffentlicht 11.05.2016 21:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS administrators to execute arbitrary code on the host by changing access modes after setting the bank register, aka the "Dark Port...