Show filters
104 Total Results
Displaying 11-20 of 104
Sort by:
Attacker Value
Unknown
CVE-2014-9845
Disclosure Date: March 20, 2017 (last updated November 26, 2024)
The ReadDIBImage function in coders/dib.c in ImageMagick allows remote attackers to cause a denial of service (crash) via a corrupted dib file.
0
Attacker Value
Unknown
CVE-2014-9844
Disclosure Date: March 20, 2017 (last updated November 26, 2024)
The ReadRLEImage function in coders/rle.c in ImageMagick 6.8.9.9 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted image file.
0
Attacker Value
Unknown
CVE-2014-9846
Disclosure Date: March 20, 2017 (last updated November 26, 2024)
Buffer overflow in the ReadRLEImage function in coders/rle.c in ImageMagick 6.8.9.9 allows remote attackers to have unspecified impact.
0
Attacker Value
Unknown
CVE-2014-9853
Disclosure Date: March 17, 2017 (last updated November 05, 2024)
Memory leak in coders/rle.c in ImageMagick allows remote attackers to cause a denial of service (memory consumption) via a crafted rle file.
0
Attacker Value
Unknown
CVE-2016-1583
Disclosure Date: June 27, 2016 (last updated November 25, 2024)
The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in the Linux kernel before 4.6.3 allows local users to gain privileges or cause a denial of service (stack memory consumption) via vectors involving crafted mmap calls for /proc pathnames, leading to recursive pagefault handling.
0
Attacker Value
Unknown
CVE-2016-0376
Disclosure Date: June 03, 2016 (last updated November 25, 2024)
The com.ibm.rmi.io.SunSerializableFactory class in IBM SDK, Java Technology Edition 6 before SR16 FP25 (6.0.16.25), 6 R1 before SR8 FP25 (6.1.8.25), 7 before SR9 FP40 (7.0.9.40), 7 R1 before SR3 FP40 (7.1.3.40), and 8 before SR3 (8.0.3.0) does not properly deserialize classes in an AccessController doPrivileged block, which allows remote attackers to bypass a sandbox protection mechanism and execute arbitrary code as demonstrated by the readValue method of the com.ibm.rmi.io.ValueHandlerPool.ValueHandlerSingleton class, which implements the javax.rmi.CORBA.ValueHandler interface. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-5456.
0
Attacker Value
Unknown
CVE-2016-0363
Disclosure Date: June 03, 2016 (last updated November 25, 2024)
The com.ibm.CORBA.iiop.ClientDelegate class in IBM SDK, Java Technology Edition 6 before SR16 FP25 (6.0.16.25), 6 R1 before SR8 FP25 (6.1.8.25), 7 before SR9 FP40 (7.0.9.40), 7 R1 before SR3 FP40 (7.1.3.40), and 8 before SR3 (8.0.3.0) uses the invoke method of the java.lang.reflect.Method class in an AccessController doPrivileged block, which allows remote attackers to call setSecurityManager and bypass a sandbox protection mechanism via vectors related to a Proxy object instance implementing the java.lang.reflect.InvocationHandler interface. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-3009.
0
Attacker Value
Unknown
CVE-2016-4805
Disclosure Date: May 23, 2016 (last updated November 25, 2024)
Use-after-free vulnerability in drivers/net/ppp/ppp_generic.c in the Linux kernel before 4.5.2 allows local users to cause a denial of service (memory corruption and system crash, or spinlock) or possibly have unspecified other impact by removing a network namespace, related to the ppp_register_net_channel and ppp_unregister_channel functions.
0
Attacker Value
Unknown
CVE-2016-4485
Disclosure Date: May 23, 2016 (last updated November 25, 2024)
The llc_cmsg_rcv function in net/llc/af_llc.c in the Linux kernel before 4.5.5 does not initialize a certain data structure, which allows attackers to obtain sensitive information from kernel stack memory by reading a message.
0
Attacker Value
Unknown
CVE-2016-4569
Disclosure Date: May 23, 2016 (last updated November 25, 2024)
The snd_timer_user_params function in sound/core/timer.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via crafted use of the ALSA timer interface.
0