Show filters
1,398 Total Results
Displaying 131-140 of 1,398
Sort by:
Attacker Value
Unknown

CVE-2016-9453

Disclosure Date: January 27, 2017 (last updated November 25, 2024)
The t2p_readwrite_pdf_image_tile function in LibTIFF allows remote attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a JPEG file with a TIFFTAG_JPEGTABLES of length one.
Attacker Value
Unknown

CVE-2016-9427

Disclosure Date: December 12, 2016 (last updated November 25, 2024)
Integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (heap buffer overflow crash) and possibly execute arbitrary code via huge allocation.
Attacker Value
Unknown

CVE-2016-7796

Disclosure Date: October 13, 2016 (last updated November 25, 2024)
The manager_dispatch_notify_fd function in systemd allows local users to cause a denial of service (system hang) via a zero-length message received over a notify socket, which causes an error to be returned and the notification handler to be disabled.
0
Attacker Value
Unknown

CVE-2016-6352

Disclosure Date: October 03, 2016 (last updated November 25, 2024)
The OneLine32 function in io-ico.c in gdk-pixbuf before 2.35.3 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via crafted dimensions in an ICO file.
0
Attacker Value
Unknown

CVE-2016-6304

Disclosure Date: September 26, 2016 (last updated November 08, 2023)
Multiple memory leaks in t1_lib.c in OpenSSL before 1.0.1u, 1.0.2 before 1.0.2i, and 1.1.0 before 1.1.0a allow remote attackers to cause a denial of service (memory consumption) via large OCSP Status Request extensions.
Attacker Value
Unknown

CVE-2016-7052

Disclosure Date: September 26, 2016 (last updated November 08, 2023)
crypto/x509/x509_vfy.c in OpenSSL 1.0.2i allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) by triggering a CRL operation.
Attacker Value
Unknown

CVE-2016-6306

Disclosure Date: September 26, 2016 (last updated November 08, 2023)
The certificate parser in OpenSSL before 1.0.1u and 1.0.2 before 1.0.2i might allow remote attackers to cause a denial of service (out-of-bounds read) via crafted certificate operations, related to s3_clnt.c and s3_srvr.c.
Attacker Value
Unknown

CVE-2016-4303

Disclosure Date: September 26, 2016 (last updated January 16, 2025)
The parse_string function in cjson.c in the cJSON library mishandles UTF8/16 strings, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a non-hex character in a JSON string, which triggers a heap-based buffer overflow.
Attacker Value
Unknown

CVE-2015-8918

Disclosure Date: September 20, 2016 (last updated November 25, 2024)
The archive_string_append function in archive_string.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (crash) via a crafted cab files, related to "overlapping memcpy."
0
Attacker Value
Unknown

CVE-2015-8919

Disclosure Date: September 20, 2016 (last updated November 25, 2024)
The lha_read_file_extended_header function in archive_read_support_format_lha.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (out-of-bounds heap) via a crafted (1) lzh or (2) lha file.
0