Show filters
456 Total Results
Displaying 131-140 of 456
Sort by:
Attacker Value
Unknown

CVE-2016-0642

Disclosure Date: April 21, 2016 (last updated November 25, 2024)
Unspecified vulnerability in Oracle MySQL 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.11 and earlier allows local users to affect integrity and availability via vectors related to Federated.
Attacker Value
Unknown

CVE-2014-9765

Disclosure Date: April 19, 2016 (last updated November 25, 2024)
Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 before 3.0.9 allows remote attackers to execute arbitrary code via a crafted input file.
0
Attacker Value
Unknown

CVE-2015-8778

Disclosure Date: April 19, 2016 (last updated November 25, 2024)
Integer overflow in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the size argument to the __hcreate_r function, which triggers out-of-bounds heap-memory access.
0
Attacker Value
Unknown

CVE-2015-8776

Disclosure Date: April 19, 2016 (last updated November 25, 2024)
The strftime function in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly obtain sensitive information via an out-of-range time value.
0
Attacker Value
Unknown

CVE-2015-8779

Disclosure Date: April 19, 2016 (last updated November 25, 2024)
Stack-based buffer overflow in the catopen function in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long catalog name.
0
Attacker Value
Unknown

CVE-2016-1658

Disclosure Date: April 18, 2016 (last updated November 08, 2023)
The Extensions subsystem in Google Chrome before 50.0.2661.75 incorrectly relies on GetOrigin method calls for origin comparisons, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted extension.
0
Attacker Value
Unknown

CVE-2016-1657

Disclosure Date: April 18, 2016 (last updated November 08, 2023)
The WebContentsImpl::FocusLocationBarByDefault function in content/browser/web_contents/web_contents_impl.cc in Google Chrome before 50.0.2661.75 mishandles focus for certain about:blank pages, which allows remote attackers to spoof the address bar via a crafted URL.
0
Attacker Value
Unknown

CVE-2016-0787

Disclosure Date: April 13, 2016 (last updated November 25, 2024)
The diffie_hellman_sha256 function in kex.c in libssh2 before 1.7.0 improperly truncates secrets to 128 or 256 bits, which makes it easier for man-in-the-middle attackers to decrypt or intercept SSH sessions via unspecified vectors, aka a "bits/bytes confusion bug."
0
Attacker Value
Unknown

CVE-2016-2191

Disclosure Date: April 13, 2016 (last updated November 25, 2024)
The bmp_read_rows function in pngxtern/pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (invalid memory write and crash) via a series of delta escapes in a crafted BMP image.
0
Attacker Value
Unknown

CVE-2016-3068

Disclosure Date: April 13, 2016 (last updated November 25, 2024)
Mercurial before 3.7.3 allows remote attackers to execute arbitrary code via a crafted git ext:: URL when cloning a subrepository.
0