Show filters
456 Total Results
Displaying 131-140 of 456
Sort by:
Attacker Value
Unknown
CVE-2016-0642
Disclosure Date: April 21, 2016 (last updated November 25, 2024)
Unspecified vulnerability in Oracle MySQL 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.11 and earlier allows local users to affect integrity and availability via vectors related to Federated.
0
Attacker Value
Unknown
CVE-2014-9765
Disclosure Date: April 19, 2016 (last updated November 25, 2024)
Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 before 3.0.9 allows remote attackers to execute arbitrary code via a crafted input file.
0
Attacker Value
Unknown
CVE-2015-8778
Disclosure Date: April 19, 2016 (last updated November 25, 2024)
Integer overflow in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the size argument to the __hcreate_r function, which triggers out-of-bounds heap-memory access.
0
Attacker Value
Unknown
CVE-2015-8776
Disclosure Date: April 19, 2016 (last updated November 25, 2024)
The strftime function in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly obtain sensitive information via an out-of-range time value.
0
Attacker Value
Unknown
CVE-2015-8779
Disclosure Date: April 19, 2016 (last updated November 25, 2024)
Stack-based buffer overflow in the catopen function in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long catalog name.
0
Attacker Value
Unknown
CVE-2016-1658
Disclosure Date: April 18, 2016 (last updated November 08, 2023)
The Extensions subsystem in Google Chrome before 50.0.2661.75 incorrectly relies on GetOrigin method calls for origin comparisons, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted extension.
0
Attacker Value
Unknown
CVE-2016-1657
Disclosure Date: April 18, 2016 (last updated November 08, 2023)
The WebContentsImpl::FocusLocationBarByDefault function in content/browser/web_contents/web_contents_impl.cc in Google Chrome before 50.0.2661.75 mishandles focus for certain about:blank pages, which allows remote attackers to spoof the address bar via a crafted URL.
0
Attacker Value
Unknown
CVE-2016-0787
Disclosure Date: April 13, 2016 (last updated November 25, 2024)
The diffie_hellman_sha256 function in kex.c in libssh2 before 1.7.0 improperly truncates secrets to 128 or 256 bits, which makes it easier for man-in-the-middle attackers to decrypt or intercept SSH sessions via unspecified vectors, aka a "bits/bytes confusion bug."
0
Attacker Value
Unknown
CVE-2016-2191
Disclosure Date: April 13, 2016 (last updated November 25, 2024)
The bmp_read_rows function in pngxtern/pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (invalid memory write and crash) via a series of delta escapes in a crafted BMP image.
0
Attacker Value
Unknown
CVE-2016-3068
Disclosure Date: April 13, 2016 (last updated November 25, 2024)
Mercurial before 3.7.3 allows remote attackers to execute arbitrary code via a crafted git ext:: URL when cloning a subrepository.
0