Show filters
252 Total Results
Displaying 171-180 of 252
Sort by:
Attacker Value
Unknown
CVE-2016-5317
Disclosure Date: January 20, 2017 (last updated November 25, 2024)
Buffer overflow in the PixarLogDecode function in libtiff.so in the PixarLogDecode function in libtiff 4.0.6 and earlier, as used in GNOME nautilus, allows attackers to cause a denial of service attack (crash) via a crafted TIFF file.
0
Attacker Value
Unknown
CVE-2016-9436
Disclosure Date: January 20, 2017 (last updated December 30, 2023)
parsetagx.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to a <i> tag.
0
Attacker Value
Unknown
CVE-2016-9435
Disclosure Date: January 20, 2017 (last updated December 30, 2023)
The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to <dd> tags.
0
Attacker Value
Unknown
CVE-2016-9427
Disclosure Date: December 12, 2016 (last updated November 25, 2024)
Integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (heap buffer overflow crash) and possibly execute arbitrary code via huge allocation.
0
Attacker Value
Unknown
CVE-2016-6318
Disclosure Date: September 07, 2016 (last updated November 25, 2024)
Stack-based buffer overflow in the FascistGecosUser function in lib/fascist.c in cracklib allows local users to cause a denial of service (application crash) or gain privileges via a long GECOS field, involving longbuffer.
0
Attacker Value
Unknown
CVE-2016-3992
Disclosure Date: July 26, 2016 (last updated November 25, 2024)
cronic before 3 allows local users to write to arbitrary files via a symlink attack on a (1) cronic.out.$$, (2) cronic.err.$$, or (3) cronic.trace.$$ file in /tmp.
0
Attacker Value
Unknown
CVE-2016-2150
Disclosure Date: June 09, 2016 (last updated November 25, 2024)
SPICE allows local guest OS users to read from or write to arbitrary host memory locations via crafted primary surface parameters, a similar issue to CVE-2015-5261.
0
Attacker Value
Unknown
CVE-2016-0749
Disclosure Date: June 09, 2016 (last updated November 25, 2024)
The smartcard interaction in SPICE allows remote attackers to cause a denial of service (QEMU-KVM process crash) or possibly execute arbitrary code via vectors related to connecting to a guest VM, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2015-8872
Disclosure Date: June 03, 2016 (last updated November 25, 2024)
The set_fat function in fat.c in dosfstools before 4.0 might allow attackers to corrupt a FAT12 filesystem or cause a denial of service (invalid memory read and crash) by writing an odd number of clusters to the third to last entry on a FAT12 filesystem, which triggers an "off-by-two error."
0
Attacker Value
Unknown
CVE-2016-4804
Disclosure Date: June 03, 2016 (last updated November 25, 2024)
The read_boot function in boot.c in dosfstools before 4.0 allows attackers to cause a denial of service (crash) via a crafted filesystem, which triggers a heap-based buffer overflow in the (1) read_fat function or an out-of-bounds heap read in (2) get_fat function.
0