Show filters
274 Total Results
Displaying 181-190 of 274
Sort by:
Attacker Value
Unknown

CVE-2017-3317

Disclosure Date: January 27, 2017 (last updated November 25, 2024)
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Logging). Supported versions that are affected are 5.5.53 and earlier, 5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS v3.0 Base Score 4.0 (Availability impacts).
Attacker Value
Unknown

CVE-2016-9446

Disclosure Date: January 23, 2017 (last updated November 08, 2023)
The vmnc decoder in the gstreamer does not initialize the render canvas, which allows remote attackers to obtain sensitive information as demonstrated by thumbnailing a simple 1 frame vmnc movie that does not draw to the allocated render canvas.
Attacker Value
Unknown

CVE-2016-9401

Disclosure Date: January 23, 2017 (last updated November 25, 2024)
popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address.
Attacker Value
Unknown

CVE-2016-7426

Disclosure Date: January 13, 2017 (last updated November 25, 2024)
NTP before 4.2.8p9 rate limits responses received from the configured sources when rate limiting for all associations is enabled, which allows remote attackers to cause a denial of service (prevent responses from the sources) by sending responses with a spoofed source address.
Attacker Value
Unknown

CVE-2016-9811

Disclosure Date: January 13, 2017 (last updated November 08, 2023)
The windows_icon_typefind function in gst-plugins-base in GStreamer before 1.10.2, when G_SLICE is set to always-malloc, allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted ico file.
Attacker Value
Unknown

CVE-2016-9131

Disclosure Date: January 12, 2017 (last updated November 25, 2024)
named in ISC BIND 9.x before 9.9.9-P5, 9.10.x before 9.10.4-P5, and 9.11.x before 9.11.0-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a malformed response to an RTYPE ANY query.
Attacker Value
Unknown

CVE-2016-8864

Disclosure Date: November 02, 2016 (last updated November 25, 2024)
named in ISC BIND 9.x before 9.9.9-P4, 9.10.x before 9.10.4-P4, and 9.11.x before 9.11.0-P1 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a DNAME record in the answer section of a response to a recursive query, related to db.c and resolver.c.
Attacker Value
Unknown

CVE-2016-5624

Disclosure Date: October 25, 2016 (last updated November 25, 2024)
Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier allows remote authenticated users to affect availability via vectors related to DML.
Attacker Value
Unknown

CVE-2016-5626

Disclosure Date: October 25, 2016 (last updated November 25, 2024)
Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier, 5.6.32 and earlier, and 5.7.14 and earlier allows remote authenticated users to affect availability via vectors related to GIS.
Attacker Value
Unknown

CVE-2016-5612

Disclosure Date: October 25, 2016 (last updated November 25, 2024)
Unspecified vulnerability in Oracle MySQL 5.5.50 and earlier, 5.6.31 and earlier, and 5.7.13 and earlier allows remote authenticated users to affect availability via vectors related to DML.