Show filters
117 Total Results
Displaying 21-30 of 117
Sort by:
Attacker Value
Unknown

CVE-2016-9961

Disclosure Date: June 06, 2017 (last updated November 08, 2023)
game-music-emu before 0.6.1 mishandles unspecified integer values.
0
Attacker Value
Unknown

CVE-2017-8386

Disclosure Date: June 01, 2017 (last updated November 08, 2023)
git-shell in git before 2.4.12, 2.5.x before 2.5.6, 2.6.x before 2.6.7, 2.7.x before 2.7.5, 2.8.x before 2.8.5, 2.9.x before 2.9.4, 2.10.x before 2.10.3, 2.11.x before 2.11.2, and 2.12.x before 2.12.3 might allow remote authenticated users to gain privileges via a repository name that starts with a - (dash) character.
0
Attacker Value
Unknown

CVE-2016-5178

Disclosure Date: May 23, 2017 (last updated November 08, 2023)
Multiple unspecified vulnerabilities in Google Chrome before 53.0.2785.143 allow remote attackers to cause a denial of service or possibly have other impact via unknown vectors.
0
Attacker Value
Unknown

CVE-2016-5177

Disclosure Date: May 23, 2017 (last updated November 08, 2023)
Use-after-free vulnerability in V8 in Google Chrome before 53.0.2785.143 allows remote attackers to cause a denial of service (crash) or possibly have unspecified other impact via unknown vectors.
0
Attacker Value
Unknown

CVE-2016-2173

Disclosure Date: April 21, 2017 (last updated November 26, 2024)
org.springframework.core.serializer.DefaultDeserializer in Spring AMQP before 1.5.5 allows remote attackers to execute arbitrary code.
Attacker Value
Unknown

CVE-2016-6299

Disclosure Date: April 14, 2017 (last updated November 26, 2024)
The scm plug-in in mock might allow attackers to bypass the intended chroot protection mechanism and gain root privileges via a crafted spec file.
0
Attacker Value
Unknown

CVE-2016-8884

Disclosure Date: March 28, 2017 (last updated November 08, 2023)
The bmp_getdata function in libjasper/bmp/bmp_dec.c in JasPer 1.900.5 allows remote attackers to cause a denial of service (NULL pointer dereference) by calling the imginfo command with a crafted BMP image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-8690.
0
Attacker Value
Unknown

CVE-2016-9243

Disclosure Date: March 27, 2017 (last updated September 10, 2024)
HKDF in cryptography before 1.5.2 returns an empty byte-string if used with a length less than algorithm.digest_size.
Attacker Value
Unknown

CVE-2016-8887

Disclosure Date: March 23, 2017 (last updated November 08, 2023)
The jp2_colr_destroy function in libjasper/jp2/jp2_cod.c in JasPer before 1.900.10 allows remote attackers to cause a denial of service (NULL pointer dereference).
0
Attacker Value
Unknown

CVE-2016-6225

Disclosure Date: March 23, 2017 (last updated November 08, 2023)
xbcrypt in Percona XtraBackup before 2.3.6 and 2.4.x before 2.4.5 does not properly set the initialization vector (IV) for encryption, which makes it easier for context-dependent attackers to obtain sensitive information from encrypted backup files via a Chosen-Plaintext attack. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6394.
0