Show filters
201 Total Results
Displaying 81-90 of 201
Sort by:
Attacker Value
Unknown

CVE-2016-4414

Disclosure Date: June 13, 2016 (last updated November 25, 2024)
The onReadyRead function in core/coreauthhandler.cpp in Quassel before 0.12.4 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via invalid handshake data.
0
Attacker Value
Unknown

CVE-2016-3096

Disclosure Date: June 03, 2016 (last updated November 25, 2024)
The create_script function in the lxc_container module in Ansible before 1.9.6-1 and 2.x before 2.0.2.0 allows local users to write to arbitrary files or gain privileges via a symlink attack on (1) /opt/.lxc-attach-script, (2) the archived container in the archive_path directory, or the (3) lxc-attach-script.log or (4) lxc-attach-script.err files in the temporary directory.
0
Attacker Value
Unknown

CVE-2016-3075

Disclosure Date: June 01, 2016 (last updated November 08, 2023)
Stack-based buffer overflow in the nss_dns implementation of the getnetbyname function in GNU C Library (aka glibc) before 2.24 allows context-dependent attackers to cause a denial of service (stack consumption and application crash) via a long name.
0
Attacker Value
Unknown

CVE-2016-1234

Disclosure Date: June 01, 2016 (last updated November 08, 2023)
Stack-based buffer overflow in the glob implementation in GNU C Library (aka glibc) before 2.24, when GLOB_ALTDIRFUNC is used, allows context-dependent attackers to cause a denial of service (crash) via a long name.
0
Attacker Value
Unknown

CVE-2016-4021

Disclosure Date: May 26, 2016 (last updated November 25, 2024)
The read_binary function in buffer.c in pgpdump before 0.30 allows context-dependent attackers to cause a denial of service (infinite loop and CPU consumption) via crafted input, as demonstrated by the \xa3\x03 string.
0
Attacker Value
Unknown

CVE-2016-3959

Disclosure Date: May 23, 2016 (last updated November 08, 2023)
The Verify function in crypto/dsa/dsa.go in Go before 1.5.4 and 1.6.x before 1.6.1 does not properly check parameters passed to the big integer library, which might allow remote attackers to cause a denial of service (infinite loop) via a crafted public key to a program that uses HTTPS client certificates or SSH server libraries.
0
Attacker Value
Unknown

CVE-2016-4001

Disclosure Date: May 23, 2016 (last updated November 25, 2024)
Buffer overflow in the stellaris_enet_receive function in hw/net/stellaris_enet.c in QEMU, when the Stellaris ethernet controller is configured to accept large packets, allows remote attackers to cause a denial of service (QEMU crash) via a large packet.
Attacker Value
Unknown

CVE-2016-4037

Disclosure Date: May 23, 2016 (last updated November 25, 2024)
The ehci_advance_state function in hw/usb/hcd-ehci.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via a circular split isochronous transfer descriptor (siTD) list, a related issue to CVE-2015-8558.
Attacker Value
Unknown

CVE-2016-3674

Disclosure Date: May 17, 2016 (last updated November 25, 2024)
Multiple XML external entity (XXE) vulnerabilities in the (1) Dom4JDriver, (2) DomDriver, (3) JDomDriver, (4) JDom2Driver, (5) SjsxpDriver, (6) StandardStaxDriver, and (7) WstxDriver drivers in XStream before 1.4.9 allow remote attackers to read arbitrary files via a crafted XML document.
0
Attacker Value
Unknown

CVE-2015-8868

Disclosure Date: May 06, 2016 (last updated November 25, 2024)
Heap-based buffer overflow in the ExponentialFunction::ExponentialFunction function in Poppler before 0.40.0 allows remote attackers to cause a denial of service (memory corruption and crash) or possibly execute arbitrary code via an invalid blend mode in the ExtGState dictionary in a crafted PDF document.
0