|
267561
|
8.8 |
HIGH
Network
|
opensuse php
|
leap php
|
ext/phar/phar_object.c in PHP before 5.5.32, 5.6.x before 5.6.18, and 7.x before 7.0.3 mishandles zero-length uncompressed data, which allows remote attackers to cause a denial of service (heap memor…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4342
|
2024-11-21 11:51 |
2016-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267562
|
7.5 |
HIGH
Network
|
gnome debian opensuse
|
librsvg debian_linux leap opensuse
|
The _rsvg_css_normalize_font_size function in librsvg 2.40.2 allows context-dependent attackers to cause a denial of service (stack consumption and application crash) via circular definitions in an S…
|
CWE-20
Improper Input Validation
|
CVE-2016-4348
|
2024-11-21 11:51 |
2016-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267563
|
9.8 |
CRITICAL
Network
|
php apple
|
php mac_os_x
|
Multiple integer overflows in the mbfl_strcut function in ext/mbstring/libmbfl/mbfl/mbfilter.c in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 allow remote attackers to cause a denial…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4073
|
2024-11-21 11:51 |
2016-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267564
|
9.8 |
CRITICAL
Network
|
php apple
|
php mac_os_x
|
The Phar extension in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 allows remote attackers to execute arbitrary code via a crafted filename, as demonstrated by mishandling of \0 chara…
|
CWE-20
Improper Input Validation
|
CVE-2016-4072
|
2024-11-21 11:51 |
2016-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267565
|
9.8 |
CRITICAL
Network
|
php apple
|
php mac_os_x
|
Format string vulnerability in the php_snmp_error function in ext/snmp/snmp.c in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 allows remote attackers to execute arbitrary code via for…
|
CWE-20
Improper Input Validation
|
CVE-2016-4071
|
2024-11-21 11:51 |
2016-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267566
|
7.5 |
HIGH
Network
|
php
|
php
|
Integer overflow in the php_raw_url_encode function in ext/standard/url.c in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 allows remote attackers to cause a denial of service (applica…
|
CWE-189
Numeric Errors
|
CVE-2016-4070
|
2024-11-21 11:51 |
2016-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267567
|
9.8 |
CRITICAL
Network
|
lantronix
|
xprintserver_firmware
|
Lantronix xPrintServer devices with firmware before 5.0.1-65 have hardcoded credentials, which allows remote attackers to obtain root access via unspecified vectors.
|
CWE-255 NVD-CWE-Other
Credentials Management
|
CVE-2016-4325
|
2024-11-21 11:51 |
2016-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267568
|
9.8 |
CRITICAL
Network
|
enlightenment debian opensuse
|
imlib2 debian_linux opensuse
|
Integer overflow in imlib2 before 1.4.9 on 32-bit platforms allows remote attackers to execute arbitrary code via large dimensions in an image, which triggers an out-of-bounds heap memory write opera…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4024
|
2024-11-21 11:51 |
2016-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267569
|
8.2 |
HIGH
Network
|
debian enlightenment
|
debian_linux imlib2
|
The GIF loader in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (application crash) or obtain sensitive information via a crafted image, which triggers an out-of-bounds rea…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3994
|
2024-11-21 11:51 |
2016-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267570
|
7.5 |
HIGH
Network
|
enlightenment debian
|
imlib2 debian_linux
|
Off-by-one error in the __imlib_MergeUpdate function in lib/updates.c in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via crafte…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3993
|
2024-11-21 11:51 |
2016-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|