|
266531
|
9.8 |
CRITICAL
Network
|
adobe
|
digital_editions
|
Adobe Digital Editions before 4.5.1 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0954
|
2024-11-21 11:42 |
2016-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266532
|
9.8 |
CRITICAL
Network
|
openssl pulsesecure
|
openssl steel_belted_radius client
|
The fmtstr function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g improperly calculates string lengths, which allows remote attackers to cause a denial of service (ov…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0799
|
2024-11-21 11:42 |
2016-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266533
|
7.5 |
HIGH
Network
|
openssl
|
openssl
|
Memory leak in the SRP_VBASE_get_by_user implementation in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g allows remote attackers to cause a denial of service (memory consumption) by providing a…
|
CWE-399
Resource Management Errors
|
CVE-2016-0798
|
2024-11-21 11:42 |
2016-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266534
|
7.5 |
HIGH
Network
|
openssl nodejs canonical debian
|
openssl node.js ubuntu_linux debian_linux
|
Multiple integer overflows in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g allow remote attackers to cause a denial of service (heap memory corruption or NULL pointer dereference) or possibly …
|
NVD-CWE-Other
|
CVE-2016-0797
|
2024-11-21 11:42 |
2016-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266535
|
9.8 |
CRITICAL
Network
|
oracle openssl google canonical debian
|
mysql openssl android ubuntu_linux debian_linux
|
Double free vulnerability in the dsa_priv_decode function in crypto/dsa/dsa_ameth.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g allows remote attackers to cause a denial of service (memory…
|
NVD-CWE-Other
|
CVE-2016-0705
|
2024-11-21 11:42 |
2016-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266536
|
5.1 |
MEDIUM
Local
|
openssl nodejs debian canonical
|
openssl node.js debian_linux ubuntu_linux
|
The MOD_EXP_CTIME_COPY_FROM_PREBUF function in crypto/bn/bn_exp.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g does not properly consider cache-bank access times during modular exponentiati…
|
CWE-200
Information Exposure
|
CVE-2016-0702
|
2024-11-21 11:42 |
2016-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266537
|
5.9 |
MEDIUM
Network
|
openssl
|
openssl
|
An oracle protection mechanism in the get_client_master_key function in s2_srvr.c in the SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0…
|
CWE-200
Information Exposure
|
CVE-2016-0704
|
2024-11-21 11:42 |
2016-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266538
|
5.9 |
MEDIUM
Network
|
openssl
|
openssl
|
The get_client_master_key function in s2_srvr.c in the SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a accepts a nonzero CLIENT-MASTE…
|
CWE-200
Information Exposure
|
CVE-2016-0703
|
2024-11-21 11:42 |
2016-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266539
|
5.9 |
MEDIUM
Network
|
openssl pulsesecure
|
openssl steel_belted_radius client
|
The SSLv2 protocol, as used in OpenSSL before 1.0.1s and 1.0.2 before 1.0.2g and other products, requires a server to send a ServerVerify message before establishing that a client possesses certain p…
|
CWE-310 CWE-200
Cryptographic Issues Information Exposure
|
CVE-2016-0800
|
2024-11-21 11:42 |
2016-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266540
|
6.3 |
MEDIUM
Network
|
debian apache canonical
|
debian_linux tomcat ubuntu_linux
|
The setGlobalContext method in org/apache/naming/factory/ResourceLinkFactory.java in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M3 does not consider whether ResourceLink…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0763
|
2024-11-21 11:42 |
2016-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|