|
264781
|
6.1 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
An issue was discovered in Open-Xchange OX App Suite before 7.8.2-rev5. JavaScript code can be used as part of ical attachments within scheduling E-Mails. This content, for example an appointment's l…
|
CWE-79
Cross-site Scripting
|
CVE-2016-5740
|
2024-11-21 11:54 |
2016-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264782
|
9.8 |
CRITICAL
Network
|
x.org fedoraproject
|
libxv fedora
|
The (1) XvQueryAdaptors and (2) XvQueryEncodings functions in X.org libXv before 1.0.11 allow remote X servers to trigger out-of-bounds memory access operations via vectors involving length specifica…
|
CWE-119 CWE-125
Incorrect Access of Indexable Resource ('Range Error') Out-of-bounds Read
|
CVE-2016-5407
|
2024-11-21 11:54 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264783
|
7.8 |
HIGH
Local
|
intel
|
graphics_driver
|
The igdkmd64 module in the Intel Graphics Driver through 15.33.42.435, 15.36.x through 15.36.30.4385, and 15.40.x through 15.40.4404 on Windows allows local users to cause a denial of service (crash)…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-5647
|
2024-11-21 11:54 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264784
|
9.8 |
CRITICAL
Network
|
oracle imagemagick
|
solaris imagemagick
|
The DCM reader in ImageMagick before 6.9.4-5 and 7.x before 7.0.1-7 allows remote attackers to have unspecified impact by leveraging lack of validation of (1) pixel.red, (2) pixel.green, and (3) pixe…
|
CWE-20
Improper Input Validation
|
CVE-2016-5691
|
2024-11-21 11:54 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264785
|
9.8 |
CRITICAL
Network
|
oracle imagemagick
|
solaris imagemagick
|
The ReadDCMImage function in DCM reader in ImageMagick before 6.9.4-5 and 7.x before 7.0.1-7 allows remote attackers to have unspecified impact via vectors involving the for statement in computing th…
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-5690
|
2024-11-21 11:54 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264786
|
9.8 |
CRITICAL
Network
|
oracle imagemagick
|
solaris imagemagick
|
The DCM reader in ImageMagick before 6.9.4-5 and 7.x before 7.0.1-7 allows remote attackers to have unspecified impact by leveraging lack of NULL pointer checks.
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-5689
|
2024-11-21 11:54 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264787
|
8.1 |
HIGH
Network
|
oracle imagemagick
|
solaris imagemagick
|
The WPG parser in ImageMagick before 6.9.4-4 and 7.x before 7.0.1-5, when a memory limit is set, allows remote attackers to have unspecified impact via vectors related to the SetImageExtent return-va…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-5688
|
2024-11-21 11:54 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264788
|
9.8 |
CRITICAL
Network
|
imagemagick oracle
|
imagemagick solaris
|
The VerticalFilter function in the DDS coder in ImageMagick before 6.9.4-3 and 7.x before 7.0.1-4 allows remote attackers to have unspecified impact via a crafted DDS file, which triggers an out-of-b…
|
CWE-125
Out-of-bounds Read
|
CVE-2016-5687
|
2024-11-21 11:54 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264789
|
7.1 |
HIGH
Network
|
debian postgresql
|
debian_linux postgresql
|
PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x before 9.5.4 might allow remote authenticated users with the CREATEDB or CREATEROLE role to gain supe…
|
CWE-94
Code Injection
|
CVE-2016-5424
|
2024-11-21 11:54 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264790
|
8.3 |
HIGH
Network
|
debian postgresql
|
debian_linux postgresql
|
PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x before 9.5.4 allow remote authenticated users to cause a denial of service (NULL pointer dereference …
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-5423
|
2024-11-21 11:54 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|