|
264501
|
7.5 |
HIGH
Network
|
redhat
|
enterprise_linux_desktop enterprise_linux_workstation ceph_storage_osd ceph_storage_mon enterprise_linux_server ceph_storage
|
A flaw was found in the way Ceph Object Gateway would process cross-origin HTTP requests if the CORS policy was set to allow origin on a bucket. A remote unauthenticated attacker could use this flaw …
|
-
|
CVE-2016-9579
|
2024-11-21 12:01 |
2018-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264502
|
6.5 |
MEDIUM
Network
|
uclouvain debian
|
openjpeg debian_linux
|
A NULL pointer dereference flaw was found in the way openjpeg 2.1.2 decoded certain input images. Due to a logic error in the code responsible for decoding the input image, an application using openj…
|
-
|
CVE-2016-9572
|
2024-11-21 12:01 |
2018-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264503
|
8.8 |
HIGH
Network
|
uclouvain
|
openjpeg
|
An infinite loop vulnerability in tiftoimage that results in heap buffer overflow in convert_32s_C1P1 was found in openjpeg 2.1.2.
|
-
|
CVE-2016-9581
|
2024-11-21 12:01 |
2018-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264504
|
8.1 |
HIGH
Network
|
uclouvain redhat debian
|
openjpeg enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus debian_linux
|
An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_image tool. Converting a specially crafted JPEG2000 file to another format could cause the application to crash or, pote…
|
-
|
CVE-2016-9573
|
2024-11-21 12:01 |
2018-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264505
|
7.5 |
HIGH
Network
|
canonical xmlsoft debian hp opensuse
|
ubuntu_linux libxml2 debian_linux icewall_file_manager icewall_federation_agent leap
|
It was found that Red Hat JBoss Core Services erratum RHSA-2016:2957 for CVE-2016-3705 did not actually include the fix for the issue found in libxml2, making it vulnerable to a Denial of Service att…
|
-
|
CVE-2016-9597
|
2024-11-21 12:01 |
2018-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264506
|
9.9 |
CRITICAL
Network
|
qemu redhat citrix debian
|
qemu enterprise_linux_desktop xenserver enterprise_linux_workstation openstack enterprise_linux_server debian_linux enterprise_linux_server_aus enterprise_linux_server_eus
|
A heap buffer overflow flaw was found in QEMU's Cirrus CLGD 54xx VGA emulator's VNC display driver support before 2.9; the issue could occur when a VNC client attempted to update its display after a …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-9603
|
2024-11-21 12:01 |
2018-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264507
|
7.5 |
HIGH
Network
|
spice_project redhat debian
|
spice enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server debian_linux enterprise_linux_server_aus enterprise_linux_server_eus
|
A vulnerability was discovered in SPICE before 0.13.90 in the server's protocol handling. An attacker able to connect to the SPICE server could send crafted messages which would cause the process to …
|
CWE-20
Improper Input Validation
|
CVE-2016-9578
|
2024-11-21 12:01 |
2018-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264508
|
8.8 |
HIGH
Network
|
spice_project redhat debian
|
spice enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server debian_linux enterprise_linux_server_aus enterprise_linux_server_eus
|
A vulnerability was discovered in SPICE before 0.13.90 in the server's protocol handling. An authenticated attacker could send crafted messages to the SPICE server causing a heap overflow leading to …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-9577
|
2024-11-21 12:01 |
2018-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264509
|
5.5 |
MEDIUM
Local
|
theforeman redhat
|
katello satellite satellite_capsule
|
A flaw was found in katello-debug before 3.4.0 where certain scripts and log files used insecure temporary files. A local user could exploit this flaw to conduct a symbolic-link attack, allowing them…
|
CWE-59
Link Following
|
CVE-2016-9595
|
2024-11-21 12:01 |
2018-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264510
|
5.9 |
MEDIUM
Network
|
mozilla
|
network_security_services
|
nss before version 3.30 is vulnerable to a remote denial of service during the session handshake when using SessionTicket extension and ECDHE-ECDSA.
|
CWE-384
Session Fixation
|
CVE-2016-9574
|
2024-11-21 12:01 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|