|
266391
|
7.5 |
HIGH
Network
|
debian libevent_project mozilla
|
debian_linux libevent thunderbird firefox firefox_esr
|
Stack-based buffer overflow in the evutil_parse_sockaddr_port function in evutil.c in libevent before 2.1.6-beta allows attackers to cause a denial of service (segmentation fault) via vectors involvi…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-10196
|
2024-11-21 11:43 |
2017-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266392
|
9.8 |
CRITICAL
Network
|
libevent_project debian
|
libevent debian_linux
|
The name_parse function in evdns.c in libevent before 2.1.6-beta allows remote attackers to have unspecified impact via vectors involving the label_len variable, which triggers an out-of-bounds stack…
|
CWE-125
Out-of-bounds Read
|
CVE-2016-10195
|
2024-11-21 11:43 |
2017-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266393
|
7.8 |
HIGH
Local
|
libgd
|
libgd
|
Integer overflow in gd_io.c in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecified impact via vectors involving the number of horizontal and vertical chunks i…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-10168
|
2024-11-21 11:43 |
2017-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266394
|
5.5 |
MEDIUM
Local
|
libgd
|
libgd
|
The gdImageCreateFromGd2Ctx function in gd_gd2.c in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to cause a denial of service (application crash) via a crafted image file.
|
CWE-20
Improper Input Validation
|
CVE-2016-10167
|
2024-11-21 11:43 |
2017-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266395
|
9.8 |
CRITICAL
Network
|
libgd
|
libgd
|
Integer underflow in the _gdContributionsAlloc function in gd_interpolation.c in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecified impact via vectors relate…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2016-10166
|
2024-11-21 11:43 |
2017-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266396
|
6.5 |
MEDIUM
Local
|
virglrenderer_project
|
virglrenderer
|
Memory leak in the vrend_renderer_context_create_internal function in vrend_decode.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (host memory consumption) b…
|
CWE-399
Resource Management Errors
|
CVE-2016-10163
|
2024-11-21 11:43 |
2017-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266397
|
6.0 |
MEDIUM
Local
|
qemu debian
|
qemu debian_linux
|
Memory leak in hw/watchdog/wdt_i6300esb.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption and QEMU process crash) via a large…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2016-10155
|
2024-11-21 11:43 |
2017-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266398
|
7.8 |
HIGH
Local
|
jasper_project
|
jasper
|
Integer overflow in the jpc_pi_nextcprl function in jpc_t2cod.c in JasPer before 1.900.20 allows remote attackers to have unspecified impact via a crafted file, which triggers use of an uninitialized…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-10251
|
2024-11-21 11:43 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266399
|
7.5 |
HIGH
Network
|
jasper_project
|
jasper
|
The jp2_colr_destroy function in jp2_cod.c in JasPer before 1.900.13 allows remote attackers to cause a denial of service (NULL pointer dereference) by leveraging incorrect cleanup of JP2 box data on…
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-10250
|
2024-11-21 11:43 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266400
|
7.8 |
HIGH
Local
|
jasper_project
|
jasper
|
Integer overflow in the jpc_dec_tiledecode function in jpc_dec.c in JasPer before 1.900.12 allows remote attackers to have unspecified impact via a crafted image file, which triggers a heap-based buf…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-10249
|
2024-11-21 11:43 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|