|
267801
|
8.8 |
HIGH
Network
|
squareup
|
git-fastclone
|
git-fastclone before 1.0.1 permits arbitrary shell command execution from .gitmodules. If an attacker can instruct a user to run a recursive clone from a repository they control, they can get a clien…
|
CWE-77
Command Injection
|
CVE-2015-8968
|
2024-11-21 11:39 |
2016-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267802
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
fs/overlayfs/copy_up.c in the Linux kernel before 4.2.6 uses an incorrect cleanup code path, which allows local users to cause a denial of service (dentry reference leak) via filesystem operations on…
|
CWE-399
Resource Management Errors
|
CVE-2015-8953
|
2024-11-21 11:39 |
2016-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267803
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The mbcache feature in the ext2 and ext4 filesystem implementations in the Linux kernel before 4.6 mishandles xattr block caching, which allows local users to cause a denial of service (soft lockup) …
|
CWE-19
Data Processing Errors
|
CVE-2015-8952
|
2024-11-21 11:39 |
2016-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267804
|
6.1 |
MEDIUM
Local
|
linux google
|
linux_kernel android
|
The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 4.2 allows local users to obtain sensitive information or cause a denial of service (NULL pointer dereference) …
|
CWE-476
NULL Pointer Dereference
|
CVE-2015-8956
|
2024-11-21 11:39 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267805
|
7.3 |
HIGH
Local
|
linux google
|
linux_kernel android
|
arch/arm64/kernel/perf_event.c in the Linux kernel before 4.1 on arm64 platforms allows local users to gain privileges or cause a denial of service (invalid pointer dereference) via vectors involving…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-8955
|
2024-11-21 11:39 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267806
|
7.8 |
HIGH
Local
|
google
|
android
|
Multiple use-after-free vulnerabilities in sound/soc/msm/qdsp6v2/msm-lsm-client.c in the Qualcomm sound driver in Android before 2016-10-05 on Nexus 5X, Nexus 6P, and Android One devices allow attack…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-8951
|
2024-11-21 11:39 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267807
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
arch/arm64/mm/dma-mapping.c in the Linux kernel before 4.0.3, as used in the ION subsystem in Android and other products, does not initialize certain data structures, which allows local users to obta…
|
CWE-200
Information Exposure
|
CVE-2015-8950
|
2024-11-21 11:39 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267808
|
9.8 |
CRITICAL
Network
|
debian uclouvain
|
debian_linux openjpeg
|
Use-after-free vulnerability in the opj_j2k_write_mco function in j2k.c in OpenJPEG before 2.1.1 allows remote attackers to have unspecified impact via unknown vectors.
|
CWE-416
Use After Free
|
CVE-2015-8871
|
2024-11-21 11:39 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267809
|
8.1 |
HIGH
Network
|
ietf netapp
|
transport_layer_security snap_creator_framework data_ontap_edge snapdrive snapmanager smi-s_provider host_agent clustered_data_ontap_antivirus_connector solidfire_\&_hci_m…
|
The TLS protocol 1.2 and earlier supports the rsa_fixed_dh, dss_fixed_dh, rsa_fixed_ecdh, and ecdsa_fixed_ecdh values for ClientCertificateType but does not directly document the ability to compute t…
|
CWE-295
Improper Certificate Validation
|
CVE-2015-8960
|
2024-11-21 11:39 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267810
|
5.5 |
MEDIUM
Local
|
suse canonical libarchive
|
linux_enterprise_software_development_kit linux_enterprise_server linux_enterprise_desktop ubuntu_linux libarchive
|
The copy_from_lzss_window function in archive_read_support_format_rar.c in libarchive 3.2.0 and earlier allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted ra…
|
CWE-125
Out-of-bounds Read
|
CVE-2015-8934
|
2024-11-21 11:39 |
2016-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|