|
258311
|
7.8 |
HIGH
Local
|
google
|
android
|
A remote code execution vulnerability in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as C…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-0407
|
2024-11-21 12:02 |
2017-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258312
|
7.8 |
HIGH
Local
|
google
|
android
|
A remote code execution vulnerability in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as C…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-0406
|
2024-11-21 12:02 |
2017-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258313
|
7.8 |
HIGH
Local
|
google
|
android
|
A remote code execution vulnerability in Surfaceflinger could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-0405
|
2024-11-21 12:02 |
2017-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258314
|
5.9 |
MEDIUM
Network
|
exim canonical debian
|
exim ubuntu_linux debian_linux
|
Exim before 4.87.1 might allow remote attackers to obtain the private DKIM signing key via vectors related to log files and bounce messages.
|
CWE-320
Key Management Errors
|
CVE-2016-9963
|
2024-11-21 12:02 |
2017-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258315
|
6.4 |
MEDIUM
Local
|
docker
|
docker
|
RunC allowed additional container processes via 'runc exec' to be ptraced by the pid 1 of the container. This allows the main processes of the container, if running as root, to gain access to file-d…
|
CWE-362
Race Condition
|
CVE-2016-9962
|
2024-11-21 12:02 |
2017-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258316
|
7.5 |
HIGH
Network
|
cryptopp debian
|
crypto\+\+ debian_linux
|
Crypto++ (aka cryptopp and libcrypto++) 5.6.4 contained a bug in its ASN.1 BER decoding routine. The library will allocate a memory block based on the length field of the ASN.1 object. If there is no…
|
CWE-20
Improper Input Validation
|
CVE-2016-9939
|
2024-11-21 12:02 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258317
|
3.3 |
LOW
Local
|
xen
|
xen
|
CMPXCHG8B emulation in Xen 3.3.x through 4.7.x on x86 systems allows local HVM guest OS users to obtain sensitive information from host stack memory via a "supposedly-ignored" operand size prefix.
|
CWE-200
Information Exposure
|
CVE-2016-9932
|
2024-11-21 12:02 |
2017-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258318
|
5.5 |
MEDIUM
Local
|
google
|
android
|
An information disclosure vulnerability in Audioserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be …
|
CWE-200
Information Exposure
|
CVE-2017-0398
|
2024-11-21 12:02 |
2017-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258319
|
7.0 |
HIGH
Local
|
linux
|
linux_kernel
|
An elevation of privilege vulnerability in the kernel sound subsystem could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Hig…
|
NVD-CWE-noinfo
|
CVE-2017-0404
|
2024-11-21 12:02 |
2017-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258320
|
7.0 |
HIGH
Local
|
linux
|
linux_kernel
|
An elevation of privilege vulnerability in the kernel performance subsystem could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated …
|
NVD-CWE-noinfo
|
CVE-2017-0403
|
2024-11-21 12:02 |
2017-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|