|
265681
|
7.8 |
HIGH
Local
|
nvidia
|
gpu_driver_r340 gpu_driver_r352
|
The Escape interface in the Kernel Mode Driver layer in the NVIDIA GPU graphics driver R340 before 341.95 and R352 before 354.74 on Windows improperly allows access to restricted functionality, which…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2556
|
2024-11-21 11:48 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265682
|
8.4 |
HIGH
Local
|
qemu canonical debian redhat
|
qemu ubuntu_linux debian_linux openstack virtualization enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus enterprise…
|
The net_checksum_calculate function in net/checksum.c in QEMU allows local guest OS users to cause a denial of service (out-of-bounds heap read and crash) via the payload length in a crafted packet.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2857
|
2024-11-21 11:48 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265683
|
9.8 |
CRITICAL
Network
|
debian kamailio
|
debian_linux kamailio
|
Heap-based buffer overflow in the encode_msg function in encode_msg.c in the SEAS module in Kamailio (formerly OpenSER and SER) before 4.3.5 allows remote attackers to cause a denial of service (memo…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2385
|
2024-11-21 11:48 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265684
|
7.5 |
HIGH
Network
|
postgresql
|
postgresql
|
PostgreSQL before 9.5.x before 9.5.2 does not properly maintain row-security status in cached plans, which might allow attackers to bypass intended access restrictions by leveraging a session that pe…
|
CWE-254
7PK - Security Features
|
CVE-2016-2193
|
2024-11-21 11:48 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265685
|
7.8 |
HIGH
Local
|
lenovo
|
fingerprint_manager touch_fingerprint
|
Lenovo Fingerprint Manager before 8.01.57 and Touch Fingerprint before 1.00.08 use weak ACLs for unspecified (1) services and (2) files, which allows local users to gain privileges by invalidating lo…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2393
|
2024-11-21 11:48 |
2016-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265686
|
3.1 |
LOW
Network
|
djangoproject
|
django
|
The password hasher in contrib/auth/hashers.py in Django before 1.8.10 and 1.9.x before 1.9.3 allows remote attackers to enumerate users via a timing attack involving login requests.
|
CWE-200
Information Exposure
|
CVE-2016-2513
|
2024-11-21 11:48 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265687
|
7.4 |
HIGH
Network
|
djangoproject
|
django
|
The utils.http.is_safe_url function in Django before 1.8.10 and 1.9.x before 1.9.3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks or possibly conduct cr…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2512
|
2024-11-21 11:48 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265688
|
7.5 |
HIGH
Network
|
perl debian oracle opensuse canonical
|
perl debian_linux solaris database_server communications_billing_and_revenue_management enterprise_manager_base_platform configuration_manager timesten_in-memory_database open…
|
Perl might allow context-dependent attackers to bypass the taint protection mechanism in a child process via duplicate environment variables in envp.
|
CWE-20
Improper Input Validation
|
CVE-2016-2381
|
2024-11-21 11:48 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265689
|
9.8 |
CRITICAL
Network
|
suse opensuse git-scm
|
openstack_cloud linux_enterprise_software_development_kit linux_enterprise_server linux_enterprise_debuginfo leap opensuse suse_linux_enterprise_server git
|
Integer overflow in Git before 2.7.4 allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, which triggers a heap-based buffer overflow.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2324
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265690
|
9.8 |
CRITICAL
Network
|
suse opensuse git-scm
|
openstack_cloud linux_enterprise_software_development_kit linux_enterprise_server linux_enterprise_debuginfo leap opensuse suse_linux_enterprise_server git
|
revision.c in git before 2.7.4 uses an incorrect integer data type, which allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, leading to a heap-based b…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2315
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|