|
265841
|
9.8 |
CRITICAL
Network
|
lha_for_unix_project
|
lha_for_unix
|
Integer underflow in header.c in lha allows remote attackers to have unspecified impact via a large header size value for the (1) level0 or (2) level1 header in a lha archive, which triggers a buffer…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2016-1925
|
2024-11-21 11:47 |
2017-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265842
|
7.4 |
HIGH
Network
|
hexchat_project
|
hexchat
|
Directory traversal vulnerability in the client in HexChat 2.11.0 allows remote IRC servers to read or modify arbitrary files via a .. (dot dot) in the server name.
|
CWE-22
Path Traversal
|
CVE-2016-2087
|
2024-11-21 11:47 |
2017-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265843
|
9.8 |
CRITICAL
Network
|
fedoraproject freedesktop debian canonical
|
fedora libbsd debian_linux ubuntu_linux
|
Off-by-one vulnerability in the fgetwln function in libbsd before 0.8.2 allows attackers to have unspecified impact via unknown vectors, which trigger a heap-based buffer overflow.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2090
|
2024-11-21 11:47 |
2017-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265844
|
5.5 |
MEDIUM
Local
|
qemu debian
|
qemu debian_linux
|
QEMU (aka Quick Emulator) built with the e1000 NIC emulation support is vulnerable to an infinite loop issue. It could occur while processing data via transmit or receive descriptors, provided the in…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2016-1981
|
2024-11-21 11:47 |
2016-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265845
|
5.5 |
MEDIUM
Local
|
qemu debian
|
qemu debian_linux
|
QEMU (aka Quick Emulator) built with the TPR optimization for 32-bit Windows guests support is vulnerable to a null pointer dereference flaw. It occurs while doing I/O port write operations via hmp i…
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-1922
|
2024-11-21 11:47 |
2016-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265846
|
9.8 |
CRITICAL
Network
|
hp openssl oracle
|
icewall_sso icewall_mcrp icewall_sso_agent_option icewall_federation_agent openssl linux
|
The BN_bn2dec function in crypto/bn/bn_print.c in OpenSSL before 1.1.0 does not properly validate division results, which allows remote attackers to cause a denial of service (out-of-bounds write and…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-2182
|
2024-11-21 11:47 |
2016-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265847
|
7.5 |
HIGH
Network
|
openssl oracle
|
openssl linux
|
The Anti-Replay feature in the DTLS implementation in OpenSSL before 1.1.0 mishandles early use of a new epoch number in conjunction with a large sequence number, which allows remote attackers to cau…
|
CWE-189
Numeric Errors
|
CVE-2016-2181
|
2024-11-21 11:47 |
2016-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265848
|
7.5 |
HIGH
Network
|
openssl oracle
|
openssl linux
|
The DTLS implementation in OpenSSL before 1.1.0 does not properly restrict the lifetime of queue entries associated with unused out-of-order messages, which allows remote attackers to cause a denial …
|
CWE-399
Resource Management Errors
|
CVE-2016-2179
|
2024-11-21 11:47 |
2016-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265849
|
7.5 |
HIGH
Network
|
redhat python cisco openssl oracle nodejs
|
enterprise_linux jboss_enterprise_application_platform jboss_enterprise_web_server jboss_web_server python content_security_management_appliance openssl database node.js
|
The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of approximately four billion blocks, which makes it easier for re…
|
CWE-200
Information Exposure
|
CVE-2016-2183
|
2024-11-21 11:47 |
2016-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265850
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
sound/soc/msm/qdsp6v2/msm-audio-effects-q6-v2.c in the MSM QDSP6 audio driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other pr…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-2065
|
2024-11-21 11:47 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|