|
267131
|
4.6 |
MEDIUM
Physics
|
linux canonical novell
|
linux_kernel ubuntu_linux suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension su…
|
The create_fixed_stream_quirk function in sound/usb/quirks.c in the snd-usb-audio driver in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL poin…
|
NVD-CWE-Other
|
CVE-2016-2184
|
2024-11-21 11:47 |
2016-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267132
|
7.8 |
HIGH
Local
|
linux debian redhat oracle
|
linux_kernel debian_linux enterprise_linux linux
|
The fork implementation in the Linux kernel before 4.5 on s390 platforms mishandles the case of four page-table levels, which allows local users to cause a denial of service (system crash) or possibl…
|
CWE-20
Improper Input Validation
|
CVE-2016-2143
|
2024-11-21 11:47 |
2016-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267133
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The evm_verify_hmac function in security/integrity/evm/evm_main.c in the Linux kernel before 4.5 does not properly copy data, which makes it easier for local users to forge MAC values via a timing si…
|
CWE-19
Data Processing Errors
|
CVE-2016-2085
|
2024-11-21 11:47 |
2016-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267134
|
7.4 |
HIGH
Local
|
canonical linux
|
ubuntu_linux linux_kernel
|
Race condition in arch/x86/mm/tlb.c in the Linux kernel before 4.4.1 allows local users to gain privileges by triggering access to a paging structure by a different CPU.
|
CWE-362
Race Condition
|
CVE-2016-2069
|
2024-11-21 11:47 |
2016-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267135
|
5.9 |
MEDIUM
Network
|
canonical samba
|
ubuntu_linux samba
|
Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not require SMB signing within a DCERPC session over ncacn_np, which allows man-in-the-middle attackers to spoof SMB c…
|
CWE-254
7PK - Security Features
|
CVE-2016-2115
|
2024-11-21 11:47 |
2016-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267136
|
5.9 |
MEDIUM
Network
|
samba canonical
|
samba ubuntu_linux
|
The SMB1 protocol implementation in Samba 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not recognize the "server signing = mandatory" setting, which allows man-in-the-middle att…
|
CWE-254
7PK - Security Features
|
CVE-2016-2114
|
2024-11-21 11:47 |
2016-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267137
|
7.4 |
HIGH
Network
|
samba canonical
|
samba ubuntu_linux
|
Samba 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not verify X.509 certificates from TLS servers, which allows man-in-the-middle attackers to spoof LDAPS and HTTPS servers and …
|
CWE-310
Cryptographic Issues
|
CVE-2016-2113
|
2024-11-21 11:47 |
2016-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267138
|
5.9 |
MEDIUM
Network
|
samba canonical
|
samba ubuntu_linux
|
The bundled LDAP client library in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not recognize the "client ldap sasl wrapping" setting, which allows man-in-the-midd…
|
CWE-254
7PK - Security Features
|
CVE-2016-2112
|
2024-11-21 11:47 |
2016-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267139
|
6.3 |
MEDIUM
Local
|
samba canonical
|
samba ubuntu_linux
|
The NETLOGON service in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2, when a domain controller is configured, allows remote attackers to spoof the computer name of a se…
|
CWE-254
7PK - Security Features
|
CVE-2016-2111
|
2024-11-21 11:47 |
2016-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267140
|
5.9 |
MEDIUM
Network
|
samba canonical
|
samba ubuntu_linux
|
The NTLMSSP authentication implementation in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 allows man-in-the-middle attackers to perform protocol-downgrade attacks by mo…
|
CWE-254
7PK - Security Features
|
CVE-2016-2110
|
2024-11-21 11:47 |
2016-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|