|
266531
|
5.3 |
MEDIUM
Network
|
dest-unreach
|
socat
|
The OpenSSL address implementation in Socat 1.7.3.0 and 2.0.0-b8 does not use a prime number for the DH, which makes it easier for remote attackers to obtain the shared secret.
|
CWE-320
Key Management Errors
|
CVE-2016-2217
|
2024-11-21 11:48 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266532
|
5.9 |
MEDIUM
Network
|
ntp
|
ntp
|
ntpd in NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to cause a denial of service (ntpd abort) by a large request data value, which triggers the ctl_getitem function to return a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2519
|
2024-11-21 11:48 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266533
|
5.3 |
MEDIUM
Network
|
ntp
|
ntp
|
NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to cause a denial of service (prevent subsequent authentication) by leveraging knowledge of the controlkey or requestkey and sending…
|
CWE-20
Improper Input Validation
|
CVE-2016-2517
|
2024-11-21 11:48 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266534
|
5.3 |
MEDIUM
Network
|
ntp
|
ntp
|
NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, allows remote attackers to cause a denial of service (ntpd abort) by using the same IP address multiple times in an unconfig directi…
|
CWE-20
Improper Input Validation
|
CVE-2016-2516
|
2024-11-21 11:48 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266535
|
5.3 |
MEDIUM
Network
|
ntp debian netapp oracle redhat freebsd siemens
|
ntp debian_linux oncommand_balance clustered_data_ontap data_ontap oncommand_performance_manager oncommand_unified_manager_for_clustered_data_ontap communications_user_data_repos…
|
The MATCH_ASSOC function in NTP before version 4.2.8p9 and 4.3.x before 4.3.92 allows remote attackers to cause an out-of-bounds reference via an addpeer request with a large hmode value.
|
CWE-125
Out-of-bounds Read
|
CVE-2016-2518
|
2024-11-21 11:48 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266536
|
9.8 |
CRITICAL
Network
|
avaya
|
vsp_operating_system_software
|
Avaya Fabric Connect Virtual Services Platform (VSP) Operating System Software (VOSS) before 4.2.3.0 and 5.x before 5.0.1.0 does not properly handle VLAN and I-SIS indexes, which allows remote attack…
|
CWE-19
Data Processing Errors
|
CVE-2016-2783
|
2024-11-21 11:48 |
2017-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266537
|
9.8 |
CRITICAL
Network
|
exponentcms
|
exponent_cms
|
Exponent CMS 2.x before 2.3.7 Patch 3 allows remote attackers to execute arbitrary code via the sc parameter to install/index.php.
|
CWE-94
Code Injection
|
CVE-2016-2242
|
2024-11-21 11:48 |
2017-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266538
|
7.5 |
HIGH
Network
|
hexchat_project
|
hexchat
|
Stack-based buffer overflow in the inbound_cap_ls function in common/inbound.c in HexChat 2.10.2 allows remote IRC servers to cause a denial of service (crash) via a large number of options in a CAP …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2233
|
2024-11-21 11:48 |
2017-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266539
|
3.1 |
LOW
Network
|
pidgin canonical debian
|
pidgin ubuntu_linux debian_linux
|
An information leak exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent to the server could potentially result in an out-of-bounds read. A user could be convinced …
|
CWE-200 CWE-125
Information Exposure Out-of-bounds Read
|
CVE-2016-2380
|
2024-11-21 11:48 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266540
|
8.1 |
HIGH
Network
|
pidgin canonical debian
|
pidgin ubuntu_linux debian_linux
|
A buffer overflow vulnerability exists in the handling of the MXIT protocol Pidgin. Specially crafted data sent via the server could potentially result in a buffer overflow, potentially resulting in …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2378
|
2024-11-21 11:48 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|