|
264991
|
5.9 |
MEDIUM
Network
|
wireshark
|
wireshark
|
The USB subsystem in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles class types, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-5354
|
2024-11-21 11:54 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264992
|
5.9 |
MEDIUM
Network
|
wireshark
|
wireshark
|
epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles the reserved C/T value, which allows remote attackers to cause a denial of…
|
CWE-20
Improper Input Validation
|
CVE-2016-5353
|
2024-11-21 11:54 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264993
|
5.9 |
MEDIUM
Network
|
wireshark
|
wireshark
|
epan/crypt/airpdcap.c in the IEEE 802.11 dissector in Wireshark 2.x before 2.0.4 mishandles certain length values, which allows remote attackers to cause a denial of service (application crash) via a…
|
CWE-125
Out-of-bounds Read
|
CVE-2016-5352
|
2024-11-21 11:54 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264994
|
5.9 |
MEDIUM
Network
|
wireshark
|
wireshark
|
epan/crypt/airpdcap.c in the IEEE 802.11 dissector in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles the lack of an EAPOL_RSN_KEY, which allows remote attackers to cause a denial of …
|
CWE-20
Improper Input Validation
|
CVE-2016-5351
|
2024-11-21 11:54 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264995
|
7.5 |
HIGH
Network
|
wireshark
|
wireshark
|
epan/dissectors/packet-dcerpc-spoolss.c in the SPOOLS component in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles unexpected offsets, which allows remote attackers to cause a denial …
|
CWE-399
Resource Management Errors
|
CVE-2016-5350
|
2024-11-21 11:54 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264996
|
9.8 |
CRITICAL
Network
|
php
|
php
|
php_zip.c in the zip extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8 improperly interacts with the unserialize implementation and garbage collection, which allows remote att…
|
CWE-416
Use After Free
|
CVE-2016-5773
|
2024-11-21 11:54 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264997
|
9.8 |
CRITICAL
Network
|
php opensuse debian
|
php leap opensuse debian_linux
|
spl_array.c in the SPL extension in PHP before 5.5.37 and 5.6.x before 5.6.23 improperly interacts with the unserialize implementation and garbage collection, which allows remote attackers to execute…
|
CWE-416
Use After Free
|
CVE-2016-5771
|
2024-11-21 11:54 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264998
|
9.8 |
CRITICAL
Network
|
php opensuse debian
|
php leap opensuse debian_linux
|
Integer overflow in the SplFileObject::fread function in spl_directory.c in the SPL extension in PHP before 5.5.37 and 5.6.x before 5.6.23 allows remote attackers to cause a denial of service or poss…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-5770
|
2024-11-21 11:54 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264999
|
9.8 |
CRITICAL
Network
|
php
|
php
|
Multiple integer overflows in mcrypt.c in the mcrypt extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8 allow remote attackers to cause a denial of service (heap-based buffer o…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-5769
|
2024-11-21 11:54 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265000
|
9.8 |
CRITICAL
Network
|
php suse opensuse debian
|
php linux_enterprise_server linux_enterprise_software_development_kit linux_enterprise_debuginfo leap opensuse debian_linux
|
Double free vulnerability in the php_wddx_process_data function in wddx.c in the WDDX extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8 allows remote attackers to cause a deni…
|
CWE-415
Double Free
|
CVE-2016-5772
|
2024-11-21 11:54 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|