|
269611
|
7.5 |
HIGH
Network
|
gnu
|
osip
|
In libosip2 in GNU oSIP 4.1.0, a malformed SIP message can lead to a heap buffer overflow in the osip_body_to_str() function defined in osipparser2/osip_body.c, resulting in a remote DoS.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-10326
|
2024-11-21 11:43 |
2017-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269612
|
7.5 |
HIGH
Network
|
gnu
|
osip
|
In libosip2 in GNU oSIP 4.1.0, a malformed SIP message can lead to a heap buffer overflow in the _osip_message_to_str() function defined in osipparser2/osip_message_to_str.c, resulting in a remote Do…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-10325
|
2024-11-21 11:43 |
2017-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269613
|
9.8 |
CRITICAL
Network
|
gnu
|
osip
|
In libosip2 in GNU oSIP 4.1.0, a malformed SIP message can lead to a heap buffer overflow in the osip_clrncpy() function defined in osipparser2/osip_port.c.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-10324
|
2024-11-21 11:43 |
2017-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269614
|
7.8 |
HIGH
Local
|
firejail_project
|
firejail
|
Firejail allows --chroot when seccomp is not supported, which might allow local users to gain privileges.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-10123
|
2024-11-21 11:43 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269615
|
7.8 |
HIGH
Local
|
firejail_project
|
firejail
|
Firejail does not properly clean environment variables, which allows local users to gain privileges.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-10122
|
2024-11-21 11:43 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269616
|
7.8 |
HIGH
Local
|
firejail_project
|
firejail
|
Firejail uses weak permissions for /dev/shm/firejail and possibly other files, which allows local users to gain privileges.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-10121
|
2024-11-21 11:43 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269617
|
7.8 |
HIGH
Local
|
firejail_project
|
firejail
|
Firejail uses 0777 permissions when mounting (1) /dev, (2) /dev/shm, (3) /var/tmp, or (4) /var/lock, which allows local users to gain privileges.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-10120
|
2024-11-21 11:43 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269618
|
7.8 |
HIGH
Local
|
firejail_project
|
firejail
|
Firejail uses 0777 permissions when mounting /tmp, which allows local users to gain privileges.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-10119
|
2024-11-21 11:43 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269619
|
3.3 |
LOW
Local
|
firejail_project
|
firejail
|
Firejail allows local users to truncate /etc/resolv.conf via a chroot command to /.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-10118
|
2024-11-21 11:43 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269620
|
7.8 |
HIGH
Local
|
firejail_project
|
firejail
|
Firejail does not restrict access to --tmpfs, which allows local users to gain privileges, as demonstrated by mounting over /etc.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-10117
|
2024-11-21 11:43 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|