|
264641
|
6.7 |
MEDIUM
Local
|
intel
|
city_bios canyon_bios swift_canyon_bios citry_bios
|
SMM call out in all Intel Branded NUC Kits allows a local privileged user to access the System Management Mode and take full control of the platform.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8103
|
2024-11-21 11:58 |
2016-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264642
|
7.8 |
HIGH
Local
|
intel
|
wireless_bluetooth_drivers
|
Unquoted service path vulnerability in Intel Wireless Bluetooth Drivers 16.x, 17.x, and before 18.1.1607.3129 allows local users to launch processes with elevated privileges.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8102
|
2024-11-21 11:58 |
2016-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264643
|
5.0 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The nfnetlink_rcv_batch function in net/netfilter/nfnetlink.c in the Linux kernel before 4.5 does not check whether a batch message's length field is large enough, which allows local users to obtain …
|
CWE-200 CWE-125
Information Exposure Out-of-bounds Read
|
CVE-2016-7917
|
2024-11-21 11:58 |
2016-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264644
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file …
|
CWE-362
Race Condition
|
CVE-2016-7916
|
2024-11-21 11:58 |
2016-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264645
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The hid_input_field function in drivers/hid/hid-core.c in the Linux kernel before 4.6 allows physically proximate attackers to obtain sensitive information from kernel memory or cause a denial of ser…
|
CWE-125
Out-of-bounds Read
|
CVE-2016-7915
|
2024-11-21 11:58 |
2016-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264646
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.5.3 does not check whether a slot is a leaf, which allows local users to obtain sensitive informat…
|
CWE-125 CWE-476
Out-of-bounds Read NULL Pointer Dereference
|
CVE-2016-7914
|
2024-11-21 11:58 |
2016-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264647
|
7.8 |
HIGH
Local
|
linux canonical
|
linux_kernel ubuntu_linux
|
The xc2028_set_config function in drivers/media/tuners/tuner-xc2028.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) via vectors in…
|
CWE-416
Use After Free
|
CVE-2016-7913
|
2024-11-21 11:58 |
2016-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264648
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
Use-after-free vulnerability in the ffs_user_copy_worker function in drivers/usb/gadget/function/f_fs.c in the Linux kernel before 4.5.3 allows local users to gain privileges by accessing an I/O data…
|
CWE-416
Use After Free
|
CVE-2016-7912
|
2024-11-21 11:58 |
2016-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264649
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
Race condition in the get_task_ioprio function in block/ioprio.c in the Linux kernel before 4.6.6 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted iop…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2016-7911
|
2024-11-21 11:58 |
2016-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264650
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
Use-after-free vulnerability in the disk_seqf_stop function in block/genhd.c in the Linux kernel before 4.7.1 allows local users to gain privileges by leveraging the execution of a certain stop opera…
|
CWE-416
Use After Free
|
CVE-2016-7910
|
2024-11-21 11:58 |
2016-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|