|
265941
|
6.5 |
MEDIUM
Network
|
libgd debian opensuse
|
libgd debian_linux leap
|
The output function in gd_gif_out.c in the GD Graphics Library (aka libgd) allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted image.
|
CWE-125
Out-of-bounds Read
|
CVE-2016-6161
|
2024-11-21 11:55 |
2016-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265942
|
6.5 |
MEDIUM
Network
|
libgd debian opensuse
|
libgd debian_linux leap
|
The gdImageCreateFromTgaCtx function in the GD Graphics Library (aka libgd) before 2.2.3 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TGA file.
|
CWE-125
Out-of-bounds Read
|
CVE-2016-6132
|
2024-11-21 11:55 |
2016-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265943
|
6.8 |
MEDIUM
Network
|
ibm
|
filenet_workplace
|
Open redirect vulnerability in IBM FileNet Workplace 4.0.2 before 4.0.2.14 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vect…
|
CWE-601
Open Redirect
|
CVE-2016-5878
|
2024-11-21 11:55 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265944
|
9.8 |
CRITICAL
Network
|
moxa
|
softcms
|
SQL injection vulnerability in Moxa SoftCMS before 1.5 allows remote attackers to execute arbitrary SQL commands via unspecified fields.
|
CWE-89
SQL Injection
|
CVE-2016-5792
|
2024-11-21 11:55 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265945
|
7.5 |
HIGH
Network
|
debian opensuse libgd canonical
|
debian_linux leap libgd ubuntu_linux
|
The gdImageCropThreshold function in gd_crop.c in the GD Graphics Library (aka libgd) before 2.2.3, as used in PHP before 7.0.9, allows remote attackers to cause a denial of service (application cras…
|
CWE-20
Improper Input Validation
|
CVE-2016-6128
|
2024-11-21 11:55 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265946
|
5.5 |
MEDIUM
Local
|
linux oracle
|
linux_kernel linux vm_server
|
The filesystem layer in the Linux kernel before 4.5.5 proceeds with post-rename operations after an OverlayFS file is renamed to a self-hardlink, which allows local users to cause a denial of service…
|
CWE-284
Improper Access Control
|
CVE-2016-6198
|
2024-11-21 11:55 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265947
|
5.5 |
MEDIUM
Local
|
oracle linux
|
linux linux_kernel vm_server
|
fs/overlayfs/dir.c in the OverlayFS filesystem implementation in the Linux kernel before 4.6 does not properly verify the upper dentry before proceeding with unlink and rename system-call processing,…
|
CWE-20
Improper Input Validation
|
CVE-2016-6197
|
2024-11-21 11:55 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265948
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
The apparmor_setprocattr function in security/apparmor/lsm.c in the Linux kernel before 4.6.5 does not validate the buffer size, which allows local users to gain privileges by triggering an AppArmor …
|
CWE-264 CWE-119
Permissions, Privileges, and Access Controls Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-6187
|
2024-11-21 11:55 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265949
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
net/core/skbuff.c in the Linux kernel 4.7-rc6 allows local users to cause a denial of service (panic) or possibly have unspecified other impact via certain IPv6 socket operations.
|
CWE-20
Improper Input Validation
|
CVE-2016-6162
|
2024-11-21 11:55 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265950
|
5.1 |
MEDIUM
Local
|
linux
|
linux_kernel
|
Race condition in the ec_device_ioctl_xcmd function in drivers/platform/chrome/cros_ec_dev.c in the Linux kernel before 4.7 allows local users to cause a denial of service (out-of-bounds array access…
|
CWE-362
Race Condition
|
CVE-2016-6156
|
2024-11-21 11:55 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|