|
265001
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The mpi_powm function in lib/mpi/mpi-pow.c in the Linux kernel through 4.8.11 does not ensure that memory is allocated for limb data, which allows local users to cause a denial of service (stack memo…
|
CWE-20 CWE-399
Improper Input Validation Resource Management Errors
|
CVE-2016-8650
|
2024-11-21 11:59 |
2016-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265002
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The hash_accept function in crypto/algif_hash.c in the Linux kernel before 4.3.6 allows local users to cause a denial of service (OOPS) by attempting to trigger use of in-kernel hash algorithms for a…
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-8646
|
2024-11-21 11:59 |
2016-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265003
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The TCP stack in the Linux kernel before 4.8.10 mishandles skb truncation, which allows local users to cause a denial of service (system crash) via a crafted application that makes sendto system call…
|
CWE-284
Improper Access Control
|
CVE-2016-8645
|
2024-11-21 11:59 |
2016-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265004
|
6.8 |
MEDIUM
Physics
|
linux
|
linux_kernel
|
drivers/firewire/net.c in the Linux kernel before 4.8.7, in certain unusual hardware configurations, allows remote attackers to execute arbitrary code via crafted fragmented packets.
|
CWE-119 CWE-284
Incorrect Access of Indexable Resource ('Range Error') Improper Access Control
|
CVE-2016-8633
|
2024-11-21 11:59 |
2016-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265005
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
The tipc_msg_build function in net/tipc/msg.c in the Linux kernel through 4.8.11 does not validate the relationship between the minimum fragment length and the maximum packet size, which allows local…
|
CWE-264 CWE-119
Permissions, Privileges, and Access Controls Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-8632
|
2024-11-21 11:59 |
2016-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265006
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The x86_decode_insn function in arch/x86/kvm/emulate.c in the Linux kernel before 4.8.7, when KVM is enabled, allows local users to cause a denial of service (host OS crash) via a certain use of a Mo…
|
CWE-284 CWE-476
Improper Access Control NULL Pointer Dereference
|
CVE-2016-8630
|
2024-11-21 11:59 |
2016-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265007
|
8.8 |
HIGH
Network
|
siemens
|
simatic_s7_300_cpu_firmware simatic_cp_443-1_firmware simatic_cp_343-1_firmware simatic_s7_400_cpu_firmware
|
A vulnerability has been identified in SIMATIC CP 343-1 Advanced (incl. SIPLUS NET variant) (All versions < V3.0.53), SIMATIC CP 443-1 Advanced (incl. SIPLUS NET variant) (All versions < V3.2.17), SI…
|
CWE-352
Origin Validation Error
|
CVE-2016-8673
|
2024-11-21 11:59 |
2016-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265008
|
5.3 |
MEDIUM
Network
|
siemens
|
simatic_cp_343-1_firmware simatic_s7_300_cpu_firmware simatic_s7_400_cpu_firmware simatic_cp_443-1_firmware
|
A vulnerability has been identified in SIMATIC CP 343-1 Advanced (incl. SIPLUS NET variant) (All versions < V3.0.53), SIMATIC CP 443-1 Advanced (incl. SIPLUS NET variant) (All versions < V3.2.17), SI…
|
CWE-200
Information Exposure
|
CVE-2016-8672
|
2024-11-21 11:59 |
2016-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265009
|
6.6 |
MEDIUM
Network
|
siemens
|
simatic_cp_1543-1_firmware
|
A vulnerability has been identified in SIMATIC CP 1543-1 (All versions < V2.0.28), SIPLUS NET CP 1543-1 (All versions < V2.0.28). Users with elevated privileges to TIA-Portal and project data on the …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8561
|
2024-11-21 11:59 |
2016-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265010
|
8.4 |
HIGH
Local
|
obdev
|
little_snitch
|
Little Snitch version 3.0 through 3.6.1 suffer from a buffer overflow vulnerability that could be locally exploited which could lead to an escalation of privileges (EoP) and unauthorised ring0 access…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-8661
|
2024-11-21 11:59 |
2016-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|