|
265441
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
Race condition in the get_task_ioprio function in block/ioprio.c in the Linux kernel before 4.6.6 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted iop…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2016-7911
|
2024-11-21 11:58 |
2016-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265442
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
Use-after-free vulnerability in the disk_seqf_stop function in block/genhd.c in the Linux kernel before 4.7.1 allows local users to gain privileges by leveraging the execution of a certain stop opera…
|
CWE-416
Use After Free
|
CVE-2016-7910
|
2024-11-21 11:58 |
2016-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265443
|
7.8 |
HIGH
Local
|
teradata
|
studio_express
|
The installation script studioexpressinstall for Teradata Studio Express 15.12.00.00 creates files in /tmp insecurely. A malicious local user could create a symlink in /tmp and possibly clobber syste…
|
CWE-264 CWE-59
Permissions, Privileges, and Access Controls Link Following
|
CVE-2016-7490
|
2024-11-21 11:58 |
2016-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265444
|
9.8 |
CRITICAL
Network
|
teradata
|
virtual_machine
|
Teradata Virtual Machine Community Edition v15.10's perl script /opt/teradata/gsctools/bin/t2a.pl creates files in /tmp in an insecure manner, this may lead to elevated code execution.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-7489
|
2024-11-21 11:58 |
2016-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265445
|
7.8 |
HIGH
Local
|
teradata
|
virtual_machine
|
Teradata Virtual Machine Community Edition v15.10 has insecure file permissions on /etc/luminex/pkgmgr. These could allow a local user to modify its contents and execute commands as root.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-7488
|
2024-11-21 11:58 |
2016-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265446
|
8.8 |
HIGH
Network
|
adobe redhat
|
flash_player flash_player_for_linux enterprise_linux_server enterprise_linux_workstation enterprise_linux_desktop
|
Adobe Flash Player versions 23.0.0.205 and earlier, 11.2.202.643 and earlier have an exploitable type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.
|
CWE-704
Incorrect Type Conversion or Cast
|
CVE-2016-7865
|
2024-11-21 11:58 |
2016-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265447
|
8.8 |
HIGH
Network
|
adobe redhat
|
flash_player flash_player_for_linux enterprise_linux_server enterprise_linux_workstation enterprise_linux_desktop
|
Adobe Flash Player versions 23.0.0.205 and earlier, 11.2.202.643 and earlier have an exploitable use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution.
|
CWE-416
Use After Free
|
CVE-2016-7864
|
2024-11-21 11:58 |
2016-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265448
|
8.8 |
HIGH
Network
|
adobe redhat
|
flash_player flash_player_for_linux enterprise_linux_server enterprise_linux_workstation enterprise_linux_desktop
|
Adobe Flash Player versions 23.0.0.205 and earlier, 11.2.202.643 and earlier have an exploitable use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution.
|
CWE-416
Use After Free
|
CVE-2016-7863
|
2024-11-21 11:58 |
2016-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265449
|
8.8 |
HIGH
Network
|
adobe redhat
|
flash_player flash_player_for_linux enterprise_linux_server enterprise_linux_workstation enterprise_linux_desktop
|
Adobe Flash Player versions 23.0.0.205 and earlier, 11.2.202.643 and earlier have an exploitable use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution.
|
CWE-416
Use After Free
|
CVE-2016-7862
|
2024-11-21 11:58 |
2016-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265450
|
8.8 |
HIGH
Network
|
adobe redhat
|
flash_player flash_player_for_linux enterprise_linux_server enterprise_linux_workstation enterprise_linux_desktop
|
Adobe Flash Player versions 23.0.0.205 and earlier, 11.2.202.643 and earlier have an exploitable type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.
|
CWE-704
Incorrect Type Conversion or Cast
|
CVE-2016-7861
|
2024-11-21 11:58 |
2016-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|