Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 54 399

Количество 54 399

redhat логотип

CVE-2016-7929

больше 9 лет назад

The Juniper PPPoE ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-juniper.c:juniper_parse_header().

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-7928

больше 9 лет назад

The IPComp parser in tcpdump before 4.9.0 has a buffer overflow in print-ipcomp.c:ipcomp_print().

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-7927

больше 9 лет назад

The IEEE 802.11 parser in tcpdump before 4.9.0 has a buffer overflow in print-802_11.c:ieee802_11_radio_print().

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-7926

больше 9 лет назад

The Ethernet parser in tcpdump before 4.9.0 has a buffer overflow in print-ether.c:ethertype_print().

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-7925

больше 9 лет назад

The compressed SLIP parser in tcpdump before 4.9.0 has a buffer overflow in print-sl.c:sl_if_print().

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-7924

больше 9 лет назад

The ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-atm.c:oam_print().

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-7923

больше 9 лет назад

The ARP parser in tcpdump before 4.9.0 has a buffer overflow in print-arp.c:arp_print().

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-7922

больше 9 лет назад

The AH parser in tcpdump before 4.9.0 has a buffer overflow in print-ah.c:ah_print().

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-7917

больше 10 лет назад

The nfnetlink_rcv_batch function in net/netfilter/nfnetlink.c in the Linux kernel before 4.5 does not check whether a batch message's length field is large enough, which allows local users to obtain sensitive information from kernel memory or cause a denial of service (infinite loop or out-of-bounds read) by leveraging the CAP_NET_ADMIN capability.

CVSS3: 5
EPSS: Низкий
redhat логотип

CVE-2016-7916

больше 10 лет назад

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which environment-variable copying is incomplete.

CVSS3: 2.3
EPSS: Низкий
redhat логотип

CVE-2016-7915

больше 10 лет назад

The hid_input_field function in drivers/hid/hid-core.c in the Linux kernel before 4.6 allows physically proximate attackers to obtain sensitive information from kernel memory or cause a denial of service (out-of-bounds read) by connecting a device, as demonstrated by a Logitech DJ receiver.

CVSS3: 2.1
EPSS: Низкий
redhat логотип

CVE-2016-7914

больше 10 лет назад

The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.5.3 does not check whether a slot is a leaf, which allows local users to obtain sensitive information from kernel memory or cause a denial of service (invalid pointer dereference and out-of-bounds read) via an application that uses associative-array data structures, as demonstrated by the keyutils test suite.

CVSS3: 6.2
EPSS: Низкий
redhat логотип

CVE-2016-7913

больше 10 лет назад

The xc2028_set_config function in drivers/media/tuners/tuner-xc2028.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) via vectors involving omission of the firmware name from a certain data structure.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2016-7912

больше 10 лет назад

Use-after-free vulnerability in the ffs_user_copy_worker function in drivers/usb/gadget/function/f_fs.c in the Linux kernel before 4.5.3 allows local users to gain privileges by accessing an I/O data structure after a certain callback call.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2016-7911

около 10 лет назад

Race condition in the get_task_ioprio function in block/ioprio.c in the Linux kernel before 4.6.6 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted ioprio_get system call.

CVSS3: 4.7
EPSS: Низкий
redhat логотип

CVE-2016-7910

около 10 лет назад

Use-after-free vulnerability in the disk_seqf_stop function in block/genhd.c in the Linux kernel before 4.7.1 allows local users to gain privileges by leveraging the execution of a certain stop operation even if the corresponding start operation had failed.

CVSS3: 7
EPSS: Низкий
redhat логотип

CVE-2016-7909

почти 10 лет назад

The pcnet_rdra_addr function in hw/net/pcnet.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by setting the (1) receive or (2) transmit descriptor ring length to 0.

CVSS3: 3
EPSS: Низкий
redhat логотип

CVE-2016-7908

почти 10 лет назад

The mcf_fec_do_tx function in hw/net/mcf_fec.c in QEMU (aka Quick Emulator) does not properly limit the buffer descriptor count when transmitting packets, which allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) via vectors involving a buffer descriptor with a length of 0 and crafted values in bd.flags.

CVSS3: 3
EPSS: Низкий
redhat логотип

CVE-2016-7907

почти 10 лет назад

The imx_fec_do_tx function in hw/net/imx_fec.c in QEMU (aka Quick Emulator) does not properly limit the buffer descriptor count when transmitting packets, which allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) via vectors involving a buffer descriptor with a length of 0 and crafted values in bd.flags.

CVSS3: 3
EPSS: Низкий
redhat логотип

CVE-2016-7906

почти 10 лет назад

magick/attribute.c in ImageMagick 7.0.3-2 allows remote attackers to cause a denial of service (use-after-free) via a crafted file.

CVSS3: 5.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2016-7929

The Juniper PPPoE ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-juniper.c:juniper_parse_header().

CVSS3: 6.5
3%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-7928

The IPComp parser in tcpdump before 4.9.0 has a buffer overflow in print-ipcomp.c:ipcomp_print().

CVSS3: 6.5
3%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-7927

The IEEE 802.11 parser in tcpdump before 4.9.0 has a buffer overflow in print-802_11.c:ieee802_11_radio_print().

CVSS3: 6.5
3%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-7926

The Ethernet parser in tcpdump before 4.9.0 has a buffer overflow in print-ether.c:ethertype_print().

CVSS3: 6.5
3%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-7925

The compressed SLIP parser in tcpdump before 4.9.0 has a buffer overflow in print-sl.c:sl_if_print().

CVSS3: 6.5
3%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-7924

The ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-atm.c:oam_print().

CVSS3: 6.5
3%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-7923

The ARP parser in tcpdump before 4.9.0 has a buffer overflow in print-arp.c:arp_print().

CVSS3: 6.5
3%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-7922

The AH parser in tcpdump before 4.9.0 has a buffer overflow in print-ah.c:ah_print().

CVSS3: 6.5
3%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-7917

The nfnetlink_rcv_batch function in net/netfilter/nfnetlink.c in the Linux kernel before 4.5 does not check whether a batch message's length field is large enough, which allows local users to obtain sensitive information from kernel memory or cause a denial of service (infinite loop or out-of-bounds read) by leveraging the CAP_NET_ADMIN capability.

CVSS3: 5
2%
Низкий
больше 10 лет назад
redhat логотип
CVE-2016-7916

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which environment-variable copying is incomplete.

CVSS3: 2.3
0%
Низкий
больше 10 лет назад
redhat логотип
CVE-2016-7915

The hid_input_field function in drivers/hid/hid-core.c in the Linux kernel before 4.6 allows physically proximate attackers to obtain sensitive information from kernel memory or cause a denial of service (out-of-bounds read) by connecting a device, as demonstrated by a Logitech DJ receiver.

CVSS3: 2.1
2%
Низкий
больше 10 лет назад
redhat логотип
CVE-2016-7914

The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.5.3 does not check whether a slot is a leaf, which allows local users to obtain sensitive information from kernel memory or cause a denial of service (invalid pointer dereference and out-of-bounds read) via an application that uses associative-array data structures, as demonstrated by the keyutils test suite.

CVSS3: 6.2
2%
Низкий
больше 10 лет назад
redhat логотип
CVE-2016-7913

The xc2028_set_config function in drivers/media/tuners/tuner-xc2028.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) via vectors involving omission of the firmware name from a certain data structure.

CVSS3: 7.8
2%
Низкий
больше 10 лет назад
redhat логотип
CVE-2016-7912

Use-after-free vulnerability in the ffs_user_copy_worker function in drivers/usb/gadget/function/f_fs.c in the Linux kernel before 4.5.3 allows local users to gain privileges by accessing an I/O data structure after a certain callback call.

CVSS3: 7.8
2%
Низкий
больше 10 лет назад
redhat логотип
CVE-2016-7911

Race condition in the get_task_ioprio function in block/ioprio.c in the Linux kernel before 4.6.6 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted ioprio_get system call.

CVSS3: 4.7
2%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-7910

Use-after-free vulnerability in the disk_seqf_stop function in block/genhd.c in the Linux kernel before 4.7.1 allows local users to gain privileges by leveraging the execution of a certain stop operation even if the corresponding start operation had failed.

CVSS3: 7
3%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-7909

The pcnet_rdra_addr function in hw/net/pcnet.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by setting the (1) receive or (2) transmit descriptor ring length to 0.

CVSS3: 3
0%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-7908

The mcf_fec_do_tx function in hw/net/mcf_fec.c in QEMU (aka Quick Emulator) does not properly limit the buffer descriptor count when transmitting packets, which allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) via vectors involving a buffer descriptor with a length of 0 and crafted values in bd.flags.

CVSS3: 3
0%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-7907

The imx_fec_do_tx function in hw/net/imx_fec.c in QEMU (aka Quick Emulator) does not properly limit the buffer descriptor count when transmitting packets, which allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) via vectors involving a buffer descriptor with a length of 0 and crafted values in bd.flags.

CVSS3: 3
0%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-7906

magick/attribute.c in ImageMagick 7.0.3-2 allows remote attackers to cause a denial of service (use-after-free) via a crafted file.

CVSS3: 5.1
2%
Низкий
почти 10 лет назад

Уязвимостей на страницу