CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93171  CVE-2016-6351  Candidate  The esp_do_dma function in hw/scsi/esp.c in QEMU (aka Quick Emulator), when built with ESP/NCR53C9x controller emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) or execute arbitrary code on the QEMU host via vectors involving DMA read into ESP command buffer.  Assigned (20160726)  None (candidate not yet proposed)    View
93172  CVE-2016-6352  Candidate  The OneLine32 function in io-ico.c in gdk-pixbuf before 2.35.3 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via crafted dimensions in an ICO file.  Assigned (20160726)  None (candidate not yet proposed)    View
93173  CVE-2016-6353  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160726)  None (candidate not yet proposed)    View
93174  CVE-2016-6354  Candidate  Heap-based buffer overflow in the yy_get_next_buffer function in Flex before 2.6.1 might allow context-dependent attackers to cause a denial of service or possibly execute arbitrary code via vectors involving num_to_read.  Assigned (20160726)  None (candidate not yet proposed)    View
93175  CVE-2016-6355  Candidate  Memory leak in Cisco IOS XR 5.1.x through 5.1.3, 5.2.x through 5.2.5, and 5.3.x through 5.3.2 on ASR 9001 devices allows remote attackers to cause a denial of service (control-plane protocol outage) via crafted fragmented packets, aka Bug ID CSCux26791.  Assigned (20160726)  None (candidate not yet proposed)    View

Page 18635 of 20943, showing 5 records out of 104715 total, starting on record 93171, ending on 93175

Actions