CVE List

Id CVE No. Status Description Phase Votes Comments Actions
94371  CVE-2016-7551  Candidate  chain_sip in Asterisk Open Source 11.x before 11.23.1 and 13.x 13.11.1 and Certified Asterisk 11.6 before 11.6-cert15 and 13.8 before 13.8-cert3 allows remote attackers to cause a denial of service (port exhaustion).  Assigned (20160909)  None (candidate not yet proposed)    View
94372  CVE-2016-7552  Candidate  On the Trend Micro Threat Discovery Appliance 2.6.1062r1, directory traversal when processing a session_id cookie allows a remote, unauthenticated attacker to delete arbitrary files as root. This can be used to bypass authentication or cause a DoS.  Assigned (20160909)  None (candidate not yet proposed)    View
94373  CVE-2016-7553  Candidate  The buf.pl script before 2.20 in Irssi before 0.8.20 uses weak permissions for the scrollbuffer dump file created between upgrades, which might allow local users to obtain sensitive information from private chat conversations by reading the file.  Assigned (20160909)  None (candidate not yet proposed)    View
94374  CVE-2016-7554  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.  Assigned (20160909)  None (candidate not yet proposed)    View
94375  CVE-2016-7555  Candidate  The avi_read_header function in libavformat/avidec.c in FFmpeg before 3.1.4 is vulnerable to memory leak when decoding an AVI file that has a crafted "strh" structure.  Assigned (20160909)  None (candidate not yet proposed)    View

Page 18875 of 20943, showing 5 records out of 104715 total, starting on record 94371, ending on 94375

Actions