CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96116  CVE-2016-9296  Candidate  A null pointer dereference bug affects the 16.02 and many old versions of p7zip. A lack of null pointer check for the variable folders.PackPositions in function CInArchive::ReadAndDecodePackedStreams in CPP/7zip/Archive/7z/7zIn.cpp, as used in the 7z.so library and in 7z applications, will cause a crash and a denial of service when decoding malformed 7z files.  Assigned (20161111)  None (candidate not yet proposed)    View
96117  CVE-2016-9297  Candidate  The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via crafted TIFF_SETGET_C16ASCII or TIFF_SETGET_C32_ASCII tag values.  Assigned (20161114)  None (candidate not yet proposed)    View
96118  CVE-2016-9298  Candidate  Heap overflow in the WaveletDenoiseImage function in MagickCore/fx.c in ImageMagick before 6.9.6-4 and 7.x before 7.0.3-6 allows remote attackers to cause a denial of service (crash) via a crafted image.  Assigned (20161114)  None (candidate not yet proposed)    View
96119  CVE-2016-9299  Candidate  The remoting module in Jenkins before 2.32 and LTS before 2.19.3 allows remote attackers to execute arbitrary code via a crafted serialized Java object, which triggers an LDAP query to a third-party server.  Assigned (20161114)  None (candidate not yet proposed)    View
96120  CVE-2016-9300  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.  Assigned (20161114)  None (candidate not yet proposed)    View

Page 19224 of 20943, showing 5 records out of 104715 total, starting on record 96116, ending on 96120

Actions