CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
96116 | CVE-2016-9296 | Candidate | A null pointer dereference bug affects the 16.02 and many old versions of p7zip. A lack of null pointer check for the variable folders.PackPositions in function CInArchive::ReadAndDecodePackedStreams in CPP/7zip/Archive/7z/7zIn.cpp, as used in the 7z.so library and in 7z applications, will cause a crash and a denial of service when decoding malformed 7z files. | Assigned (20161111) | None (candidate not yet proposed) | View | |
96117 | CVE-2016-9297 | Candidate | The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via crafted TIFF_SETGET_C16ASCII or TIFF_SETGET_C32_ASCII tag values. | Assigned (20161114) | None (candidate not yet proposed) | View | |
96118 | CVE-2016-9298 | Candidate | Heap overflow in the WaveletDenoiseImage function in MagickCore/fx.c in ImageMagick before 6.9.6-4 and 7.x before 7.0.3-6 allows remote attackers to cause a denial of service (crash) via a crafted image. | Assigned (20161114) | None (candidate not yet proposed) | View | |
96119 | CVE-2016-9299 | Candidate | The remoting module in Jenkins before 2.32 and LTS before 2.19.3 allows remote attackers to execute arbitrary code via a crafted serialized Java object, which triggers an LDAP query to a third-party server. | Assigned (20161114) | None (candidate not yet proposed) | View | |
96120 | CVE-2016-9300 | Candidate | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. | Assigned (20161114) | None (candidate not yet proposed) | View |
Page 19224 of 20943, showing 5 records out of 104715 total, starting on record 96116, ending on 96120