CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96196  CVE-2016-9376  Candidate  In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the OpenFlow dissector could crash with memory exhaustion, triggered by network traffic or a capture file. This was addressed in epan/dissectors/packet-openflow_v5.c by ensuring that certain length values were sufficiently large.  Assigned (20161116)  None (candidate not yet proposed)    View
96197  CVE-2016-9377  Candidate  Xen 4.5.x through 4.7.x on AMD systems without the NRip feature, when emulating instructions that generate software interrupts, allows local HVM guest OS users to cause a denial of service (guest crash) by leveraging IDT entry miscalculation.  Assigned (20161117)  None (candidate not yet proposed)    View
96198  CVE-2016-9378  Candidate  Xen 4.5.x through 4.7.x on AMD systems without the NRip feature, when emulating instructions that generate software interrupts, allows local HVM guest OS users to cause a denial of service (guest crash) by leveraging an incorrect choice for software interrupt delivery.  Assigned (20161117)  None (candidate not yet proposed)    View
96199  CVE-2016-9379  Candidate  The pygrub boot loader emulator in Xen, when S-expression output format is requested, allows local pygrub-using guest OS administrators to read or delete arbitrary files on the host via string quotes and S-expressions in the bootloader configuration file.  Assigned (20161117)  None (candidate not yet proposed)    View
96200  CVE-2016-9380  Candidate  The pygrub boot loader emulator in Xen, when nul-delimited output format is requested, allows local pygrub-using guest OS administrators to read or delete arbitrary files on the host via NUL bytes in the bootloader configuration file.  Assigned (20161117)  None (candidate not yet proposed)    View

Page 19240 of 20943, showing 5 records out of 104715 total, starting on record 96196, ending on 96200

Actions