CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96456  CVE-2016-9636  Candidate  Heap-based buffer overflow in the flx_decode_delta_fli function in gst/flx/gstflxdec.c in the FLIC decoder in GStreamer before 1.10.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) by providing a "write count" that goes beyond the initialized buffer.  Assigned (20161123)  None (candidate not yet proposed)    View
96457  CVE-2016-9637  Candidate  The (1) ioport_read and (2) ioport_write functions in Xen, when qemu is used as a device model within Xen, might allow local x86 HVM guest OS administrators to gain qemu process privileges via vectors involving an out-of-range ioport access.  Assigned (20161123)  None (candidate not yet proposed)    View
96458  CVE-2016-9638  Candidate  In BMC Patrol before 9.13.10.02, the binary "listguests64" is configured with the setuid bit. However, when executing it, it will look for a binary named "virsh" using the PATH environment variable. The "listguests64" program will then run "virsh" using root privileges. This allows local users to elevate their privileges to root.  Assigned (20161124)  None (candidate not yet proposed)    View
96459  CVE-2016-9639  Candidate  Salt before 2015.8.11 allows deleted minions to read or write to minions with the same id, related to caching.  Assigned (20161125)  None (candidate not yet proposed)    View
96460  CVE-2016-9640  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161125)  None (candidate not yet proposed)    View

Page 19292 of 20943, showing 5 records out of 104715 total, starting on record 96456, ending on 96460

Actions