NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
21960  CVE-2016-7916  Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which environment-variable copying is incomplete.    4.7  Medium  2017-01-19  2017-01-17  View
20169  CVE-2016-4552  Cross-site scripting (XSS) vulnerability in Roundcube Webmail before 1.2.0 allows remote attackers to inject arbitrary web script or HTML via the href attribute in an area tag in an e-mail message.    4.3  Medium  2017-01-19  2017-01-17  View
21450  CVE-2016-6784  An elevation of privilege vulnerability in the MediaTek driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: N/A. Android ID: A-31350755. References: MT-ALPS02961424.    9.3  High  2017-01-19  2017-01-17  View
18379  CVE-2016-2073  The htmlParseNameComplex function in HTMLparser.c in libxml2 allows attackers to cause a denial of service (out-of-bounds read) via a crafted XML document.    4.3  Medium  2017-01-19  2017-01-17  View
20940  CVE-2016-5767  Integer overflow in the gdImageCreate function in gd.c in the GD Graphics Library (aka libgd) before 2.0.34RC1, as used in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8, allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted image dimensions.    6.8  Medium  2017-01-19  2017-01-17  View

Page 15277 of 17672, showing 5 records out of 88360 total, starting on record 76381, ending on 76385

Actions