NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
19470  CVE-2016-3697  libcontainer/user/user.go in runC before 0.1.0, as used in Docker before 1.11.2, improperly treats a numeric UID as a potential username, which allows local users to gain privileges via a numeric username in the password file in a container.    2.1  Low  2017-01-19  2017-01-17  View
19471  CVE-2016-3698  libndp before 1.6, as used in NetworkManager, does not properly validate the origin of Neighbor Discovery Protocol (NDP) messages, which allows remote attackers to conduct man-in-the-middle attacks or cause a denial of service (network connectivity disruption) by advertising a node as a router from a non-local network.    6.8  Medium  2017-01-19  2016-10-03  View
19472  CVE-2016-3699  The Linux kernel, as used in Red Hat Enterprise Linux 7.2 and Red Hat Enterprise MRG 2 and when booted with UEFI Secure Boot enabled, allows local users to bypass intended Secure Boot restrictions and execute untrusted code by appending ACPI tables to the initrd.    6.9  Medium  2017-01-19  2016-10-11  View
85138  CVE-2016-3702  Padding oracle flaw in CloudForms Management Engine (aka CFME) 5 allows remote attackers to obtain sensitive cleartext information.          2017-04-27  2017-04-21  View
19473  CVE-2016-3703  Red Hat OpenShift Enterprise 3.2 and 3.1 do not properly validate the origin of a request when anonymous access is granted to a service/proxy or pod/proxy API for a specific pod, which allows remote attackers to access API credentials in the web browser localStorage via an access_token in the query parameter.    3.5  Low  2017-01-19  2016-06-09  View

Page 15821 of 17672, showing 5 records out of 88360 total, starting on record 79101, ending on 79105

Actions