NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
18718 | CVE-2016-2505 | mpeg2ts/ATSParser.cpp in libstagefright in mediaserver in Android 6.x before 2016-07-01 does not validate a certain section length, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 28333006. | 2 | 9.3 | High | 2017-01-19 | 2016-07-12 | View | |
18974 | CVE-2016-3116 | CRLF injection vulnerability in Dropbear SSH before 2016.72 allows remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data. | 2 | 5.5 | Medium | 2017-01-19 | 2016-12-02 | View | |
19230 | CVE-2016-3422 | Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 allows remote attackers to affect availability via vectors related to 2D. | 2 | 5 | Medium | 2017-01-19 | 2016-12-02 | View | |
19486 | CVE-2016-3718 | The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted image. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-30 | View | |
19742 | CVE-2016-4020 | The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR). | 2 | 2.1 | Low | 2017-01-19 | 2016-11-28 | View |
Page 1828 of 17672, showing 5 records out of 88360 total, starting on record 9136, ending on 9140