NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18718  CVE-2016-2505  mpeg2ts/ATSParser.cpp in libstagefright in mediaserver in Android 6.x before 2016-07-01 does not validate a certain section length, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 28333006.    9.3  High  2017-01-19  2016-07-12  View
18974  CVE-2016-3116  CRLF injection vulnerability in Dropbear SSH before 2016.72 allows remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data.    5.5  Medium  2017-01-19  2016-12-02  View
19230  CVE-2016-3422  Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 allows remote attackers to affect availability via vectors related to 2D.    Medium  2017-01-19  2016-12-02  View
19486  CVE-2016-3718  The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted image.    4.3  Medium  2017-01-19  2016-11-30  View
19742  CVE-2016-4020  The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR).    2.1  Low  2017-01-19  2016-11-28  View

Page 1828 of 17672, showing 5 records out of 88360 total, starting on record 9136, ending on 9140

Actions