NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18607  CVE-2016-2381  Perl might allow context-dependent attackers to bypass the taint protection mechanism in a child process via duplicate environment variables in envp.    Medium  2017-01-19  2016-12-02  View
18606  CVE-2016-2380  An information leak exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent to the server could potentially result in an out-of-bounds read. A user could be convinced to enter a particular string which would then get converted incorrectly and could lead to a potential out-of-bounds read.    4.3  Medium  2017-01-19  2017-01-10  View
83951  CVE-2016-2379  The Mxit protocol uses weak encryption when encrypting user passwords, which might allow attackers to (1) decrypt hashed passwords by leveraging knowledge of client registration codes or (2) gain login access by eavesdropping on login messages and re-using the hashed passwords.          2017-03-29  2017-03-29  View
18605  CVE-2016-2378  A buffer overflow vulnerability exists in the handling of the MXIT protocol Pidgin. Specially crafted data sent via the server could potentially result in a buffer overflow, potentially resulting in memory corruption. A malicious server or an unfiltered malicious user can send negative length values to trigger this vulnerability.    6.8  Medium  2017-01-19  2017-01-10  View
18604  CVE-2016-2377  A buffer overflow vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent by the server could potentially result in an out-of-bounds write of one byte. A malicious server can send a negative content-length in response to a HTTP request triggering the vulnerability.    6.8  Medium  2017-01-19  2017-01-10  View

Page 2043 of 17672, showing 5 records out of 88360 total, starting on record 10211, ending on 10215

Actions