NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
17941  CVE-2016-1577  Double free vulnerability in the jas_iccattrval_destroy function in JasPer 1.900.1 and earlier allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted ICC color profile in a JPEG 2000 image file, a different vulnerability than CVE-2014-8137.    6.8  Medium  2017-01-19  2016-12-02  View
17940  CVE-2016-1576  The overlayfs implementation in the Linux kernel through 4.5.2 does not properly restrict the mount namespace, which allows local users to gain privileges by mounting an overlayfs filesystem on top of a FUSE filesystem, and then executing a crafted setuid program.    7.2  High  2017-01-19  2016-05-06  View
17939  CVE-2016-1575  The overlayfs implementation in the Linux kernel through 4.5.2 does not properly maintain POSIX ACL xattr data, which allows local users to gain privileges by leveraging a group-writable setgid directory.    7.2  High  2017-01-19  2016-05-04  View
17938  CVE-2016-1572  mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types, which allows local users to gain privileges by mounting over a nonstandard filesystem, as demonstrated by /proc/$pid.    4.6  Medium  2017-01-19  2016-12-07  View
17937  CVE-2016-1571  The paging_invlpg function in include/asm-x86/paging.h in Xen 3.3.x through 4.6.x, when using shadow mode paging or nested virtualization is enabled, allows local HVM guest users to cause a denial of service (host crash) via a non-canonical guest address in an INVVPID instruction, which triggers a hypervisor bug check.    4.7  Medium  2017-01-19  2016-12-02  View

Page 2183 of 17672, showing 5 records out of 88360 total, starting on record 10911, ending on 10915

Actions