2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-9556 | — | — | 2.3% | Mar 23, 2017 | The IsPixelGray function in MagickCore/pixel-accessor.h in ImageMagick 7.0.3-8 allows remote attackers to cause a denial... |
| CVE-2016-9396 | — | — | 5.7% | Mar 23, 2017 | The JPC_NOMINALGAIN function in jpc/jpc_t1cod.c in JasPer through 2.0.12 allows remote attackers to cause a denial of se... |
| CVE-2016-9395 | — | — | 1.5% | Mar 23, 2017 | The jas_seq2d_create function in jas_seq.c in JasPer before 1.900.25 allows remote attackers to cause a denial of servic... |
| CVE-2016-9394 | — | — | 2.0% | Mar 23, 2017 | The jas_seq2d_create function in jas_seq.c in JasPer before 1.900.17 allows remote attackers to cause a denial of servic... |
| CVE-2016-9393 | — | — | 1.9% | Mar 23, 2017 | The jpc_pi_nextrpcl function in jpc_t2cod.c in JasPer before 1.900.17 allows remote attackers to cause a denial of servi... |
| CVE-2016-9392 | — | — | 2.0% | Mar 23, 2017 | The calcstepsizes function in jpc_dec.c in JasPer before 1.900.17 allows remote attackers to cause a denial of service (... |
| CVE-2016-9391 | — | — | 4.3% | Mar 23, 2017 | The jpc_bitstream_getbits function in jpc_bs.c in JasPer before 2.0.10 allows remote attackers to cause a denial of serv... |
| CVE-2016-9390 | — | — | 2.0% | Mar 23, 2017 | The jas_seq2d_create function in jas_seq.c in JasPer before 1.900.14 allows remote attackers to cause a denial of servic... |
| CVE-2016-9389 | — | — | 4.5% | Mar 23, 2017 | The jpc_irct and jpc_iict functions in jpc_mct.c in JasPer before 1.900.14 allow remote attackers to cause a denial of s... |
| CVE-2016-9387 | — | — | 1.9% | Mar 23, 2017 | Integer overflow in the jpc_dec_process_siz function in libjasper/jpc/jpc_dec.c in JasPer before 1.900.13 allows remote ... |
| CVE-2016-9266 | — | — | 2.1% | Mar 23, 2017 | listmp3.c in libming 0.4.7 allows remote attackers to unspecified impact via a crafted mp3 file, which triggers an inval... |
| CVE-2016-9265 | — | — | 1.6% | Mar 23, 2017 | The printMP3Headers function in listmp3.c in Libming 0.4.7 allows remote attackers to cause a denial of service (divide-... |
| CVE-2016-9264 | — | — | 1.7% | Mar 23, 2017 | Buffer overflow in the printMP3Headers function in listmp3.c in Libming 0.4.7 allows remote attackers to cause a denial ... |
| CVE-2016-9262 | — | — | 1.7% | Mar 23, 2017 | Multiple integer overflows in the (1) jas_realloc function in base/jas_malloc.c and (2) mem_resize function in base/jas_... |
| CVE-2016-9011 | — | — | 2.6% | Mar 23, 2017 | The wmf_malloc function in api.c in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (application cra... |
| CVE-2016-8887 | — | — | 2.2% | Mar 23, 2017 | The jp2_colr_destroy function in libjasper/jp2/jp2_cod.c in JasPer before 1.900.10 allows remote attackers to cause a de... |
| CVE-2016-8886 | — | — | 1.8% | Mar 23, 2017 | The jas_malloc function in libjasper/base/jas_malloc.c in JasPer before 1.900.11 allows remote attackers to have unspeci... |
| CVE-2016-8885 | — | — | 1.8% | Mar 23, 2017 | The bmp_getdata function in libjasper/bmp/bmp_dec.c in JasPer before 1.900.9 allows remote attackers to cause a denial o... |
| CVE-2016-10059 | — | — | 2.1% | Mar 23, 2017 | Buffer overflow in coders/tiff.c in ImageMagick before 6.9.4-1 allows remote attackers to cause a denial of service (app... |
| CVE-2016-10048 | — | — | 6.5% | Mar 23, 2017 | Directory traversal vulnerability in magick/module.c in ImageMagick 6.9.4-7 allows remote attackers to load arbitrary mo... |
| CVE-2016-10047 | — | — | 1.7% | Mar 23, 2017 | Memory leak in the NewXMLTree function in magick/xml-tree.c in ImageMagick before 6.9.4-7 allows remote attackers to cau... |
| CVE-2016-10046 | — | — | 2.0% | Mar 23, 2017 | Heap-based buffer overflow in the DrawImage function in magick/draw.c in ImageMagick before 6.9.5-5 allows remote attack... |
| CVE-2016-9775 | — | — | 0.7% | Mar 23, 2017 | The postrm script in the tomcat6 package before 6.0.45+dfsg-1~deb7u3 on Debian wheezy, before 6.0.45+dfsg-1~deb8u1 on De... |
| CVE-2016-9774 | — | — | 0.7% | Mar 23, 2017 | The postinst script in the tomcat6 package before 6.0.45+dfsg-1~deb7u4 on Debian wheezy, before 6.0.35-1ubuntu3.9 on Ubu... |
| CVE-2016-6225 | — | — | 1.1% | Mar 23, 2017 | xbcrypt in Percona XtraBackup before 2.3.6 and 2.4.x before 2.4.5 does not properly set the initialization vector (IV) f... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now