2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-10092 | — | — | 2.4% | Mar 1, 2017 | Heap-based buffer overflow in the readContigStripsIntoBuffer function in tif_unix.c in LibTIFF 4.0.7, 3.9.3, 3.9.4, 3.9.... |
| CVE-2016-9259 | — | — | 0.9% | Feb 28, 2017 | Cross-site scripting (XSS) vulnerability in Tenable Nessus before 6.9.1 allows remote authenticated users to inject arbi... |
| CVE-2016-10207 | — | — | 3.2% | Feb 28, 2017 | The Xvnc server in TigerVNC allows remote attackers to cause a denial of service (invalid memory access and crash) by te... |
| CVE-2016-9818 | — | — | 0.5% | Feb 27, 2017 | Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving an asy... |
| CVE-2016-9817 | — | — | 0.5% | Feb 27, 2017 | Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving a (1) ... |
| CVE-2016-9816 | — | — | 0.5% | Feb 27, 2017 | Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving an asy... |
| CVE-2016-9815 | — | — | 0.5% | Feb 27, 2017 | Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host panic) by sending an asynchronous a... |
| CVE-2016-7553 | — | — | 0.4% | Feb 27, 2017 | The buf.pl script before 2.20 in Irssi before 0.8.20 uses weak permissions for the scrollbuffer dump file created betwee... |
| CVE-2016-5240 | — | — | 2.2% | Feb 27, 2017 | The DrawDashPolygon function in magick/render.c in GraphicsMagick before 1.3.24 and the SVG renderer in ImageMagick allo... |
| CVE-2016-8510 | — | — | — | Feb 27, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was... |
| CVE-2016-8509 | — | — | — | Feb 27, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was... |
| CVE-2016-8105 | — | — | 0.5% | Feb 27, 2017 | Drivers for the Intel Ethernet Controller X710 and Intel Ethernet Controller XL710 families before version 22.0 are vuln... |
| CVE-2016-5027 | — | — | 1.5% | Feb 24, 2017 | dwarf_form.c in libdwarf 20160115 allows remote attackers to cause a denial of service (crash) via a crafted elf file. |
| CVE-2016-4493 | — | — | 1.6% | Feb 24, 2017 | The demangle_template_value_parm and do_hpacc_template_literal functions in cplus-dem.c in libiberty allow remote attack... |
| CVE-2016-4492 | — | — | 1.9% | Feb 24, 2017 | Buffer overflow in the do_type function in cplus-dem.c in libiberty allows remote attackers to cause a denial of service... |
| CVE-2016-4491 | — | — | 1.8% | Feb 24, 2017 | The d_print_comp function in cp-demangle.c in libiberty allows remote attackers to cause a denial of service (segmentati... |
| CVE-2016-4490 | — | — | 1.8% | Feb 24, 2017 | Integer overflow in cp-demangle.c in libiberty allows remote attackers to cause a denial of service (segmentation fault ... |
| CVE-2016-4489 | — | — | 1.7% | Feb 24, 2017 | Integer overflow in the gnu_special function in libiberty allows remote attackers to cause a denial of service (segmenta... |
| CVE-2016-4488 | — | — | 1.7% | Feb 24, 2017 | Use-after-free vulnerability in libiberty allows remote attackers to cause a denial of service (segmentation fault and c... |
| CVE-2016-4487 | — | — | 1.7% | Feb 24, 2017 | Use-after-free vulnerability in libiberty allows remote attackers to cause a denial of service (segmentation fault and c... |
| CVE-2016-4043 | — | — | 1.0% | Feb 24, 2017 | Chameleon (five.pt) in Plone 5.0rc1 through 5.1a1 allows remote authenticated users to bypass Restricted Python by lever... |
| CVE-2016-4042 | — | — | 1.1% | Feb 24, 2017 | Plone 3.3 through 5.1a1 allows remote attackers to obtain information about the ID of sensitive content via unspecified ... |
| CVE-2016-4041 | — | — | 1.5% | Feb 24, 2017 | Plone 4.0 through 5.1a1 does not have security declarations for Dexterity content-related WebDAV requests, which allows ... |
| CVE-2016-2226 | — | — | 7.3% | Feb 24, 2017 | Integer overflow in the string_appends function in cplus-dem.c in libiberty allows remote attackers to execute arbitrary... |
| CVE-2016-9975 | — | — | 0.5% | Feb 24, 2017 | IBM Jazz for Service Management 1.1.2.1 and 1.1.3 is vulnerable to cross-site request forgery which could allow an attac... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now