2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-10092Heap-based buffer overflow in the readContigStripsIntoBuffer function in tif_unix.c in LibTIFF 4.0.7, 3.9.3, 3.9.4, 3.9....
CVE-2016-9558CRITICAL9.8(1) libdwarf/dwarf_leb.c and (2) dwarfdump/print_frames.c in libdwarf before 20161124 allow remote attackers to have uns...
CVE-2016-9261MEDIUM5.4Cross-site scripting (XSS) vulnerability in Tenable Log Correlation Engine (aka LCE) before 4.8.1 allows remote authenti...
CVE-2016-9259Cross-site scripting (XSS) vulnerability in Tenable Nessus before 6.9.1 allows remote authenticated users to inject arbi...
CVE-2016-10207The Xvnc server in TigerVNC allows remote attackers to cause a denial of service (invalid memory access and crash) by te...
CVE-2016-8715HIGH7.8An exploitable heap corruption vulnerability exists in the loadTrailer functionality of Iceni Argus version 6.6.05. A sp...
CVE-2016-8389HIGH7.8An exploitable integer-overflow vulnerability exists within Iceni Argus. When it attempts to convert a malformed PDF to ...
CVE-2016-8388HIGH7.8An exploitable arbitrary heap-overwrite vulnerability exists within Iceni Argus. When it attempts to convert a malformed...
CVE-2016-9818Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving an asy...
CVE-2016-9817Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving a (1) ...
CVE-2016-9816Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving an asy...
CVE-2016-9815Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host panic) by sending an asynchronous a...
CVE-2016-7553The buf.pl script before 2.20 in Irssi before 0.8.20 uses weak permissions for the scrollbuffer dump file created betwee...
CVE-2016-5240The DrawDashPolygon function in magick/render.c in GraphicsMagick before 1.3.24 and the SVG renderer in ImageMagick allo...
CVE-2016-10029MEDIUM5.5The virtio_gpu_set_scanout function in QEMU (aka Quick Emulator) built with Virtio GPU Device emulator support allows lo...
CVE-2016-10028MEDIUM5.5The virgl_cmd_get_capset function in hw/display/virtio-gpu-3d.c in QEMU (aka Quick Emulator) built with Virtio GPU Devic...
CVE-2016-8387HIGH7.8An exploitable heap-based buffer overflow exists in Iceni Argus. When it attempts to convert a malformed PDF with an obj...
CVE-2016-8386HIGH7.8An exploitable heap-based buffer overflow exists in Iceni Argus. When it attempts to convert a PDF containing a malforme...
CVE-2016-8385HIGH7.8An exploitable uninitialized variable vulnerability which leads to a stack-based buffer overflow exists in Iceni Argus. ...
CVE-2016-8510Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2016-8509Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2016-8105Drivers for the Intel Ethernet Controller X710 and Intel Ethernet Controller XL710 families before version 22.0 are vuln...
CVE-2016-5027dwarf_form.c in libdwarf 20160115 allows remote attackers to cause a denial of service (crash) via a crafted elf file.
CVE-2016-4493The demangle_template_value_parm and do_hpacc_template_literal functions in cplus-dem.c in libiberty allow remote attack...
CVE-2016-4492Buffer overflow in the do_type function in cplus-dem.c in libiberty allows remote attackers to cause a denial of service...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now