2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-10092 | — | — | 2.4% | Mar 1, 2017 | Heap-based buffer overflow in the readContigStripsIntoBuffer function in tif_unix.c in LibTIFF 4.0.7, 3.9.3, 3.9.4, 3.9.... |
| CVE-2016-9558 | CRITICAL | 9.8 | 5.1% | Feb 28, 2017 | (1) libdwarf/dwarf_leb.c and (2) dwarfdump/print_frames.c in libdwarf before 20161124 allow remote attackers to have uns... |
| CVE-2016-9261 | MEDIUM | 5.4 | 0.7% | Feb 28, 2017 | Cross-site scripting (XSS) vulnerability in Tenable Log Correlation Engine (aka LCE) before 4.8.1 allows remote authenti... |
| CVE-2016-9259 | — | — | 0.9% | Feb 28, 2017 | Cross-site scripting (XSS) vulnerability in Tenable Nessus before 6.9.1 allows remote authenticated users to inject arbi... |
| CVE-2016-10207 | — | — | 3.2% | Feb 28, 2017 | The Xvnc server in TigerVNC allows remote attackers to cause a denial of service (invalid memory access and crash) by te... |
| CVE-2016-8715 | HIGH | 7.8 | 1.9% | Feb 28, 2017 | An exploitable heap corruption vulnerability exists in the loadTrailer functionality of Iceni Argus version 6.6.05. A sp... |
| CVE-2016-8389 | HIGH | 7.8 | 2.1% | Feb 28, 2017 | An exploitable integer-overflow vulnerability exists within Iceni Argus. When it attempts to convert a malformed PDF to ... |
| CVE-2016-8388 | HIGH | 7.8 | 1.9% | Feb 28, 2017 | An exploitable arbitrary heap-overwrite vulnerability exists within Iceni Argus. When it attempts to convert a malformed... |
| CVE-2016-9818 | — | — | 0.5% | Feb 27, 2017 | Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving an asy... |
| CVE-2016-9817 | — | — | 0.5% | Feb 27, 2017 | Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving a (1) ... |
| CVE-2016-9816 | — | — | 0.5% | Feb 27, 2017 | Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving an asy... |
| CVE-2016-9815 | — | — | 0.5% | Feb 27, 2017 | Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host panic) by sending an asynchronous a... |
| CVE-2016-7553 | — | — | 0.4% | Feb 27, 2017 | The buf.pl script before 2.20 in Irssi before 0.8.20 uses weak permissions for the scrollbuffer dump file created betwee... |
| CVE-2016-5240 | — | — | 2.2% | Feb 27, 2017 | The DrawDashPolygon function in magick/render.c in GraphicsMagick before 1.3.24 and the SVG renderer in ImageMagick allo... |
| CVE-2016-10029 | MEDIUM | 5.5 | 0.4% | Feb 27, 2017 | The virtio_gpu_set_scanout function in QEMU (aka Quick Emulator) built with Virtio GPU Device emulator support allows lo... |
| CVE-2016-10028 | MEDIUM | 5.5 | 0.4% | Feb 27, 2017 | The virgl_cmd_get_capset function in hw/display/virtio-gpu-3d.c in QEMU (aka Quick Emulator) built with Virtio GPU Devic... |
| CVE-2016-8387 | HIGH | 7.8 | 2.3% | Feb 27, 2017 | An exploitable heap-based buffer overflow exists in Iceni Argus. When it attempts to convert a malformed PDF with an obj... |
| CVE-2016-8386 | HIGH | 7.8 | 2.3% | Feb 27, 2017 | An exploitable heap-based buffer overflow exists in Iceni Argus. When it attempts to convert a PDF containing a malforme... |
| CVE-2016-8385 | HIGH | 7.8 | 2.3% | Feb 27, 2017 | An exploitable uninitialized variable vulnerability which leads to a stack-based buffer overflow exists in Iceni Argus. ... |
| CVE-2016-8510 | — | — | — | Feb 27, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was... |
| CVE-2016-8509 | — | — | — | Feb 27, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was... |
| CVE-2016-8105 | — | — | 0.5% | Feb 27, 2017 | Drivers for the Intel Ethernet Controller X710 and Intel Ethernet Controller XL710 families before version 22.0 are vuln... |
| CVE-2016-5027 | — | — | 1.5% | Feb 24, 2017 | dwarf_form.c in libdwarf 20160115 allows remote attackers to cause a denial of service (crash) via a crafted elf file. |
| CVE-2016-4493 | — | — | 1.6% | Feb 24, 2017 | The demangle_template_value_parm and do_hpacc_template_literal functions in cplus-dem.c in libiberty allow remote attack... |
| CVE-2016-4492 | — | — | 1.9% | Feb 24, 2017 | Buffer overflow in the do_type function in cplus-dem.c in libiberty allows remote attackers to cause a denial of service... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now