2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-5102 | — | — | 2.0% | Feb 6, 2017 | Buffer overflow in the readgifimage function in gif2tiff.c in the gif2tiff tool in LibTIFF 4.0.6 allows remote attackers... |
| CVE-2016-10208 | — | — | 0.4% | Feb 6, 2017 | The ext4_fill_super function in fs/ext4/super.c in the Linux kernel through 4.9.8 does not properly validate meta block ... |
| CVE-2016-10154 | — | — | 0.5% | Feb 6, 2017 | The smbhash function in fs/cifs/smbencrypt.c in the Linux kernel 4.9.x before 4.9.1 interacts incorrectly with the CONFI... |
| CVE-2016-10153 | — | — | 0.4% | Feb 6, 2017 | The crypto scatterlist API in the Linux kernel 4.9.x before 4.9.6 interacts incorrectly with the CONFIG_VMAP_STACK optio... |
| CVE-2016-10150 | CRITICAL | 9.8 | 10.2% | Feb 6, 2017 | Use-after-free vulnerability in the kvm_ioctl_create_device function in virt/kvm/kvm_main.c in the Linux kernel before 4... |
| CVE-2016-10098 | — | — | 2.5% | Feb 5, 2017 | An issue was discovered on SendQuick Entera and Avera devices before 2HF16. Multiple Command Injection vulnerabilities a... |
| CVE-2016-8753 | — | — | — | Feb 4, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2016-0730 | — | — | — | Feb 4, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2016-7147 | — | — | 1.3% | Feb 4, 2017 | Cross-site scripting (XSS) vulnerability in the manage_findResult component in the search feature in Zope ZMI in Plone b... |
| CVE-2016-6500 | — | — | 2.3% | Feb 3, 2017 | Unspecified methods in the RACF Connector component before 1.1.1.0 in ForgeRock OpenIDM and OpenICF improperly call the ... |
| CVE-2016-10165 | HIGH | 7.1 | 2.8% | Feb 3, 2017 | The Type_MLU_Read function in cmstypes.c in Little CMS (aka lcms2) allows remote attackers to obtain sensitive informati... |
| CVE-2016-6188 | MEDIUM | 6.5 | 2.1% | Feb 3, 2017 | Memory leak in SOGo 2.3.7 allows remote attackers to cause a denial of service (memory consumption) via a large number o... |
| CVE-2016-4797 | — | — | 2.0% | Feb 3, 2017 | Divide-by-zero vulnerability in the opj_tcd_init_tile function in tcd.c in OpenJPEG before 2.1.1 allows remote attackers... |
| CVE-2016-4796 | — | — | 3.6% | Feb 3, 2017 | Heap-based buffer overflow in the color_cmyk_to_rgb in common/color.c in OpenJPEG before 2.1.1 allows remote attackers t... |
| CVE-2016-3183 | — | — | 3.4% | Feb 3, 2017 | The sycc422_t_rgb function in common/color.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of servi... |
| CVE-2016-9642 | — | — | 1.3% | Feb 3, 2017 | JavaScriptCore in WebKit allows attackers to cause a denial of service (out-of-bounds heap read) via a crafted Javascrip... |
| CVE-2016-9108 | HIGH | 7.5 | 2.8% | Feb 3, 2017 | Integer overflow in the js_regcomp function in regexp.c in Artifex Software, Inc. MuJS before commit b6de34ac6d8bb7dd546... |
| CVE-2016-9085 | LOW | 3.3 | 0.4% | Feb 3, 2017 | Multiple integer overflows in libwebp allows attackers to have unspecified impact via unknown vectors. |
| CVE-2016-9082 | — | — | 2.0% | Feb 3, 2017 | Integer overflow in the write_png function in cairo 1.14.6 allows remote attackers to cause a denial of service (invalid... |
| CVE-2016-8569 | — | — | 1.8% | Feb 3, 2017 | The git_oid_nfmt function in commit.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (NUL... |
| CVE-2016-8568 | — | — | 1.9% | Feb 3, 2017 | The git_commit_message function in oid.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (... |
| CVE-2016-6163 | — | — | 1.4% | Feb 3, 2017 | The rsvg_pattern_fix_fallback function in rsvg-paint_server.c in librsvg2 2.40.2 allows remote attackers to cause a deni... |
| CVE-2016-5241 | — | — | 1.6% | Feb 3, 2017 | magick/render.c in GraphicsMagick before 1.3.24 allows remote attackers to cause a denial of service (arithmetic excepti... |
| CVE-2016-5115 | — | — | 1.1% | Feb 3, 2017 | The avcodec_decode_audio4 function in libavcodec in libavformat 57.34.103, as used in MPlayer, allows remote attackers t... |
| CVE-2016-4571 | MEDIUM | 5.5 | 1.6% | Feb 3, 2017 | The mxml_write_node function in mxml-file.c in mxml 2.9, 2.7, and possibly earlier allows remote attackers to cause a de... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now