2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2016-4568HIGH7.8drivers/media/v4l2-core/videobuf2-v4l2.c in the Linux kernel before 4.5.3 allows local users to cause a denial of servic...
CVE-2016-4565HIGH7.8The InfiniBand (aka IB) stack in the Linux kernel before 4.5.3 incorrectly relies on the write system call, which allows...
CVE-2016-4558HIGH7The BPF subsystem in the Linux kernel before 4.5.5 mishandles reference counts, which allows local users to cause a deni...
CVE-2016-4557HIGH7.8The replace_map_fd_with_map_ptr function in kernel/bpf/verifier.c in the Linux kernel before 4.5.5 does not properly mai...
CVE-2016-4343HIGH8.8The phar_make_dirstream function in ext/phar/dirstream.c in PHP before 5.6.18 and 7.x before 7.0.3 mishandles zero-size ...
CVE-2016-1834HIGH7.8Heap-based buffer overflow in the xmlStrncat function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X b...
CVE-2016-3674HIGH7.5Multiple XML external entity (XXE) vulnerabilities in the (1) Dom4JDriver, (2) DomDriver, (3) JDomDriver, (4) JDom2Drive...
CVE-2016-3627HIGH7.5The xmlStringGetNodeList function in tree.c in libxml2 2.9.3 and earlier, when used in recovery mode, allows context-dep...
CVE-2016-1669HIGH8.8The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as used in Google Chrome before 50.0.2661.102, does not...
CVE-2016-3710HIGH8.8The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS...
CVE-2016-0189HIGH7.5The Microsoft (1) JScript 5.8 and (2) VBScript 5.7 and 5.8 engines, as used in Internet Explorer 9 through 11 and other ...
CVE-2016-0185HIGH7.8Media Center in Microsoft Windows Vista SP2, Windows 7 SP1, and Windows 8.1 allows remote attackers to execute arbitrary...
CVE-2016-4476HIGH7.5hostapd 0.6.7 through 2.5 and wpa_supplicant 0.6.7 through 2.5 do not reject \n and \r characters in passphrase paramete...
CVE-2016-4074HIGH7.5The jv_dump_term function in jq 1.5 allows remote attackers to cause a denial of service (stack consumption and applicat...
CVE-2016-2062HIGH7.8The adreno_perfcounter_query_group function in drivers/gpu/msm/adreno_perfcounter.c in the Adreno GPU driver for the Lin...
CVE-2016-2059HIGH7The msm_ipc_router_bind_control_port function in net/ipc_router/ipc_router_core.c in the IPC router kernel module for th...
CVE-2016-3714HIGH8.4The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6....
CVE-2016-2105HIGH7.5Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2...
CVE-2016-2854HIGH7.8The aufs module for the Linux kernel 3.x and 4.x does not properly maintain POSIX ACL xattr data, which allows local use...
CVE-2016-2853HIGH7.8The aufs module for the Linux kernel 3.x and 4.x does not properly restrict the mount namespace, which allows local user...
CVE-2016-2070HIGH7.5The tcp_cwnd_reduction function in net/ipv4/tcp_input.c in the Linux kernel before 4.3.5 allows remote attackers to caus...
CVE-2016-1576HIGH7.8The overlayfs implementation in the Linux kernel through 4.5.2 does not properly restrict the mount namespace, which all...
CVE-2016-1575HIGH7.8The overlayfs implementation in the Linux kernel through 4.5.2 does not properly maintain POSIX ACL xattr data, which al...
CVE-2016-3135HIGH7.8Integer overflow in the xt_alloc_table_info function in net/netfilter/x_tables.c in the Linux kernel through 4.5.2 on 32...
CVE-2016-2143HIGH7.8The fork implementation in the Linux kernel before 4.5 on s390 platforms mishandles the case of four page-table levels, ...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now