2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-1655 | — | — | 2.1% | Apr 18, 2016 | Google Chrome before 50.0.2661.75 does not properly consider that frame removal may occur during callback execution, whi... |
| CVE-2016-1654 | — | — | 1.2% | Apr 18, 2016 | The media subsystem in Google Chrome before 50.0.2661.75 does not initialize an unspecified data structure, which allows... |
| CVE-2016-1653 | — | — | 2.6% | Apr 18, 2016 | The LoadBuffer implementation in Google V8, as used in Google Chrome before 50.0.2661.75, mishandles data types, which a... |
| CVE-2016-1652 | — | — | 1.1% | Apr 18, 2016 | Cross-site scripting (XSS) vulnerability in the ModuleSystem::RequireForJsInner function in extensions/renderer/module_s... |
| CVE-2016-1651 | — | — | 1.3% | Apr 18, 2016 | fxcodec/codec/fx_codec_jpx_opj.cpp in PDFium, as used in Google Chrome before 50.0.2661.75, does not properly implement ... |
| CVE-2016-2427 | — | — | 0.4% | Apr 18, 2016 | The AES-GCM specification in RFC 5084, as used in Android 5.x and 6.x, recommends 12 octets for the aes-ICVlen parameter... |
| CVE-2016-2426 | — | — | 0.4% | Apr 18, 2016 | server/content/ContentService.java in the Framework component in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x bef... |
| CVE-2016-2425 | — | — | 0.5% | Apr 18, 2016 | mail/compose/ComposeActivity.java in AOSP Mail in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and ... |
| CVE-2016-2424 | — | — | 0.4% | Apr 18, 2016 | server/content/SyncStorageEngine.java in SyncStorageEngine in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before... |
| CVE-2016-2423 | — | — | 0.2% | Apr 18, 2016 | server/telecom/CallsManager.java in Telephony in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6... |
| CVE-2016-2422 | — | — | 0.4% | Apr 18, 2016 | Wi-Fi in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not prevent us... |
| CVE-2016-2421 | — | — | 0.2% | Apr 18, 2016 | Setup Wizard in Android 5.1.x before 5.1.1 and 6.x before 2016-04-01 allows physically proximate attackers to bypass the... |
| CVE-2016-2420 | — | — | 0.5% | Apr 18, 2016 | rootdir/init.rc in Android 4.x before 4.4.4 does not ensure that the /data/tombstones directory exists for the Debuggerd... |
| CVE-2016-2419 | — | — | 0.8% | Apr 18, 2016 | media/libmedia/IDrm.cpp in mediaserver in Android 6.x before 2016-04-01 does not initialize a certain key-request data s... |
| CVE-2016-2418 | — | — | 0.8% | Apr 18, 2016 | media/libmedia/IOMX.cpp in mediaserver in Android 6.x before 2016-04-01 does not initialize certain metadata buffer poin... |
| CVE-2016-2417 | — | — | 5.3% | Apr 18, 2016 | media/libmedia/IOMX.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x befo... |
| CVE-2016-2416 | — | — | 1.1% | Apr 18, 2016 | libs/gui/BufferQueueConsumer.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and... |
| CVE-2016-2415 | — | — | 0.4% | Apr 18, 2016 | exchange/eas/EasAutoDiscover.java in the Autodiscover implementation in Exchange ActiveSync in Android 5.0.x before 5.0.... |
| CVE-2016-2414 | — | — | 0.4% | Apr 18, 2016 | The Minikin library in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not properly consi... |
| CVE-2016-2413 | — | — | 0.5% | Apr 18, 2016 | media/libmedia/IOMX.cpp in mediaserver in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does... |
| CVE-2016-2412 | — | — | 0.5% | Apr 18, 2016 | include/core/SkPostConfig.h in Skia, as used in System_server in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x bef... |
| CVE-2016-2411 | — | — | 0.5% | Apr 18, 2016 | A Qualcomm Power Management kernel driver in Android 6.x before 2016-04-01 allows attackers to gain privileges via a cra... |
| CVE-2016-2410 | — | — | 0.2% | Apr 18, 2016 | A Qualcomm video kernel driver in Android 6.x before 2016-04-01 allows attackers to gain privileges via a crafted applic... |
| CVE-2016-2409 | — | — | 0.5% | Apr 18, 2016 | A Texas Instruments (TI) haptic kernel driver in Android 6.x before 2016-04-01 allows attackers to gain privileges via a... |
| CVE-2016-1503 | — | — | 6.3% | Apr 18, 2016 | dhcpcd before 6.10.0, as used in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-0... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now