2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-0850 | — | — | 0.6% | Apr 18, 2016 | The PORCHE_PAIRING_CONFLICT feature in Bluetooth in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, an... |
| CVE-2016-0849 | — | — | 0.2% | Apr 18, 2016 | Multiple integer overflows in minzip/SysUtil.c in the Recovery Procedure in Android 5.0.x before 5.0.2, 5.1.x before 5.1... |
| CVE-2016-0848 | — | — | 0.2% | Apr 18, 2016 | Race condition in Download Manager in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2... |
| CVE-2016-0847 | — | — | 0.2% | Apr 18, 2016 | The Telecom Component in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows attackers to s... |
| CVE-2016-0846 | — | — | 1.2% | Apr 18, 2016 | libs/binder/IMemory.cpp in the IMemory Native Interface in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.... |
| CVE-2016-0844 | — | — | 0.2% | Apr 18, 2016 | The Qualcomm RF driver in Android 6.x before 2016-04-01 does not properly restrict access to socket ioctl calls, which a... |
| CVE-2016-0843 | — | — | 0.2% | Apr 18, 2016 | The Qualcomm ARM processor performance-event manager in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1... |
| CVE-2016-0842 | — | — | 1.7% | Apr 18, 2016 | The H.264 decoder in libstagefright in Android 6.x before 2016-04-01 mishandles Memory Management Control Operation (MMC... |
| CVE-2016-0841 | — | — | 2.1% | Apr 18, 2016 | media/libmedia/mediametadataretriever.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5... |
| CVE-2016-0840 | — | — | 1.7% | Apr 18, 2016 | Multiple stack-based buffer underflows in decoder/ih264d_parse_cavlc.c in mediaserver in Android 6.x before 2016-04-01 a... |
| CVE-2016-0839 | — | — | 2.1% | Apr 18, 2016 | post_proc/volume_listener.c in mediaserver in Android 6.x before 2016-04-01 mishandles deleted effect context, which all... |
| CVE-2016-0838 | — | — | 2.8% | Apr 18, 2016 | Sonivox in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 do... |
| CVE-2016-0837 | — | — | 2.0% | Apr 18, 2016 | MPEG4Extractor.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1,... |
| CVE-2016-0836 | — | — | 2.2% | Apr 18, 2016 | Stack-based buffer overflow in decoder/impeg2d_vld.c in mediaserver in Android 6.x before 2016-04-01 allows remote attac... |
| CVE-2016-0835 | — | — | 2.8% | Apr 18, 2016 | decoder/impeg2d_dec_hdr.c in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary c... |
| CVE-2016-0834 | — | — | 1.5% | Apr 18, 2016 | An unspecified media codec in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary ... |
| CVE-2016-1340 | — | — | 0.4% | Apr 16, 2016 | Heap-based buffer overflow in Cisco Unified Computing System (UCS) Platform Emulator 2.5(2)TS4, 3.0(2c)A, and 3.0(2c)TS9... |
| CVE-2016-1339 | — | — | 0.4% | Apr 16, 2016 | Cisco Unified Computing System (UCS) Platform Emulator 2.5(2)TS4, 3.0(2c)A, and 3.0(2c)TS9 allows local users to gain pr... |
| CVE-2016-3144 | — | — | 1.1% | Apr 15, 2016 | Cross-site scripting (XSS) vulnerability in the Block Class module 7.x-2.x before 7.x-2.2 for Drupal allows remote authe... |
| CVE-2016-3961 | — | — | 0.5% | Apr 15, 2016 | Xen and the Linux kernel through 4.5.x do not properly suppress hugetlbfs support in x86 PV guests, which allows local P... |
| CVE-2016-2212 | — | — | 2.7% | Apr 15, 2016 | The getOrderByStatusUrlKey function in the Mage_Rss_Helper_Order class in app/code/core/Mage/Rss/Helper/Order.php in Mag... |
| CVE-2016-2146 | — | — | 3.4% | Apr 15, 2016 | The am_read_post_data function in mod_auth_mellon before 0.11.1 does not limit the amount of data read, which allows rem... |
| CVE-2016-2145 | — | — | 3.1% | Apr 15, 2016 | The am_read_post_data function in mod_auth_mellon before 0.11.1 does not check if the ap_get_client_block function retur... |
| CVE-2016-2076 | — | — | 1.4% | Apr 15, 2016 | Client Integration Plugin (CIP) in VMware vCenter Server 5.5 U3a, U3b, and U3c and 6.0 before U2; vCloud Director 5.5.5;... |
| CVE-2016-1274 | — | — | 1.4% | Apr 15, 2016 | Juniper Junos OS 14.1X53 before 14.1X53-D30 on QFX Series switches allows remote attackers to cause a denial of service ... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now