2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-3753 | — | — | 0.7% | Jul 11, 2016 | mediaserver in Android 4.x before 4.4.4 allows remote attackers to obtain sensitive information via unspecified vectors,... |
| CVE-2016-3752 | — | — | 0.5% | Jul 11, 2016 | internal/app/ChooserActivity.java in the ChooserTarget service in Android 6.x before 2016-07-01 mishandles target securi... |
| CVE-2016-3751 | — | — | 0.5% | Jul 11, 2016 | Unspecified vulnerability in libpng before 1.6.20, as used in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before... |
| CVE-2016-3750 | — | — | 0.4% | Jul 11, 2016 | libs/binder/Parcel.cpp in the Parcels Framework APIs in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1... |
| CVE-2016-3749 | — | — | 0.3% | Jul 11, 2016 | server/LockSettingsService.java in LockSettingsService in Android 6.x before 2016-07-01 allows attackers to modify the s... |
| CVE-2016-3748 | — | — | 0.4% | Jul 11, 2016 | The sockets subsystem in Android 6.x before 2016-07-01 allows attackers to bypass intended system-call restrictions via ... |
| CVE-2016-3747 | — | — | 0.4% | Jul 11, 2016 | Use-after-free vulnerability in the mm-video-v4l2 venc component in mediaserver in Android 4.x before 4.4.4, 5.0.x befor... |
| CVE-2016-3746 | — | — | 0.4% | Jul 11, 2016 | Use-after-free vulnerability in the mm-video-v4l2 vdec component in mediaserver in Android 4.x before 4.4.4, 5.0.x befor... |
| CVE-2016-3745 | — | — | 0.6% | Jul 11, 2016 | Multiple buffer overflows in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x be... |
| CVE-2016-3744 | — | — | 0.4% | Jul 11, 2016 | Buffer overflow in the create_pbuf function in btif/src/btif_hh.c in Bluetooth in Android 4.x before 4.4.4, 5.0.x before... |
| CVE-2016-3743 | — | — | 1.1% | Jul 11, 2016 | decoder/ih264d_api.c in mediaserver in Android 6.x before 2016-07-01 does not initialize certain data structures, which ... |
| CVE-2016-3742 | — | — | 1.1% | Jul 11, 2016 | decoder/ih264d_process_intra_mb.c in mediaserver in Android 6.x before 2016-07-01 mishandles intra mode, which allows re... |
| CVE-2016-3741 | — | — | 1.4% | Jul 11, 2016 | The H.264 decoder in mediaserver in Android 6.x before 2016-07-01 does not initialize certain slice data, which allows r... |
| CVE-2016-2508 | — | — | 1.7% | Jul 11, 2016 | media/libmediaplayerservice/nuplayer/GenericSource.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5... |
| CVE-2016-2507 | — | — | 1.2% | Jul 11, 2016 | Integer overflow in codecs/on2/h264dec/source/h264bsd_storage.c in libstagefright in mediaserver in Android 4.x before 4... |
| CVE-2016-2506 | — | — | 1.7% | Jul 11, 2016 | DRMExtractor.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, a... |
| CVE-2016-2505 | — | — | 1.1% | Jul 11, 2016 | mpeg2ts/ATSParser.cpp in libstagefright in mediaserver in Android 6.x before 2016-07-01 does not validate a certain sect... |
| CVE-2016-2503 | — | — | 0.5% | Jul 11, 2016 | The Qualcomm GPU driver in Android before 2016-07-05 on Nexus 5X and 6P devices allows attackers to gain privileges via ... |
| CVE-2016-2502 | — | — | 0.5% | Jul 11, 2016 | drivers/usb/gadget/f_serial.c in the Qualcomm USB driver in Android before 2016-07-05 on Nexus 5X and 6P devices allows ... |
| CVE-2016-2501 | — | — | 0.5% | Jul 11, 2016 | The Qualcomm camera driver in Android before 2016-07-05 on Nexus 5X, 6, 6P, and 7 (2013) devices allows attackers to gai... |
| CVE-2016-2068 | HIGH | 7.8 | 0.7% | Jul 11, 2016 | The MSM QDSP6 audio driver (aka sound driver) for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) And... |
| CVE-2016-2067 | HIGH | 7.8 | 0.7% | Jul 11, 2016 | drivers/gpu/msm/kgsl.c in the MSM graphics driver (aka GPU driver) for the Linux kernel 3.x, as used in Qualcomm Innovat... |
| CVE-2016-4463 | — | — | 14.2% | Jul 8, 2016 | Stack-based buffer overflow in Apache Xerces-C++ before 3.1.4 allows context-dependent attackers to cause a denial of se... |
| CVE-2016-4324 | — | — | 2.8% | Jul 8, 2016 | Use-after-free vulnerability in LibreOffice before 5.1.4 allows remote attackers to execute arbitrary code via a crafted... |
| CVE-2016-3794 | — | — | — | Jul 8, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-3814. Reason: This candidate is a reservation ... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now