2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-1887 | — | — | 1.1% | May 25, 2016 | Integer signedness error in the sockargs function in sys/kern/uipc_syscalls.c in FreeBSD 10.1 before p34, 10.2 before p1... |
| CVE-2016-1886 | — | — | 1.1% | May 25, 2016 | Integer signedness error in the genkbd_commonioctl function in sys/dev/kbd/kbd.c in FreeBSD 9.3 before p42, 10.1 before ... |
| CVE-2016-1407 | — | — | 1.8% | May 25, 2016 | Cisco IOS XR through 5.3.2 mishandles Local Packet Transport Services (LPTS) flow-base entries, which allows remote atta... |
| CVE-2016-1406 | — | — | 1.6% | May 25, 2016 | The API web interface in Cisco Prime Infrastructure before 3.1 and Cisco Evolved Programmable Network Manager before 1.2... |
| CVE-2016-1400 | — | — | 1.8% | May 25, 2016 | Cisco TelePresence Video Communications Server (VCS) X8.x before X8.7.2 allows remote attackers to cause a denial of ser... |
| CVE-2016-1383 | — | — | 1.4% | May 25, 2016 | Memory leak in Cisco AsyncOS through 8.8 on Web Security Appliance (WSA) devices allows remote attackers to cause a deni... |
| CVE-2016-1382 | — | — | 1.9% | May 25, 2016 | Cisco AsyncOS before 8.5.3-069 and 8.6 through 8.8 on Web Security Appliance (WSA) devices mishandles memory allocation ... |
| CVE-2016-1381 | — | — | 1.4% | May 25, 2016 | Memory leak in Cisco AsyncOS 8.5 through 9.0 before 9.0.1-162 on Web Security Appliance (WSA) devices allows remote atta... |
| CVE-2016-1380 | — | — | 1.5% | May 25, 2016 | Cisco AsyncOS 8.0 before 8.0.6-119 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of ... |
| CVE-2016-0264 | MEDIUM | 5.6 | 3.9% | May 24, 2016 | Buffer overflow in the Java Virtual Machine (JVM) in IBM SDK, Java Technology Edition 6 before SR16 FP25 (6.0.16.25), 6 ... |
| CVE-2016-4783 | — | — | 0.8% | May 23, 2016 | Cross-site scripting (XSS) vulnerability in Lenovo SHAREit before 3.5.98_ww on Android before 4.4 allows remote attacker... |
| CVE-2016-4782 | — | — | 1.9% | May 23, 2016 | Lenovo SHAREit before 3.5.98_ww on Android before 4.2 allows remote attackers to have unspecified impact via a crafted i... |
| CVE-2016-4577 | — | — | 1.0% | May 23, 2016 | Buffer overflow in the Smart DNS functionality in the Huawei NGFW Module and Secospace USG6300, USG6500, USG6600, and US... |
| CVE-2016-4576 | — | — | 2.4% | May 23, 2016 | Buffer overflow in the Application Specific Packet Filtering (ASPF) functionality in the Huawei IPS Module, NGFW Module,... |
| CVE-2016-4087 | — | — | 1.5% | May 23, 2016 | Huawei S12700 switches with software before V200R008C00SPC500 and S5700 switches with software before V200R005SPH010, wh... |
| CVE-2016-4049 | — | — | 4.6% | May 23, 2016 | The bgp_dump_routes_func function in bgpd/bgp_dump.c in Quagga does not perform size checks when dumping data, which mig... |
| CVE-2016-4037 | MEDIUM | 6 | 0.4% | May 23, 2016 | The ehci_advance_state function in hw/usb/hcd-ehci.c in QEMU allows local guest OS administrators to cause a denial of s... |
| CVE-2016-4001 | HIGH | 8.6 | 4.9% | May 23, 2016 | Buffer overflow in the stellaris_enet_receive function in hw/net/stellaris_enet.c in QEMU, when the Stellaris ethernet c... |
| CVE-2016-3959 | — | — | 4.3% | May 23, 2016 | The Verify function in crypto/dsa/dsa.go in Go before 1.5.4 and 1.6.x before 1.6.1 does not properly check parameters pa... |
| CVE-2016-3958 | HIGH | 7.8 | 0.4% | May 23, 2016 | Untrusted search path vulnerability in Go before 1.5.4 and 1.6.x before 1.6.1 on Windows allows local users to gain priv... |
| CVE-2016-3664 | — | — | 0.9% | May 23, 2016 | Trend Micro Mobile Security for iOS before 3.2.1188 does not verify the X.509 certificate of the mobile application logi... |
| CVE-2016-2855 | — | — | 0.5% | May 23, 2016 | The Huawei Mobile Broadband HL Service 22.001.25.00.03 and earlier uses a weak ACL for the MobileBrServ program data dir... |
| CVE-2016-4951 | HIGH | 7.8 | 0.5% | May 23, 2016 | The tipc_nl_publ_dump function in net/tipc/socket.c in the Linux kernel through 4.6 does not verify socket existence, wh... |
| CVE-2016-4913 | HIGH | 7.8 | 0.5% | May 23, 2016 | The get_rock_ridge_filename function in fs/isofs/rock.c in the Linux kernel before 4.5.5 mishandles NM (aka alternate na... |
| CVE-2016-4805 | HIGH | 7.8 | 0.5% | May 23, 2016 | Use-after-free vulnerability in drivers/net/ppp/ppp_generic.c in the Linux kernel before 4.5.2 allows local users to cau... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now