2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-3993 | — | — | 2.9% | May 13, 2016 | Off-by-one error in the __imlib_MergeUpdate function in lib/updates.c in imlib2 before 1.4.9 allows remote attackers to ... |
| CVE-2016-2860 | — | — | 1.5% | May 13, 2016 | The newEntry function in ptserver/ptprocs.c in OpenAFS before 1.6.17 allows remote authenticated users from foreign Kerb... |
| CVE-2016-2850 | — | — | 2.1% | May 13, 2016 | Botan 1.11.x before 1.11.29 does not enforce TLS policy for (1) signature algorithms and (2) ECC curves, which allows re... |
| CVE-2016-2849 | — | — | 2.5% | May 13, 2016 | Botan before 1.10.13 and 1.11.x before 1.11.29 do not use a constant-time algorithm to perform a modular inverse on the ... |
| CVE-2016-2196 | — | — | 5.3% | May 13, 2016 | Heap-based buffer overflow in the P-521 reduction function in Botan 1.11.x before 1.11.27 allows remote attackers to cau... |
| CVE-2016-2195 | — | — | 6.7% | May 13, 2016 | Integer overflow in the PointGFp constructor in Botan before 1.10.11 and 1.11.x before 1.11.27 allows remote attackers t... |
| CVE-2016-2194 | — | — | 2.6% | May 13, 2016 | The ressol function in Botan before 1.10.11 and 1.11.x before 1.11.27 allows remote attackers to cause a denial of servi... |
| CVE-2016-2099 | — | — | 6.8% | May 13, 2016 | Use-after-free vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 3.1.3 and earlier allows context-depe... |
| CVE-2016-1580 | — | — | 3.5% | May 13, 2016 | The setup_snappy_os_mounts function in the ubuntu-core-launcher package before 1.0.27.1 improperly determines the mount ... |
| CVE-2016-1578 | — | — | 3.0% | May 13, 2016 | Use-after-free vulnerability in Oxide allows remote attackers to cause a denial of service (application crash) or execut... |
| CVE-2016-4499 | — | — | 0.5% | May 12, 2016 | Heap-based buffer overflow in Panasonic FPWIN Pro 5.x through 7.x before 7.130 allows local users to cause a denial of s... |
| CVE-2016-4498 | — | — | 0.9% | May 12, 2016 | Panasonic FPWIN Pro 5.x through 7.x before 7.130 accesses an uninitialized pointer, which allows local users to cause a ... |
| CVE-2016-4497 | — | — | 0.6% | May 12, 2016 | Panasonic FPWIN Pro 5.x through 7.x before 7.130 allows local users to cause a denial of service or possibly have unspec... |
| CVE-2016-4496 | — | — | 0.3% | May 12, 2016 | Panasonic FPWIN Pro 5.x through 7.x before 7.130 allows local users to cause a denial of service (out-of-bounds write) o... |
| CVE-2016-1393 | — | — | 0.9% | May 12, 2016 | SQL injection vulnerability in Cisco Cloud Network Automation Provisioner (CNAP) 1.0 and 1.1 allows remote authenticated... |
| CVE-2016-3712 | MEDIUM | 5.5 | 0.5% | May 11, 2016 | Integer overflow in the VGA module in QEMU allows local guest OS users to cause a denial of service (out-of-bounds read ... |
| CVE-2016-3710 | HIGH | 8.8 | 0.9% | May 11, 2016 | The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS... |
| CVE-2016-1236 | — | — | 0.9% | May 11, 2016 | Multiple cross-site scripting (XSS) vulnerabilities in (1) revision.php, (2) log.php, (3) listing.php, and (4) comp.php ... |
| CVE-2016-4116 | — | — | 8.4% | May 11, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsof... |
| CVE-2016-4115 | — | — | 8.4% | May 11, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsof... |
| CVE-2016-4114 | — | — | 8.4% | May 11, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsof... |
| CVE-2016-4113 | — | — | 8.4% | May 11, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsof... |
| CVE-2016-4112 | — | — | 8.4% | May 11, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsof... |
| CVE-2016-4111 | — | — | 8.4% | May 11, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsof... |
| CVE-2016-4110 | — | — | 8.4% | May 11, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsof... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now