2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-2109 | — | — | 29.2% | May 5, 2016 | The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 BIO implementation in OpenSSL before 1.0.1t and 1.... |
| CVE-2016-2108 | — | — | 77.9% | May 5, 2016 | The ASN.1 implementation in OpenSSL before 1.0.1o and 1.0.2 before 1.0.2c allows remote attackers to execute arbitrary c... |
| CVE-2016-2107 | MEDIUM | 5.9 | 89.1% | May 5, 2016 | The AES-NI implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h does not consider memory allocation during a ... |
| CVE-2016-2106 | — | — | 27.3% | May 5, 2016 | Integer overflow in the EVP_EncryptUpdate function in crypto/evp/evp_enc.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0... |
| CVE-2016-2105 | HIGH | 7.5 | 39.6% | May 5, 2016 | Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2... |
| CVE-2016-0895 | — | — | 1.2% | May 3, 2016 | EMC RSA Data Loss Prevention 9.6 before SP2 P5 allows remote attackers to conduct clickjacking attacks via web-site elem... |
| CVE-2016-0894 | — | — | 1.2% | May 3, 2016 | EMC RSA Data Loss Prevention 9.6 before SP2 P5 allows remote authenticated users to bypass intended object access restri... |
| CVE-2016-0893 | — | — | 1.6% | May 3, 2016 | EMC RSA Data Loss Prevention 9.6 before SP2 P5 allows remote authenticated users to obtain sensitive information by read... |
| CVE-2016-0892 | — | — | 1.5% | May 3, 2016 | Cross-site scripting (XSS) vulnerability in EMC RSA Data Loss Prevention 9.6 before SP2 P5 allows remote attackers to in... |
| CVE-2016-3951 | — | — | 0.6% | May 2, 2016 | Double free vulnerability in drivers/net/usb/cdc_ncm.c in the Linux kernel before 4.5 allows physically proximate attack... |
| CVE-2016-3689 | — | — | 0.6% | May 2, 2016 | The ims_pcu_parse_cdc_data function in drivers/input/misc/ims-pcu.c in the Linux kernel before 4.5.1 allows physically p... |
| CVE-2016-3140 | — | — | 1.8% | May 2, 2016 | The digi_port_init function in drivers/usb/serial/digi_acceleport.c in the Linux kernel before 4.5.1 allows physically p... |
| CVE-2016-3138 | — | — | 0.5% | May 2, 2016 | The acm_probe function in drivers/usb/class/cdc-acm.c in the Linux kernel before 4.5.1 allows physically proximate attac... |
| CVE-2016-3137 | — | — | 0.5% | May 2, 2016 | drivers/usb/serial/cypress_m8.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial... |
| CVE-2016-3136 | — | — | 1.8% | May 2, 2016 | The mct_u232_msr_to_state function in drivers/usb/serial/mct_u232.c in the Linux kernel before 4.5.1 allows physically p... |
| CVE-2016-2854 | HIGH | 7.8 | 0.9% | May 2, 2016 | The aufs module for the Linux kernel 3.x and 4.x does not properly maintain POSIX ACL xattr data, which allows local use... |
| CVE-2016-2853 | HIGH | 7.8 | 0.9% | May 2, 2016 | The aufs module for the Linux kernel 3.x and 4.x does not properly restrict the mount namespace, which allows local user... |
| CVE-2016-2188 | — | — | 1.8% | May 2, 2016 | The iowarrior_probe function in drivers/usb/misc/iowarrior.c in the Linux kernel before 4.5.1 allows physically proximat... |
| CVE-2016-2187 | — | — | 0.6% | May 2, 2016 | The gtco_probe function in drivers/input/tablet/gtco.c in the Linux kernel through 4.5.2 allows physically proximate att... |
| CVE-2016-2186 | — | — | 0.8% | May 2, 2016 | The powermate_probe function in drivers/input/misc/powermate.c in the Linux kernel before 4.5.1 allows physically proxim... |
| CVE-2016-2185 | — | — | 0.8% | May 2, 2016 | The ati_remote2_probe function in drivers/input/misc/ati_remote2.c in the Linux kernel before 4.5.1 allows physically pr... |
| CVE-2016-2117 | — | — | 6.3% | May 2, 2016 | The atl2_probe function in drivers/net/ethernet/atheros/atlx/atl2.c in the Linux kernel through 4.5.2 incorrectly enable... |
| CVE-2016-2070 | HIGH | 7.5 | 3.3% | May 2, 2016 | The tcp_cwnd_reduction function in net/ipv4/tcp_input.c in the Linux kernel before 4.3.5 allows remote attackers to caus... |
| CVE-2016-2053 | — | — | 0.5% | May 2, 2016 | The asn1_ber_decoder function in lib/asn1_decoder.c in the Linux kernel before 4.3 allows attackers to cause a denial of... |
| CVE-2016-1576 | HIGH | 7.8 | 1.1% | May 2, 2016 | The overlayfs implementation in the Linux kernel through 4.5.2 does not properly restrict the mount namespace, which all... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now