6,449 vulnerabilities published in 2016
The tcp_check_send_head function in include/net/tcp.h in the Linux kernel before 4.7.5 does not properly maintain certai
The XFS subsystem in the Linux kernel through 4.8.2 allows local users to cause a denial of service (fdatasync failure a
Unspecified vulnerability in the Sun ZFS Storage Appliance Kit (AK) component in Oracle Sun Systems Products Suite AK 20
Unspecified vulnerability in the RDBMS Programmable Interface component in Oracle Database Server 11.2.0.4 and 12.1.0.2
Unspecified vulnerability in the Oracle Applications DBA component in Oracle E-Business Suite 12.1.3 allows local users
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Ke
Unspecified vulnerability in the Oracle VM VirtualBox component before 5.0.28 and 5.1.x before 5.1.8 in Oracle Virtualiz
Improper handling of a repeating VRAT chunk in qcpfformat.dll allows attackers to cause a Null pointer dereference and c
Avast Internet Security v11.x.x, Pro Antivirus v11.x.x, Premier v11.x.x, Free Antivirus v11.x.x, Business Security v11.x
Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive information by using the "crafted image file"
For the NVIDIA Quadro, NVS, and GeForce products, improper sanitization of parameters in the NVStreamKMS.sys API layer c
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 3
The kernel API in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 mishandles permissi
Microsoft Office 2007 SP3 allows remote attackers to cause a denial of service (application hang) via a crafted Office d
libxml2 2.9.4 and earlier, as used in XMLSec 1.2.23 and earlier and other products, does not offer a flag directly indic
The tty_set_termios_ldisc function in drivers/tty/tty_ldisc.c in the Linux kernel before 4.5 allows local users to obtai
The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.5.3 does not check
The hid_input_field function in drivers/hid/hid-core.c in the Linux kernel before 4.6 allows physically proximate attack
Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obt
Cisco TelePresence endpoints running either CE or TC software contain a vulnerability that could allow an authenticated,
The mDNIe system service on Samsung Mobile S7 devices with M(6.0) software does not properly restrict setmDNIeScreenCurt
The installation component in IBM Rational Asset Analyzer (RAA) 6.1.0 before FP10 allows local users to discover the WAS
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Poi
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Poi
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Poi
An elevation of privilege in the System UI in Android 7.0 before 2016-11-01 could enable a local malicious user to bypas
An information disclosure vulnerability in the download manager in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x b
A remote denial of service vulnerability in Mediaserver in Android 6.x before 2016-11-01 and 7.0 before 2016-11-01 could
A remote denial of service vulnerability in Mediaserver in Android 6.x before 2016-11-01 and 7.0 before 2016-11-01 could
An elevation of privilege vulnerability in the Framework APIs in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x bef
An elevation of privilege vulnerability in the AOSP Launcher in Android 7.0 before 2016-11-01 could allow a local malici
An elevation of privilege vulnerability in the Account Manager Service in Android 7.0 before 2016-11-01 could enable a l
An elevation of privilege vulnerability in the Bluetooth component in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.
An information disclosure vulnerability in Mediaserver in Android 6.x before 2016-11-01 and 7.0 before 2016-11-01 could
A denial of service vulnerability in the Input Manager Service in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x be
An information disclosure vulnerability in the NVIDIA GPU driver in Android before 2016-11-05 could enable a local malic
A denial of service vulnerability in Mediaserver in Android before 2016-11-05 could enable an attacker to use a speciall
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Poi
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Poi
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Poi
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Poi
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Poi
An information disclosure vulnerability in kernel components, including the process-grouping subsystem and the networkin
crypto/algif_skcipher.c in the Linux kernel before 4.4.2 does not verify that a setkey operation has been performed on a
The x86_decode_insn function in arch/x86/kvm/emulate.c in the Linux kernel before 4.8.7, when KVM is enabled, allows loc
The TCP stack in the Linux kernel before 4.8.10 mishandles skb truncation, which allows local users to cause a denial of
The hash_accept function in crypto/algif_hash.c in the Linux kernel before 4.3.6 allows local users to cause a denial of
The mpi_powm function in lib/mpi/mpi-pow.c in the Linux kernel through 4.8.11 does not ensure that memory is allocated f
The __get_user_asm_ex macro in arch/x86/include/asm/uaccess.h in the Linux kernel before 4.7.5 does not initialize a cer
The cgroup offline implementation in the Linux kernel through 4.8.11 mishandles certain drain operations, which allows l
Scan for 2016 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started