|
211711
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The mbcache feature in the ext2 and ext4 filesystem implementations in the Linux kernel before 4.6 mishandles xattr block caching, which allows local users to cause a denial of service (soft lockup) …
|
CWE-19
Data Processing Errors
|
CVE-2015-8952
|
2024-11-21 11:39 |
2016-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211712
|
6.1 |
MEDIUM
Local
|
linux google
|
linux_kernel android
|
The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 4.2 allows local users to obtain sensitive information or cause a denial of service (NULL pointer dereference) …
|
CWE-476
NULL Pointer Dereference
|
CVE-2015-8956
|
2024-11-21 11:39 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211713
|
7.3 |
HIGH
Local
|
linux google
|
linux_kernel android
|
arch/arm64/kernel/perf_event.c in the Linux kernel before 4.1 on arm64 platforms allows local users to gain privileges or cause a denial of service (invalid pointer dereference) via vectors involving…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-8955
|
2024-11-21 11:39 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211714
|
7.8 |
HIGH
Local
|
google
|
android
|
Multiple use-after-free vulnerabilities in sound/soc/msm/qdsp6v2/msm-lsm-client.c in the Qualcomm sound driver in Android before 2016-10-05 on Nexus 5X, Nexus 6P, and Android One devices allow attack…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-8951
|
2024-11-21 11:39 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211715
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
arch/arm64/mm/dma-mapping.c in the Linux kernel before 4.0.3, as used in the ION subsystem in Android and other products, does not initialize certain data structures, which allows local users to obta…
|
CWE-200
Information Exposure
|
CVE-2015-8950
|
2024-11-21 11:39 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211716
|
9.8 |
CRITICAL
Network
|
debian uclouvain
|
debian_linux openjpeg
|
Use-after-free vulnerability in the opj_j2k_write_mco function in j2k.c in OpenJPEG before 2.1.1 allows remote attackers to have unspecified impact via unknown vectors.
|
CWE-416
Use After Free
|
CVE-2015-8871
|
2024-11-21 11:39 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211717
|
8.1 |
HIGH
Network
|
ietf netapp
|
transport_layer_security snap_creator_framework data_ontap_edge snapdrive snapmanager smi-s_provider host_agent clustered_data_ontap_antivirus_connector solidfire_\&_hci_m…
|
The TLS protocol 1.2 and earlier supports the rsa_fixed_dh, dss_fixed_dh, rsa_fixed_ecdh, and ecdsa_fixed_ecdh values for ClientCertificateType but does not directly document the ability to compute t…
|
CWE-295
Improper Certificate Validation
|
CVE-2015-8960
|
2024-11-21 11:39 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211718
|
5.5 |
MEDIUM
Local
|
suse canonical libarchive
|
linux_enterprise_software_development_kit linux_enterprise_server linux_enterprise_desktop ubuntu_linux libarchive
|
The copy_from_lzss_window function in archive_read_support_format_rar.c in libarchive 3.2.0 and earlier allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted ra…
|
CWE-125
Out-of-bounds Read
|
CVE-2015-8934
|
2024-11-21 11:39 |
2016-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211719
|
5.5 |
MEDIUM
Local
|
libarchive suse canonical
|
libarchive linux_enterprise_software_development_kit linux_enterprise_server linux_enterprise_desktop ubuntu_linux
|
Integer overflow in the archive_read_format_tar_skip function in archive_read_support_format_tar.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (crash) via a crafte…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2015-8933
|
2024-11-21 11:39 |
2016-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211720
|
5.5 |
MEDIUM
Local
|
canonical debian suse libarchive
|
ubuntu_linux debian_linux linux_enterprise_software_development_kit linux_enterprise_server linux_enterprise_desktop libarchive
|
The compress_bidder_init function in archive_read_support_filter_compress.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (crash) via a crafted tar file, which trigg…
|
CWE-20
Improper Input Validation
|
CVE-2015-8932
|
2024-11-21 11:39 |
2016-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|