Cisco IOS 15.5(3)S3, 15.6(1)S2, 15.6(2)S1, and 15.6(2)T1 does not properly dequeue invalid NTP packets, which allows remote attackers to cause a denial of service (interface wedge) by sending many crafted NTP packets, aka Bug ID CSCva35619.
Monthly Archives: August 2016
CVE-2016-4374
HPE Release Control (RC) 9.13, 9.20, and 9.21 before 9.21.0005 p4 allows remote authenticated users to conduct server-side request forgery (SSRF) attacks, and consequently obtain sensitive information or cause a denial of service, via unspecified vectors.
CVE-2016-5792
SQL injection vulnerability in Moxa SoftCMS before 1.5 allows remote attackers to execute arbitrary SQL commands via unspecified fields.
CVE-2016-6486
Siemens SINEMA Server uses weak permissions for the application folder, which allows local users to gain privileges via unspecified vectors.
DSA-3644 fontconfig – security update
Tobias Stoeckmann discovered that cache files are insufficiently
validated in fontconfig, a generic font configuration library. An
attacker can trigger arbitrary free() calls, which in turn allows double
free attacks and therefore arbitrary code execution. In combination with
setuid binaries using crafted cache files, this could allow privilege
escalation.
Vuln: OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
Vuln: RETIRED: Google Nexus CVE-2016-3843 Privilege Escalation Vulnerability
RETIRED: Google Nexus CVE-2016-3843 Privilege Escalation Vulnerability
Vuln: Multiple Citrix Products CVE-2016-6493 Memory Permission Security Weakness
Multiple Citrix Products CVE-2016-6493 Memory Permission Security Weakness
Vuln: FortiAnalyzer and FortiManager 'Filenames' HTML Injection Vulnerability
FortiAnalyzer and FortiManager ‘Filenames’ HTML Injection Vulnerability
CVE-2014-9410
The vfe31_proc_general function in drivers/media/video/msm/vfe/msm_vfe31.c in the MSM-VFE31 driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not validate a certain id value, which allows attackers to gain privileges or cause a denial of service (memory corruption) via an application that makes a crafted ioctl call.