Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2017-04-05 CVE-2016-9091 OS Command Injection vulnerability in Bluecoat products
Blue Coat Advanced Secure Gateway (ASG) 6.6 before 6.6.5.4 and Content Analysis System (CAS) 1.3 before 1.3.7.4 are susceptible to an OS command injection vulnerability.
network
low complexity
bluecoat CWE-78
7.2
2017-04-05 CVE-2017-6975 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Iphone OS
Wi-Fi in Apple iOS before 10.3.1 does not prevent CVE-2017-6956 stack buffer overflow exploitation via a crafted access point.
low complexity
apple CWE-119
6.8
2017-04-05 CVE-2017-6956 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Broadcom Hardmac Wi-Fi SOC Firmware 6.37.34.40
On the Broadcom Wi-Fi HardMAC SoC with fbt firmware, a stack buffer overflow occurs when handling an 802.11r (FT) authentication response, leading to remote code execution via a crafted access point that sends a long R0KH-ID field in a Fast BSS Transition Information Element (FT-IE).
low complexity
broadcom CWE-119
8.8
2017-04-05 CVE-2017-0339 Unspecified vulnerability in Linux Kernel 3.10
An elevation of privilege vulnerability in the NVIDIA crypto driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
linux
7.0
2017-04-05 CVE-2017-0332 Out-of-bounds Write vulnerability in Linux Kernel 3.10
An elevation of privilege vulnerability in the NVIDIA crypto driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
linux CWE-787
7.0
2017-04-05 CVE-2017-0330 Information Exposure vulnerability in Linux Kernel 3.10
An information disclosure vulnerability in the NVIDIA crypto driver could enable a local malicious application to access data outside of its permission levels.
local
high complexity
linux CWE-200
4.7
2017-04-05 CVE-2017-0329 Unspecified vulnerability in Linux Kernel 3.18
An elevation of privilege vulnerability in the NVIDIA boot and power management processor driver could enable a local malicious application to execute arbitrary code within the context of the boot and power management processor.
local
high complexity
linux
7.0
2017-04-05 CVE-2017-0328 Information Exposure vulnerability in Linux Kernel 3.10
An information disclosure vulnerability in the NVIDIA crypto driver could enable a local malicious application to access data outside of its permission levels.
local
high complexity
linux CWE-200
4.7
2017-04-05 CVE-2017-0327 Classic Buffer Overflow vulnerability in Linux Kernel 3.10
An elevation of privilege vulnerability in the NVIDIA crypto driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
linux CWE-120
7.0
2017-04-05 CVE-2017-0325 Out-of-bounds Write vulnerability in Linux Kernel 3.10/3.18
An elevation of privilege vulnerability in the NVIDIA I2C HID driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
linux CWE-787
7.0