Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2017-01-06 CVE-2016-4336 Out-of-bounds Write vulnerability in Lexmark Perceptive Document Filters
An exploitable out-of-bounds write exists in the Bzip2 parsing of the Lexmark Perspective Document Filters conversion functionality.
network
low complexity
lexmark CWE-787
critical
9.8
2017-01-06 CVE-2016-4335 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Lexmark Perceptive Document Filters
An exploitable buffer overflow exists in the XLS parsing of the Lexmark Perspective Document Filters conversion functionality.
local
low complexity
lexmark CWE-119
8.4
2017-01-06 CVE-2016-4329 Improper Input Validation vulnerability in Kaspersky Anti-Virus, Internet Security and Total Security
A local denial of service vulnerability exists in window broadcast message handling functionality of Kaspersky Anti-Virus software.
local
low complexity
kaspersky CWE-20
5.5
2017-01-06 CVE-2016-4323 Path Traversal vulnerability in multiple products
A directory traversal exists in the handling of the MXIT protocol in Pidgin.
network
high complexity
pidgin canonical debian CWE-22
3.7
2017-01-06 CVE-2016-4307 Improper Access Control vulnerability in Kaspersky Internet Security 16.0.0
A denial of service vulnerability exists in the IOCTL handling functionality of Kaspersky Internet Security KL1 driver.
local
low complexity
kaspersky CWE-284
5.5
2017-01-06 CVE-2016-4306 Information Exposure vulnerability in Kaspersky Total Security 16.0.0.614
Multiple information leaks exist in various IOCTL handlers of the Kaspersky Internet Security KLDISK driver.
local
low complexity
kaspersky CWE-200
5.5
2017-01-06 CVE-2016-4305 Improper Access Control vulnerability in Kaspersky Internet Security 16.0.0
A denial of service vulnerability exists in the syscall filtering functionality of Kaspersky Internet Security KLIF driver.
local
low complexity
kaspersky CWE-284
5.5
2017-01-06 CVE-2016-4304 Improper Access Control vulnerability in Kaspersky Internet Security 16.0.0
A denial of service vulnerability exists in the syscall filtering functionality of the Kaspersky Internet Security KLIF driver.
local
low complexity
kaspersky CWE-284
5.5
2017-01-06 CVE-2016-4298 Integer Overflow or Wraparound vulnerability in Hancom Office 2014 9.1.0.2176
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will attempt to allocate space for a list of elements using a length from the file.
local
low complexity
hancom CWE-190
7.8
2017-01-06 CVE-2016-4296 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Hancom Office 2014 9.1.0.2176
When opening a Hangul Hcell Document (.cell) and processing a record that uses the CSSValFormat object, Hancom Office 2014 will search for an underscore ("_") character at the end of the string and write a null terminator after it.
local
low complexity
hancom CWE-119
7.8