Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2017-01-28 CVE-2016-7925 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tcpdump
The compressed SLIP parser in tcpdump before 4.9.0 has a buffer overflow in print-sl.c:sl_if_print().
network
low complexity
tcpdump CWE-119
critical
9.8
2017-01-28 CVE-2016-7924 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tcpdump
The ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-atm.c:oam_print().
network
low complexity
tcpdump CWE-119
critical
9.8
2017-01-28 CVE-2016-7923 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tcpdump
The ARP parser in tcpdump before 4.9.0 has a buffer overflow in print-arp.c:arp_print().
network
low complexity
tcpdump CWE-119
critical
9.8
2017-01-28 CVE-2016-7922 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tcpdump
The AH parser in tcpdump before 4.9.0 has a buffer overflow in print-ah.c:ah_print().
network
low complexity
tcpdump CWE-119
critical
9.8
2017-01-27 CVE-2017-5601 Out-of-bounds Read vulnerability in Libarchive 3.2.2
An error in the lha_read_file_header_1() function (archive_read_support_format_lha.c) in libarchive 3.2.2 allows remote attackers to trigger an out-of-bounds read memory access and subsequently cause a crash via a specially crafted archive.
network
low complexity
libarchive CWE-125
7.5
2017-01-27 CVE-2017-5329 Out-of-bounds Write vulnerability in Paloaltonetworks Terminal Services Agent
Palo Alto Networks Terminal Services Agent before 7.0.7 allows local users to gain privileges via vectors that trigger an out-of-bounds write operation.
local
low complexity
paloaltonetworks CWE-787
7.8
2017-01-27 CVE-2017-5328 Unspecified vulnerability in Paloaltonetworks Terminal Services Agent
Palo Alto Networks Terminal Services Agent before 7.0.7 allows attackers to spoof arbitrary users via unspecified vectors.
network
low complexity
paloaltonetworks
7.5
2017-01-27 CVE-2017-3443 Unspecified vulnerability in Oracle Common Applications
Vulnerability in the Oracle Common Applications component of Oracle E-Business Suite (subcomponent: User Interface).
network
low complexity
oracle
8.2
2017-01-27 CVE-2017-3442 Unspecified vulnerability in Oracle Customer Interaction History 12.1.1/12.1.2/12.1.3
Vulnerability in the Oracle Customer Interaction History component of Oracle E-Business Suite (subcomponent: User Interface).
network
low complexity
oracle
8.2
2017-01-27 CVE-2017-3441 Unspecified vulnerability in Oracle Customer Interaction History 12.1.1/12.1.2/12.1.3
Vulnerability in the Oracle Customer Interaction History component of Oracle E-Business Suite (subcomponent: User Interface).
network
low complexity
oracle
8.2