Vulnerabilities > Data Processing Errors

DATE CVE VULNERABILITY TITLE RISK
2017-03-20 CVE-2015-8985 Data Processing Errors vulnerability in GNU Glibc
The pop_fail_stack function in the GNU C Library (aka glibc or libc6) allows context-dependent attackers to cause a denial of service (assertion failure and application crash) via vectors related to extended regular expression processing.
network
gnu CWE-19
4.3
2017-02-22 CVE-2016-3013 Data Processing Errors vulnerability in IBM Websphere MQ
IBM WebSphere MQ 8.0 could allow an authenticated user to crash the MQ channel due to improper data conversion handling.
network
low complexity
ibm CWE-19
4.0
2017-02-13 CVE-2016-7987 Data Processing Errors vulnerability in Siemens Eta2 Firmware and Eta4 Firmware
An issue was discovered in Siemens ETA4 firmware (all versions prior to Revision 08) of the SM-2558 extension module for: SICAM AK, SICAM TM 1703, SICAM BC 1703, and SICAM AK 3.
network
low complexity
siemens CWE-19
7.8
2017-01-30 CVE-2015-7979 Data Processing Errors vulnerability in NTP
NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (client-server association tear down) by sending broadcast packets with invalid authentication to a broadcast client.
network
low complexity
ntp CWE-19
5.0
2017-01-26 CVE-2016-8226 Data Processing Errors vulnerability in Lenovo products
The BIOS in Lenovo System X M5, M6, and X6 systems allows administrators to cause a denial of service via updating a UEFI data structure.
network
low complexity
lenovo CWE-19
6.8
2017-01-25 CVE-2016-9305 Data Processing Errors vulnerability in Autodesk FBX Software Development KIT
Improper handling in the Autodesk FBX-SDK before 2017.1 of type mismatches and previously deleted objects related to reading and converting malformed FBX format files can allow attackers to gain access to uninitialized pointers.
network
low complexity
autodesk CWE-19
7.5
2017-01-23 CVE-2016-2783 Data Processing Errors vulnerability in Avaya VSP Operating System Software 5.0.0.0
Avaya Fabric Connect Virtual Services Platform (VSP) Operating System Software (VOSS) before 4.2.3.0 and 5.x before 5.0.1.0 does not properly handle VLAN and I-SIS indexes, which allows remote attackers to obtain unauthorized access via crafted Ethernet frames.
network
low complexity
avaya CWE-19
critical
10.0
2017-01-19 CVE-2016-9650 Data Processing Errors vulnerability in Google Chrome
Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly handled iframes, which allowed a remote attacker to bypass a no-referrer policy via a crafted HTML page.
network
low complexity
google CWE-19
4.3
2017-01-19 CVE-2016-5225 Data Processing Errors vulnerability in Google Chrome
Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly handled form actions, which allowed a remote attacker to bypass Content Security Policy via a crafted HTML page.
network
low complexity
google CWE-19
4.3
2017-01-19 CVE-2016-5214 Data Processing Errors vulnerability in Google Chrome
Google Chrome prior to 55.0.2883.75 for Windows mishandled downloaded files, which allowed a remote attacker to prevent the downloaded file from receiving the Mark of the Web via a crafted HTML page.
network
low complexity
google CWE-19
4.3