CVEs (229)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Canonical LinuxOracle3Linux Linux KernelUbuntu LinuxMay 6, 2026 May 23, 2016 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 fs/pnode.c in the Linux kernel before 4.5.4 does not properly traverse a mount propagation tree in a certain case involving a slave mount, which allows local users to cause a denial of service (NULL pointer dereference a...Show more |
4Debian OraclePhp+1 more9Debian Linux Enterprise Linux DesktopEnterprise Linux Server+6 moreMay 6, 2026 May 16, 2016 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Integer overflow in the ftp_genlist function in ext/ftp/ftp.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 allows remote FTP servers to execute arbitrary code via a long reply to a LIST command, lea...Show more |
7Canonical CitrixDebian+4 more15Debian Linux Enterprise Linux DesktopEnterprise Linux Server+12 moreMay 6, 2026 May 11, 2016 N/A· v4 8.8 HIGH· v3 7.2 HIGH· v2 The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS administrators to execute arbitrary code on the host by changing access modes after setting the ban...Show more |
3Canonical OracleSquid Cache3Linux SquidUbuntu LinuxMay 6, 2026 May 10, 2016 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Double free vulnerability in Esi.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (crash) via a crafted Edge Side Includes (ESI) response. |
3Canonical OracleSquid Cache3Linux SquidUbuntu LinuxMay 6, 2026 May 10, 2016 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 client_side_request.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (crash) via crafted Edge Side Includes (ESI) responses. |
3Canonical OracleSquid Cache3Linux SquidUbuntu LinuxMay 6, 2026 May 10, 2016 N/A· v4 8.6 HIGH· v3 5.0 MEDIUM· v2 mime_header.cc in Squid before 3.5.18 allows remote attackers to bypass intended same-origin restrictions and possibly conduct cache-poisoning attacks via a crafted HTTP Host header, aka a "header smuggling" issue. |
3Canonical OracleSquid Cache3Linux SquidUbuntu LinuxMay 6, 2026 May 10, 2016 N/A· v4 8.6 HIGH· v3 5.0 MEDIUM· v2 client_side.cc in Squid before 3.5.18 and 4.x before 4.0.10 does not properly ignore the Host header when absolute-URI is provided, which allows remote attackers to conduct cache-poisoning attacks via an HTTP request. |
6Canonical ImagemagickOpensuse+3 more30Enterprise Linux Desktop Enterprise Linux EusEnterprise Linux For Ibm Z Systems+27 moreApr 22, 2026 May 5, 2016 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted image. |
6Canonical ImagemagickOpensuse+3 more30Enterprise Linux Desktop Enterprise Linux EusEnterprise Linux For Ibm Z Systems+27 moreApr 22, 2026 May 5, 2016 N/A· v4 5.5 MEDIUM· v3 5.8 MEDIUM· v2 The EPHEMERAL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to delete arbitrary files via a crafted image. |
4Debian LinuxOracle+1 more4Debian Linux Enterprise LinuxLinux+1 moreMay 6, 2026 Apr 27, 2016 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 The fork implementation in the Linux kernel before 4.5 on s390 platforms mishandles the case of four page-table levels, which allows local users to cause a denial of service (system crash) or possibly have unspecified ot...Show more |
3Canonical OracleSquid Cache3Linux SquidUbuntu LinuxMay 6, 2026 Apr 25, 2016 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 Buffer overflow in Squid 3.x before 3.5.17 and 4.x before 4.0.9 allows remote attackers to execute arbitrary code via crafted Edge Side Includes (ESI) responses. |
3Canonical OracleSquid Cache3Linux SquidUbuntu LinuxMay 6, 2026 Apr 25, 2016 N/A· v4 3.7 LOW· v3 4.3 MEDIUM· v2 Squid 3.x before 3.5.17 and 4.x before 4.0.9 allow remote attackers to obtain sensitive stack layout information via crafted Edge Side Includes (ESI) responses, related to incorrect use of assert and compiler optimizatio...Show more |
3Canonical OracleSquid Cache3Linux SquidUbuntu LinuxMay 6, 2026 Apr 25, 2016 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Buffer overflow in cachemgr.cgi in Squid 2.x, 3.x before 3.5.17, and 4.x before 4.0.9 might allow remote attackers to cause a denial of service or execute arbitrary code by seeding manager reports with crafted data. |
8Apache CanonicalDebian+5 more38Cassandra Debian LinuxE Series Santricity Management Plug Ins+35 moreApr 22, 2026 Apr 21, 2016 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JMX. |
2Oracle Redhat12Enterprise Linux Desktop Enterprise Linux Hpc NodeEnterprise Linux Hpc Node Eus+9 moreMay 6, 2026 Apr 21, 2016 N/A· v4 5.9 MEDIUM· v3 2.6 LOW· v2 Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality via vectors related to Security. |
6Debian IbmMariadb+3 more7Debian Linux Enterprise LinuxLeap+4 moreMay 6, 2026 Apr 21, 2016 N/A· v4 5.5 MEDIUM· v3 3.5 LOW· v2 Unspecified vulnerability in Oracle MySQL 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.11 and earlier and MariaDB before 5.5.49, 10.0.x before 10.0.25, and 10.1.x before 10.1.14 allows local users to affect availabili...Show more |
6Debian IbmMariadb+3 more7Debian Linux Enterprise LinuxLeap+4 moreMay 6, 2026 Apr 21, 2016 N/A· v4 5.5 MEDIUM· v3 4.0 MEDIUM· v2 Unspecified vulnerability in Oracle MySQL 5.5.47 and earlier, 5.6.28 and earlier, and 5.7.10 and earlier and MariaDB before 5.5.48, 10.0.x before 10.0.24, and 10.1.x before 10.1.12 allows local users to affect availabili...Show more |
6Debian IbmMariadb+3 more7Debian Linux Enterprise LinuxLeap+4 moreMay 6, 2026 Apr 21, 2016 N/A· v4 5.5 MEDIUM· v3 4.0 MEDIUM· v2 Unspecified vulnerability in Oracle MySQL 5.5.47 and earlier, 5.6.28 and earlier, and 5.7.10 and earlier and MariaDB before 5.5.48, 10.0.x before 10.0.24, and 10.1.x before 10.1.12 allows local users to affect availabili...Show more |
6Debian IbmMariadb+3 more7Debian Linux Enterprise LinuxLeap+4 moreMay 6, 2026 Apr 21, 2016 N/A· v4 5.5 MEDIUM· v3 4.0 MEDIUM· v2 Unspecified vulnerability in Oracle MySQL 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.11 and earlier and MariaDB before 5.5.49, 10.0.x before 10.0.25, and 10.1.x before 10.1.14 allows local users to affect availabili...Show more |
6Debian IbmMariadb+3 more7Debian Linux Enterprise LinuxLeap+4 moreMay 6, 2026 Apr 21, 2016 N/A· v4 5.5 MEDIUM· v3 4.0 MEDIUM· v2 Unspecified vulnerability in Oracle MySQL 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.11 and earlier and MariaDB before 5.5.49, 10.0.x before 10.0.25, and 10.1.x before 10.1.14 allows local users to affect availabili...Show more |