CVE-2016-5469
published 2016-07-21CVE-2016-5469: Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerability than…
PriorityP418medium5.5CVSS 3.0
AVLACLPRLUINSUCNINAH
EPSS
0.38%
29.9th percentile
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerability than CVE-2016-3497 and CVE-2016-5471.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | solaris | — | — |
CVSS provenance
nvdv3.05.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:N/A:P
vendor_redhat9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-3p6g-8qr2-83gv: Unspecified vulnerability in Oracle Sun Solaris 11
ghsa_unreviewed·2022-05-17·CVSS 5.5
CVE-2016-3497 [MEDIUM] GHSA-3p6g-8qr2-83gv: Unspecified vulnerability in Oracle Sun Solaris 11
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerability than CVE-2016-5469 and CVE-2016-5471.
GHSA
GHSA-j86p-43j3-4g94: Unspecified vulnerability in Oracle Sun Solaris 11
ghsa_unreviewed·2022-05-17·CVSS 5.5
CVE-2016-5469 [MEDIUM] GHSA-j86p-43j3-4g94: Unspecified vulnerability in Oracle Sun Solaris 11
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerability than CVE-2016-3497 and CVE-2016-5471.
GHSA
GHSA-8h8v-4p6h-788h: Unspecified vulnerability in Oracle Sun Solaris 11
ghsa_unreviewed·2022-05-17·CVSS 5.5
CVE-2016-5471 [MEDIUM] GHSA-8h8v-4p6h-788h: Unspecified vulnerability in Oracle Sun Solaris 11
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerability than CVE-2016-3497 and CVE-2016-5469.
Red Hat
Mozilla: Potential Buffer overflow in flex-generated code (MFSA 2017-11, MFSA 2017-12)
vendor_redhat·2017-04-19·CVSS 9.8
CVE-2017-5469 [CRITICAL] Mozilla: Potential Buffer overflow in flex-generated code (MFSA 2017-11, MFSA 2017-12)
Mozilla: Potential Buffer overflow in flex-generated code (MFSA 2017-11, MFSA 2017-12)
Fixed potential buffer overflows in generated Firefox code due to CVE-2016-6354 issue in Flex. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.1, and Firefox < 53.
Package: firefox (Red Hat Enterprise Linux 5) - Will not fix
Package: thunderbird (Red Hat Enterprise Linux 5) - Will not fix
No detection rules found.
No public exploits indexed.
arXiv
Identifying Relevant Information Cues for Vulnerability Assessment Using CVSS
arxiv_fulltext·2018-03-20
Identifying Relevant Information Cues for Vulnerability Assessment Using CVSS
Identifying Relevant Information Cues for Vulnerability Assessment Using
Luca Allodi
0000-0003-1600-0868
Eindhoven University of Technology
De Zaale, Eindhoven, The Netherlands, 5600 MB
[email protected]
Sebastian Banescu\ Femmer
Munich Technical University
Munich, DE
[email protected]
Kristian Beckers
Social Engineering Academy (SEA) GmbH
Frankfurt am Main, DE
[email protected]
L. Allodi et al.
## Abstract
The assessment of new vulnerabilities is an activity that accounts for information from several data sources and produces a `severity' score for the vulnerability. The Common Vulnerability Scoring System ( ) is the reference standard for this assessment. Yet, no guidance currently exists on which information aids a correct assessment and should the
Bugzilla
CVE-2017-5469 Mozilla: Potential Buffer overflow in flex-generated code (MFSA 2017-11, MFSA 2017-12)
bugzilla·2017-04-19·CVSS 9.8
CVE-2017-5469 [CRITICAL] CVE-2017-5469 Mozilla: Potential Buffer overflow in flex-generated code (MFSA 2017-11, MFSA 2017-12)
CVE-2017-5469 Mozilla: Potential Buffer overflow in flex-generated code (MFSA 2017-11, MFSA 2017-12)
Fixed potential buffer overflows in generated Firefox code due to [CVE-2016-6354](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6354) issue in Flex.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2017-11/#CVE-2017-5469
Acknowledgements:
Name: the Mozilla project
Upstream: Petr Cerny
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2017:1104 https://access.redhat.com/errata/RHSA-2017:1104
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2017:1106 https://access.redhat.com/errata/RHSA-2017:1106
---
This issue has been addressed in the fol
http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.htmlhttp://www.securityfocus.com/bid/91787http://www.securityfocus.com/bid/91938http://www.securitytracker.com/id/1036407http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.htmlhttp://www.securityfocus.com/bid/91787http://www.securityfocus.com/bid/91938http://www.securitytracker.com/id/1036407
2016-07-21
Published