The following SCAP content has been released to SCAP Repo and SecPod ANCOR. SecPod Saner will automatically pull the relevant content on its next scheduled update.

oval:org.secpod.oval:def:33292 CVE-2016-0960, Memory corruption vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0960
oval:org.secpod.oval:def:33305 CVE-2016-0987, Use-after-free vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0987
oval:org.secpod.oval:def:33306 CVE-2016-0988, Use-after-free vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0988
oval:org.secpod.oval:def:33307 CVE-2016-0990, Use-after-free vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0990
oval:org.secpod.oval:def:33308 CVE-2016-0991, Use-after-free vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0991
oval:org.secpod.oval:def:33309 CVE-2016-0994, Use-after-free vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0994
oval:org.secpod.oval:def:33310 CVE-2016-0995, Use-after-free vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0995
oval:org.secpod.oval:def:33311 CVE-2016-0996, Use-after-free vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0996
oval:org.secpod.oval:def:33312 CVE-2016-0997, Use-after-free vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0997
oval:org.secpod.oval:def:33313 CVE-2016-0998, Use-after-free vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0998
oval:org.secpod.oval:def:33314 CVE-2016-0999, Use-after-free vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0999
oval:org.secpod.oval:def:33297 CVE-2016-0961, Memory corruption vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0961
oval:org.secpod.oval:def:33315 CVE-2016-1000, Use-after-free vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-1000
oval:org.secpod.oval:def:33316 CVE-2016-0963, Integer overflow vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0963
oval:org.secpod.oval:def:33317 CVE-2016-0993, Integer overflow vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0993
oval:org.secpod.oval:def:33318 CVE-2016-1010, Integer overflow vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-1010
oval:org.secpod.oval:def:33319 APSB16-08,
CVE-2016-0960,
CVE-2016-0961,
CVE-2016-0962,
CVE-2016-0963,
CVE-2016-0986,
CVE-2016-0987,
CVE-2016-0988,
CVE-2016-0989,
CVE-2016-0990,
CVE-2016-0991,
CVE-2016-0992,
CVE-2016-0993,
CVE-2016-0994,
CVE-2016-0995,
CVE-2016-0996,
CVE-2016-0997,
CVE-2016-0998,
CVE-2016-0999,
CVE-2016-1000,
CVE-2016-1001,
CVE-2016-1002,
CVE-2016-1005,
CVE-2016-1010,
Multiple vulnerabilities in Adobe Flash Player and Adobe AIR via unspecified vectors – APSB16-08
oval:org.secpod.oval:def:33320 CVE-2015-8652,
CVE-2015-8655,
CVE-2015-8658,
CVE-2016-0960,
CVE-2016-0961,
CVE-2016-0962,
CVE-2016-0963,
CVE-2016-0986,
CVE-2016-0987,
CVE-2016-0988,
CVE-2016-0989,
CVE-2016-0990,
CVE-2016-0991,
CVE-2016-0993,
CVE-2016-0994,
CVE-2016-0995,
CVE-2016-0996,
CVE-2016-1001,
CVE-2016-1005,
CVE-2016-1010,
MS16-036,
Multiple vulnerabilities in Adobe Flash Player unspecified vectors – MS16-036
oval:org.secpod.oval:def:33298 CVE-2016-0962, Memory corruption vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0962
oval:org.secpod.oval:def:33293 cpe:/a:adobe:flash_player:21::x86, Adobe Flash Player 21 (32-bit) is installed
oval:org.secpod.oval:def:33294 cpe:/a:adobe:flash_player:21::x64, Adobe Flash Player 21 (64-bit) is installed
oval:org.secpod.oval:def:33295 cpe:/a:adobe:flash_player_activex:21::x86, Adobe Flash Player 21 ActiveX (32-bit) is installed
oval:org.secpod.oval:def:33296 cpe:/a:adobe:flash_player_activex:21::x64, Adobe Flash Player 21 ActiveX (64-bit) is installed
oval:org.secpod.oval:def:33299 CVE-2016-0986, Memory corruption vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0986
oval:org.secpod.oval:def:33300 CVE-2016-0989, Memory corruption vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0989
oval:org.secpod.oval:def:33301 CVE-2016-0992, Memory corruption vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-0992
oval:org.secpod.oval:def:33302 CVE-2016-1002, Memory corruption vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-1002
oval:org.secpod.oval:def:33303 CVE-2016-1005, Memory corruption vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-1005
oval:org.secpod.oval:def:33304 CVE-2016-1001, Heap overflow vulnerability in Adobe Flash Player and Adobe AIR via unspecified vectors – CVE-2016-1001
oval:org.secpod.oval:def:33291 CVE-2016-0954, Memory corruption vulnerability in Adobe Digital Editions via unspecified vectors
oval:org.secpod.oval:def:33290 APSB16-06,
CVE-2016-0954,
Denial of service vulnerability in Adobe Digital Editions via unspecified vectors – APSB16-06
oval:org.secpod.oval:def:33271 CVE-2016-0954, Denial of service vulnerability in Adobe Digital Editions by sniffing the network
oval:org.secpod.oval:def:33270 APSB16-06,
CVE-2016-0954,
Denial of service vulnerability in Adobe Digital Editions via unspecified vectors – APSB16-06
oval:org.secpod.oval:def:33289 CVE-2016-1630, Same Origin Policy bypass vulnerability in Google Chrome via a crafted web site (Mac OS X) – CVE-2016-1630
oval:org.secpod.oval:def:33280. CVE-2016-1639, Use-after-free vulnerability in Google Chrome by leveraging incorrect reliance on the resource context pointer (Mac OS X)
oval:org.secpod.oval:def:33279 CVE-2016-1640, Unspecified vulnerability in the Web Store inline-installer implementation in Extensions UI in Google Chrome (Mac OS X)
oval:org.secpod.oval:def:33278 CVE-2016-1641, Use-after-free vulnerability in Google Chrome by triggering an image download (Mac OS X)
oval:org.secpod.oval:def:33277 CVE-2016-1642, Multiple unspecified vulnerabilities in Google Chrome via unknown vectors – CVE-2016-1642 (Mac OS X)
oval:org.secpod.oval:def:33276 CVE-2016-2844, Denial of service vulnerability in Google Chrome via a crafted JavaScript code (Mac OS X)
oval:org.secpod.oval:def:33275 CVE-2016-2845, Information disclosure vulnerability in Content Security Policy (CSP) implementationin in Blink in Google Chrome (Mac OS X)
oval:org.secpod.oval:def:33274 CVE-2015-8126,
CVE-2016-1630,
CVE-2016-1631,
CVE-2016-1632,
CVE-2016-1633,
CVE-2016-1634,
CVE-2016-1635,
CVE-2016-1636,
CVE-2016-1637,
CVE-2016-1638,
CVE-2016-1639,
CVE-2016-1640,
CVE-2016-1641,
CVE-2016-1642,
VENDORLINK,
Multiple vulnerabilities in Google Chrome via crafted data (Mac OS X)
oval:org.secpod.oval:def:33273 CVE-2016-2843, Multiple unspecified vulnerabilities in Google Chrome via unknown vectors – CVE-2016-2843 (Mac OS X)
oval:org.secpod.oval:def:33272 CVE-2016-2843, Multiple buffer overflow vulnerabilities in Google Chrome – CVE-2015-8126
oval:org.secpod.oval:def:33288 CVE-2016-1631, Same Origin Policy bypass vulnerability in the Pepper plugin in Google Chrome via a crafted web site (Mac OS X)
oval:org.secpod.oval:def:33287 CVE-2016-1632, Security bypass vulnerability in Google Chrome via a crafted JavaScript code that triggers an incorrect cast (Mac OS X)
oval:org.secpod.oval:def:33286 CVE-2016-1633, Use-after-free vulnerability in Blink in Google Chrome via unknown vectors (Mac OS X)
oval:org.secpod.oval:def:33285 CVE-2016-1634, Use-after-free vulnerability in Blink in Google Chrome via a crafted web site that triggers Cascading Style Sheets (CSS) style invalidation (Mac OS X)
oval:org.secpod.oval:def:33284 CVE-2016-1635, Use-after-free vulnerability in Blink in Google Chrome via unknown vectors (Mac OS X)
oval:org.secpod.oval:def:33283 CVE-2016-1636, Subresource Integrity protection bypass vulnerability in Google Chrome by triggering two loads of the same resource (Mac OS X)
oval:org.secpod.oval:def:33282 CVE-2016-1637, Information disclosure vulnerability in Skia in Google Chrome via a crafted web site (Mac OS X)
oval:org.secpod.oval:def:33281 CVE-2016-1638, Security bypass vulnerability in Google Chrome via a crafted platform app (Mac OS X)
oval:org.secpod.oval:def:110250 CVE-2016-2381,
FEDORA-2016-5d4fc5ecc9,
FEDORA-2016-5d4fc5ecc9 — Fedora 23 perl-5.22.1-351.fc23
oval:org.secpod.oval:def:110251 CVE-2016-0720,
CVE-2016-0721,
FEDORA-2016-cdd4228cc7,
FEDORA-2016-cdd4228cc7 — Fedora 23 pcs-0.9.149-2.fc23
oval:org.secpod.oval:def:110252 FEDORA-2016-f802cade15, FEDORA-2016-f802cade15 — Fedora 23 exiv2-0.25-3.fc23
oval:org.secpod.oval:def:110253 CVE-2016-0720,
CVE-2016-0721,
FEDORA-2016-3b20c4ec9d,
FEDORA-2016-3b20c4ec9d — Fedora 22 pcs-0.9.149-2.fc22
oval:org.secpod.oval:def:110254 CVE-2016-2550,
FEDORA-2016-1642a20327,
FEDORA-2016-1642a20327 — Fedora 23 kernel-4.4.3-300.fc23
oval:org.secpod.oval:def:110255 CVE-2016-0702,
CVE-2016-0705,
CVE-2016-0799,
FEDORA-2016-2802690366,
FEDORA-2016-2802690366 — Fedora 23 openssl-1.0.2g-2.fc23
oval:org.secpod.oval:def:602385 DSA-3498-1, DSA-3498-1 drupal7 — drupal7
oval:org.secpod.oval:def:602386 CVE-2016-2511,
DSA-3490-1,
DSA-3490-1 websvn — websvn
oval:org.secpod.oval:def:602387 CVE-2016-0729,
DSA-3493-1,
DSA-3493-1 xerces-c — xerces-c
oval:org.secpod.oval:def:602388 CVE-2016-2228,
DSA-3497-1,
DSA-3497-1 php-horde — php-horde
oval:org.secpod.oval:def:602389 CVE-2015-7575,
CVE-2016-1523,
CVE-2016-1930,
CVE-2016-1935,
DSA-3491-1,
DSA-3491-1 icedove — icedove
oval:org.secpod.oval:def:602390 CVE-2015-8377,
CVE-2015-8604,
DSA-3494-1,
DSA-3494-1 cacti — cacti
oval:org.secpod.oval:def:602391 DSA-3492-2, DSA-3492-2 gajim — gajim
oval:org.secpod.oval:def:602392 CVE-2015-8688,
DSA-3492-1,
DSA-3492-1 gajim — gajim
oval:org.secpod.oval:def:602393 CVE-2016-0740,
CVE-2016-0775,
CVE-2016-2533,
DSA-3499-1,
DSA-3499-1 pillow — pillow
oval:org.secpod.oval:def:602394 CVE-2015-8807,
DSA-3496-1,
DSA-3496-1 php-horde-core — php-horde-core
oval:org.secpod.oval:def:602402 CVE-2014-6276,
DSA-3502-1,
DSA-3502-1 roundup — roundup
oval:org.secpod.oval:def:602403 CVE-2015-8543,
DSA-3426-2,
DSA-3426-2 ctdb — ctdb
oval:org.secpod.oval:def:602404 CVE-2013-4312,
CVE-2015-1805,
CVE-2015-7566,
CVE-2015-8767,
CVE-2015-8785,
CVE-2015-8812,
CVE-2015-8816,
CVE-2015-8830,
CVE-2016-0723,
CVE-2016-0774,
CVE-2016-2069,
CVE-2016-2384,
CVE-2016-2543,
CVE-2016-2544,
CVE-2016-2545,
CVE-2016-2546,
CVE-2016-2547,
CVE-2016-2548,
CVE-2016-2549,
CVE-2016-2550,
DSA-3503-1,
DSA-3503-1 linux — linux
oval:org.secpod.oval:def:33356 CVE-2016-1630, Same Origin Policy bypass vulnerability in Google Chrome via a crafted web site (dpkg) – CVE-2016-1630
oval:org.secpod.oval:def:33338 CVE-2016-1639, Use-after-free vulnerability in Google Chrome by leveraging incorrect reliance on the resource context pointer (dpkg)
oval:org.secpod.oval:def:33336 CVE-2016-1640, Unspecified vulnerability in the Web Store inline-installer implementation in Extensions UI in Google Chrome (dpkg)
oval:org.secpod.oval:def:33334 CVE-2016-1641, Use-after-free vulnerability in Google Chrome by triggering an image download (dpkg)
oval:org.secpod.oval:def:33332 CVE-2016-1642, Multiple unspecified vulnerabilities in Google Chrome via unknown vectors – CVE-2016-1642 (dpkg)
oval:org.secpod.oval:def:33330 CVE-2016-2844, Denial of service vulnerability in Google Chrome via a crafted JavaScript code (dpkg)
oval:org.secpod.oval:def:33328 CVE-2016-2845, Information disclosure vulnerability in Content Security Policy (CSP) implementation in Blink in Google Chrome (dpkg)
oval:org.secpod.oval:def:33326 CVE-2015-8126,
CVE-2016-1630,
CVE-2016-1631,
CVE-2016-1632,
CVE-2016-1633,
CVE-2016-1634,
CVE-2016-1635,
CVE-2016-1636,
CVE-2016-1637,
CVE-2016-1638,
CVE-2016-1639,
CVE-2016-1640,
CVE-2016-1641,
CVE-2016-1642,
VENDORLINK,
Multiple vulnerabilities in Google Chrome via crafted data (dpkg)
oval:org.secpod.oval:def:33324 CVE-2016-2843, Multiple unspecified vulnerabilities in Google Chrome via unknown vectors – CVE-2016-2843 (dpkg)
oval:org.secpod.oval:def:33322 CVE-2015-8126, Multiple buffer overflow vulnerabilities in Google Chrome – CVE-2015-8126 (dpkg)
oval:org.secpod.oval:def:33354 CVE-2016-1631, Same Origin Policy bypass vulnerability in the Pepper plugin in Google Chrome via a crafted web site (dpkg)
oval:org.secpod.oval:def:33355 CVE-2016-1630, Same Origin Policy bypass vulnerability in Google Chrome via a crafted web site (rpm) – CVE-2016-1630
oval:org.secpod.oval:def:33353 CVE-2016-1631, Same Origin Policy bypass vulnerability in the Pepper plugin in Google Chrome via a crafted web site (rpm)
oval:org.secpod.oval:def:33351 CVE-2016-1632, Security bypass vulnerability in Google Chrome via a crafted JavaScript code that triggers an incorrect cast (rpm)
oval:org.secpod.oval:def:33349 CVE-2016-1633, Use-after-free vulnerability in Blink in Google Chrome via unknown vectors (rpm)
oval:org.secpod.oval:def:33347 CVE-2016-1634, Use-after-free vulnerability in Blink in Google Chrome via a crafted web site that triggers Cascading Style Sheets (CSS) style invalidation (rpm)
oval:org.secpod.oval:def:33345 CVE-2016-1635, Use-after-free vulnerability in Blink in Google Chrome via unknown vectors (rpm)
oval:org.secpod.oval:def:33343 CVE-2016-1636, Subresource Integrity protection bypass vulnerability in Google Chrome by triggering two loads of the same resource (rpm)
oval:org.secpod.oval:def:33341 CVE-2016-1637, Information disclosure vulnerability in Skia in Google Chrome via a crafted web site (rpm)
oval:org.secpod.oval:def:33339 CVE-2016-1638, Security bypass vulnerability in Google Chrome via a crafted platform app (rpm)
oval:org.secpod.oval:def:33352 CVE-2016-1632, Security bypass vulnerability in Google Chrome via a crafted JavaScript code that triggers an incorrect cast (dpkg)
oval:org.secpod.oval:def:33337 CVE-2016-1639, Use-after-free vulnerability in Google Chrome by leveraging incorrect reliance on the resource context pointer (rpm)
oval:org.secpod.oval:def:33335 CVE-2016-1640, Unspecified vulnerability in the Web Store inline-installer implementation in Extensions UI in Google Chrome (rpm)
oval:org.secpod.oval:def:33333 CVE-2016-1641, Use-after-free vulnerability in Google Chrome by triggering an image download (rpm)
oval:org.secpod.oval:def:33331 CVE-2016-1642, Multiple unspecified vulnerabilities in Google Chrome via unknown vectors – CVE-2016-1642 (rpm)
oval:org.secpod.oval:def:33329 CVE-2016-2844, Denial of service vulnerability in Google Chrome via a crafted JavaScript code (rpm)
oval:org.secpod.oval:def:33327 CVE-2016-2845, Information disclosure vulnerability in Content Security Policy (CSP) implementation in Blink in Google Chrome (rpm)
oval:org.secpod.oval:def:33325 CVE-2015-8126,
CVE-2016-1630,
CVE-2016-1631,
CVE-2016-1632,
CVE-2016-1633,
CVE-2016-1634,
CVE-2016-1635,
CVE-2016-1636,
CVE-2016-1637,
CVE-2016-1638,
CVE-2016-1639,
CVE-2016-1640,
CVE-2016-1641,
CVE-2016-1642,
VENDORLINK,
Multiple vulnerabilities in Google Chrome via crafted data (rpm)
oval:org.secpod.oval:def:33323 CVE-2016-2843, Multiple unspecified vulnerabilities in Google Chrome via unknown vectors – CVE-2016-2843 (rpm)
oval:org.secpod.oval:def:33321 CVE-2015-8126, Multiple buffer overflow vulnerabilities in Google Chrome – CVE-2015-8126 (rpm)
oval:org.secpod.oval:def:33350 CVE-2016-1633, Use-after-free vulnerability in Blink in Google Chrome via unknown vectors (dpkg)
oval:org.secpod.oval:def:33348 CVE-2016-1634, Use-after-free vulnerability in Blink in Google Chrome via a crafted web site that triggers Cascading Style Sheets (CSS) style invalidation (dpkg)
oval:org.secpod.oval:def:33346 CVE-2016-1635, Use-after-free vulnerability in Blink in Google Chrome via unknown vectors (dpkg)
oval:org.secpod.oval:def:33344 CVE-2016-1636, Subresource Integrity protection bypass vulnerability in Google Chrome by triggering two loads of the same resource (dpkg)
oval:org.secpod.oval:def:33342 CVE-2016-1637, Information disclosure vulnerability in Skia in Google Chrome via a crafted web site (dpkg)
oval:org.secpod.oval:def:33340 CVE-2016-1638, Security bypass vulnerability in Google Chrome via a crafted platform app (dpkg)
Loading Facebook Comments ...

Leave a Reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes:

<a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <s> <strike> <strong>