Debian

Debian Linux

9142 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.17%
  • Veröffentlicht 07.09.2016 18:59:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The esp_do_dma function in hw/scsi/esp.c in QEMU (aka Quick Emulator), when built with ESP/NCR53C9x controller emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) or execut...

  • EPSS 0.06%
  • Veröffentlicht 02.09.2016 14:59:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The megasas_lookup_frame function in QEMU, when built with MegaRAID SAS 8708EM2 Host Bus Adapter emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds read and crash) via unspecified vectors.

  • EPSS 0.06%
  • Veröffentlicht 02.09.2016 14:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The megasas_dcmd_set_properties function in hw/scsi/megasas.c in QEMU, when built with MegaRAID SAS 8708EM2 Host Bus Adapter emulation support, allows local guest administrators to cause a denial of service (out-of-bounds write access) via vectors in...

  • EPSS 0.06%
  • Veröffentlicht 02.09.2016 14:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The megasas_dcmd_cfg_read function in hw/scsi/megasas.c in QEMU, when built with MegaRAID SAS 8708EM2 Host Bus Adapter emulation support, uses an uninitialized variable, which allows local guest administrators to read host memory via vectors involvin...

  • EPSS 0.11%
  • Veröffentlicht 02.09.2016 14:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

QEMU (aka Quick Emulator), when built with VMWARE PVSCSI paravirtual SCSI bus emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds array access) via vectors related to the (1) PVSCSI_CMD_SETUP_RINGS or (...

  • EPSS 0.05%
  • Veröffentlicht 31.08.2016 14:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

fs/fcntl.c in the "aufs 3.2.x+setfl-debian" patch in the linux-image package 3.2.0-4 (kernel 3.2.81-1) in Debian wheezy mishandles F_SETFL fcntl calls on directories, which allows local users to cause a denial of service (NULL pointer dereference and...

  • EPSS 13.07%
  • Veröffentlicht 19.08.2016 21:59:13
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Heap-based buffer overflow in the parse_packet function in network.c in collectd before 5.4.3 and 5.x before 5.5.2 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted network packet.

  • EPSS 3.93%
  • Veröffentlicht 19.08.2016 21:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Use-after-free vulnerability in the my_login function in DBD::mysql before 4.033_01 allows attackers to have unspecified impact by leveraging a call to mysql_errno after a failure of my_login.

  • EPSS 3%
  • Veröffentlicht 19.08.2016 21:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Use-after-free vulnerability in DBD::mysql before 4.029 allows attackers to cause a denial of service (program crash) or possibly execute arbitrary code via vectors related to a lost server connection.

  • EPSS 0.2%
  • Veröffentlicht 13.08.2016 01:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

fontconfig before 2.12.1 does not validate offsets, which allows local users to trigger arbitrary free calls and consequently conduct double free attacks and execute arbitrary code via a crafted cache file.