Debian

Debian Linux

9142 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.34%
  • Published 16.02.2022 21:15:07
  • Last modified 21.11.2024 06:29:02

Buffer overflow in PJSUA API when calling pjsua_call_dump. An attacker-controlled 'buffer' argument may cause a buffer overflow, since supplying an output buffer smaller than 128 characters may overflow the output buffer, regardless of the 'maxlen' a...

  • EPSS 0.08%
  • Published 16.02.2022 20:15:07
  • Last modified 21.11.2024 06:51:53

An issue was discovered in drivers/usb/gadget/composite.c in the Linux kernel before 5.16.10. The USB Gadget subsystem lacks certain validation of interface OS descriptor requests (ones with a large array index and ones associated with NULL function ...

Warning Exploit
  • EPSS 14.12%
  • Published 16.02.2022 19:15:08
  • Last modified 03.04.2025 16:08:28

It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be used by an unprivileged local attacker to, for example, create a new loc...

  • EPSS 2.87%
  • Published 16.02.2022 19:15:08
  • Last modified 21.11.2024 06:21:53

A flaw was found in mbsync before v1.3.6 and v1.4.2, where an unchecked pointer cast allows a malicious or compromised server to write an arbitrary integer value past the end of a heap-allocated structure by issuing an unexpected APPENDUID response. ...

Exploit
  • EPSS 0.03%
  • Published 16.02.2022 19:15:08
  • Last modified 21.11.2024 06:22:20

A use-after-free flaw was found in the Linux kernel’s Bluetooth subsystem in the way user calls connect to the socket and disconnect simultaneously due to a race condition. This flaw allows a user to crash the system or escalate their privileges. The...

  • EPSS 0.15%
  • Published 16.02.2022 19:15:08
  • Last modified 21.11.2024 06:22:21

A flaw was found in the Linux kernel. A use-after-free vulnerability in the NFC stack can lead to a threat to confidentiality, integrity, and system availability.

Exploit
  • EPSS 1.28%
  • Published 16.02.2022 17:15:13
  • Last modified 21.11.2024 06:49:17

A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadXYCoord coordinate parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code exe...

Exploit
  • EPSS 0.95%
  • Published 16.02.2022 17:15:13
  • Last modified 21.11.2024 06:49:17

A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadIJCoord coordinate parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code exe...

Exploit
  • EPSS 0.02%
  • Published 16.02.2022 17:15:11
  • Last modified 21.11.2024 06:39:02

A flaw null pointer dereference in the Linux kernel UDF file system functionality was found in the way user triggers udf_file_write_iter function for the malicious UDF image. A local user could use this flaw to crash the system. Actual from Linux ker...

  • EPSS 11.91%
  • Published 16.02.2022 01:15:07
  • Last modified 05.05.2025 17:18:00

xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context.