Debian

Debian Linux

9140 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.34%
  • Published 18.12.2023 14:15:10
  • Last modified 06.12.2024 11:15:07

An absolute path traversal attack exists in the Ansible automation platform. This flaw allows an attacker to craft a malicious Ansible role and make the victim execute the role. A symlink can be used to overwrite a file outside of the extraction path...

  • EPSS 1.21%
  • Published 13.12.2023 07:15:31
  • Last modified 04.08.2025 21:15:27

A flaw was found in xorg-server. A specially crafted request to RRChangeProviderProperty or RRChangeOutputProperty can trigger an integer overflow which may lead to a disclosure of sensitive information.

  • EPSS 0.41%
  • Published 13.12.2023 07:15:30
  • Last modified 18.08.2025 12:15:26

A flaw was found in xorg-server. Querying or changing XKB button actions such as moving from a touchpad to a mouse can result in out-of-bounds memory reads and writes. This may allow local privilege escalation or possible remote code execution in cas...

  • EPSS 0.03%
  • Published 12.12.2023 01:15:11
  • Last modified 21.11.2024 08:23:25

The issue was addressed with improved memory handling. This issue is fixed in Safari 17.2, macOS Sonoma 14.2, iOS 17.2 and iPadOS 17.2, watchOS 10.2, tvOS 17.2, iOS 16.7.3 and iPadOS 16.7.3. Processing an image may lead to a denial-of-service.

  • EPSS 1.22%
  • Published 11.12.2023 12:15:07
  • Last modified 13.02.2025 18:16:06

Improper Input Validation vulnerability in GStreamer integration of The Document Foundation LibreOffice allows an attacker to execute arbitrary GStreamer plugins. In affected versions the filename of the embedded video is not sufficiently escaped wh...

  • EPSS 1.09%
  • Published 11.12.2023 12:15:07
  • Last modified 13.02.2025 18:16:06

Insufficient macro permission validation of The Document Foundation LibreOffice allows an attacker to execute built-in macros without warning. In affected versions LibreOffice supports hyperlinks with macro or similar built-in command targets that c...

  • EPSS 28.27%
  • Published 08.12.2023 06:15:45
  • Last modified 12.12.2024 14:33:00

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has oc...

  • EPSS 0.91%
  • Published 06.12.2023 02:15:07
  • Last modified 21.11.2024 08:43:59

Use after free in Media Stream in Google Chrome prior to 120.0.6099.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • EPSS 1.17%
  • Published 06.12.2023 02:15:07
  • Last modified 21.11.2024 08:43:59

Use after free in Side Panel Search in Google Chrome prior to 120.0.6099.62 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via specific UI interaction. (Chromium security sev...

  • EPSS 1.24%
  • Published 06.12.2023 02:15:07
  • Last modified 21.11.2024 08:44:00

Use after free in Media Capture in Google Chrome prior to 120.0.6099.62 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via specific UI interaction. (Chromium security severit...