Debian

Debian Linux

9922 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.26%
  • Veröffentlicht 25.03.2024 20:15:08
  • Zuletzt bearbeitet 19.09.2025 15:10:53

Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients. The `HttpPostRequestDecoder` can be tricked to accumulate data. While the decoder can store items o...

  • EPSS 0.03%
  • Veröffentlicht 25.03.2024 15:15:52
  • Zuletzt bearbeitet 01.05.2025 14:33:44

In Emacs before 29.3, Gnus treats inline MIME contents as trusted.

  • EPSS 0.02%
  • Veröffentlicht 25.03.2024 15:15:52
  • Zuletzt bearbeitet 01.05.2025 14:33:32

In Emacs before 29.3, LaTeX preview is enabled by default for e-mail attachments.

  • EPSS 0.03%
  • Veröffentlicht 25.03.2024 15:15:52
  • Zuletzt bearbeitet 01.05.2025 14:32:31

In Emacs before 29.3, Org mode considers contents of remote files to be trusted. This affects Org Mode before 9.6.23.

  • EPSS 1.16%
  • Veröffentlicht 22.03.2024 13:15:07
  • Zuletzt bearbeitet 01.04.2025 16:30:37

An attacker was able to inject an event handler into a privileged object that would allow arbitrary JavaScript execution in the parent process. Note: This vulnerability affects Desktop Firefox only, it does not affect mobile versions of Firefox. This...

  • EPSS 0.01%
  • Veröffentlicht 21.03.2024 11:15:28
  • Zuletzt bearbeitet 13.03.2025 21:20:08

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: disallow anonymous set with timeout flag Anonymous sets are never used with timeout from userspace, reject this. Exception to this rule is NFT_SET_EVAL to ens...

  • EPSS 0.01%
  • Veröffentlicht 21.03.2024 11:15:28
  • Zuletzt bearbeitet 13.03.2025 21:20:19

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout While the rhashtable set gc runs asynchronously, a race allows it to collect elements from anonymou...

Medienbericht Exploit
  • EPSS 0.28%
  • Veröffentlicht 21.03.2024 02:52:23
  • Zuletzt bearbeitet 22.12.2025 16:09:47

JWCrypto implements JWK, JWS, and JWE specifications using python-cryptography. Prior to version 1.5.6, an attacker can cause a denial of service attack by passing in a malicious JWE Token with a high compression ratio. When the server processes this...

Exploit
  • EPSS 0.22%
  • Veröffentlicht 19.03.2024 12:15:09
  • Zuletzt bearbeitet 01.04.2025 16:26:40

A missing delay on when pointer lock was used could have allowed a malicious page to trick a user into granting permissions. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.

  • EPSS 1.33%
  • Veröffentlicht 19.03.2024 12:15:09
  • Zuletzt bearbeitet 25.02.2025 14:47:29

Memory safety bugs present in Firefox 123, Firefox ESR 115.8, and Thunderbird 115.8. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vu...