Debian

Debian Linux

9947 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.46%
  • Veröffentlicht 21.11.2023 15:15:07
  • Zuletzt bearbeitet 21.11.2024 08:43:22

When using X11, text selected by the page using the Selection API was erroneously copied into the primary selection, a temporary storage not unlike the clipboard. *This bug only affects Firefox on X11. Other systems are unaffected.* This vulnerabilit...

  • EPSS 0.38%
  • Veröffentlicht 21.11.2023 15:15:07
  • Zuletzt bearbeitet 21.11.2024 08:43:22

Relative URLs starting with three slashes were incorrectly parsed, and a path-traversal "/../" part in the path could be used to override the specified host. This could contribute to security problems in web sites. This vulnerability affects Firefox ...

  • EPSS 0.12%
  • Veröffentlicht 16.11.2023 12:15:07
  • Zuletzt bearbeitet 21.11.2024 08:43:17

SSH dissector crash in Wireshark 4.0.0 to 4.0.10 allows denial of service via packet injection or crafted capture file

  • EPSS 0.4%
  • Veröffentlicht 15.11.2023 18:15:06
  • Zuletzt bearbeitet 21.11.2024 08:42:56

Use after free in Garbage Collection in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • EPSS 22.79%
  • Veröffentlicht 15.11.2023 18:15:06
  • Zuletzt bearbeitet 21.11.2024 08:43:09

Use after free in Navigation in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • EPSS 0.04%
  • Veröffentlicht 14.11.2023 19:15:18
  • Zuletzt bearbeitet 07.01.2025 22:15:28

Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.

  • EPSS 0.48%
  • Veröffentlicht 11.11.2023 01:15:07
  • Zuletzt bearbeitet 11.06.2025 15:15:26

Using the --fragment option in certain configuration setups OpenVPN version 2.6.0 to 2.6.6 allows an attacker to trigger a divide by zero behaviour which could cause an application crash, leading to a denial of service.

  • EPSS 2.04%
  • Veröffentlicht 11.11.2023 01:15:07
  • Zuletzt bearbeitet 21.11.2024 08:29:25

Use after free in OpenVPN version 2.6.0 to 2.6.6 may lead to undefined behavoir, leaking memory buffers or remote execution when sending network buffers to a remote peer.

  • EPSS 0.57%
  • Veröffentlicht 08.11.2023 20:15:07
  • Zuletzt bearbeitet 21.11.2024 08:42:56

Use after free in WebAudio in Google Chrome prior to 119.0.6045.123 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • EPSS 0.5%
  • Veröffentlicht 06.11.2023 00:15:09
  • Zuletzt bearbeitet 21.11.2024 08:30:05

Roundcube 1.5.x before 1.5.6 and 1.6.x before 1.6.5 allows XSS via a Content-Type or Content-Disposition header (used for attachment preview or download).