Debian

Debian Linux

9947 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.43%
  • Veröffentlicht 23.10.2023 07:15:11
  • Zuletzt bearbeitet 01.08.2025 02:03:27

Out-of-bounds Read vulnerability in mod_macro of Apache HTTP Server.This issue affects Apache HTTP Server: through 2.4.57.

  • EPSS 1.74%
  • Veröffentlicht 23.10.2023 07:15:11
  • Zuletzt bearbeitet 25.08.2025 02:09:55

When a HTTP/2 stream was reset (RST frame) by a client, there was a time window were the request's memory resources were not reclaimed immediately. Instead, de-allocation was deferred to connection close. A client could send new requests and resets, ...

  • EPSS 0.58%
  • Veröffentlicht 18.10.2023 21:15:09
  • Zuletzt bearbeitet 21.11.2024 08:26:26

Redis is an in-memory database that persists on disk. On startup, Redis begins listening on a Unix socket before adjusting its permissions to the user-provided configuration. If a permissive umask(2) is used, this creates a race condition that enable...

Warnung Exploit
  • EPSS 83.43%
  • Veröffentlicht 18.10.2023 15:15:08
  • Zuletzt bearbeitet 30.10.2025 20:11:10

Roundcube before 1.4.15, 1.5.x before 1.5.5, and 1.6.x before 1.6.4 allows stored XSS via an HTML e-mail message with a crafted SVG document because of program/lib/Roundcube/rcube_washtml.php behavior. This could allow a remote attacker to load arbi...

  • EPSS 0.03%
  • Veröffentlicht 15.10.2023 01:15:09
  • Zuletzt bearbeitet 05.05.2025 14:12:06

An issue was discovered in drivers/net/ethernet/intel/igb/igb_main.c in the IGB driver in the Linux kernel before 6.5.3. A buffer size may not be adequate for frames larger than the MTU.

  • EPSS 0.1%
  • Veröffentlicht 12.10.2023 17:15:09
  • Zuletzt bearbeitet 21.11.2024 08:26:24

Babel is a compiler for writingJavaScript. In `@babel/traverse` prior to versions 7.23.2 and 8.0.0-alpha.4 and all versions of `babel-traverse`, using Babel to compile code that was specifically crafted by an attacker can lead to arbitrary code execu...

  • EPSS 0.05%
  • Veröffentlicht 11.10.2023 23:15:11
  • Zuletzt bearbeitet 16.06.2025 17:15:27

Inappropriate implementation in Autofill in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to bypass autofill restrictions via a crafted HTML page. (Chromium security severity: Low)

  • EPSS 0.27%
  • Veröffentlicht 11.10.2023 23:15:11
  • Zuletzt bearbeitet 21.11.2024 08:41:52

Inappropriate implementation in Input in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to spoof security UI via a crafted HTML page. (Chromium security severity: Low)

  • EPSS 0.26%
  • Veröffentlicht 11.10.2023 23:15:10
  • Zuletzt bearbeitet 30.04.2025 21:15:53

Use after free in Site Isolation in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)

  • EPSS 0.33%
  • Veröffentlicht 11.10.2023 23:15:10
  • Zuletzt bearbeitet 21.11.2024 08:41:50

Use after free in Cast in Google Chrome prior to 118.0.5993.70 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Low)