Debian

Debian Linux

9979 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 9.53%
  • Veröffentlicht 23.08.2023 00:15:09
  • Zuletzt bearbeitet 01.07.2025 14:15:30

Out of bounds memory access in CSS in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)

  • EPSS 0.42%
  • Veröffentlicht 23.08.2023 00:15:09
  • Zuletzt bearbeitet 21.11.2024 08:35:07

Use after free in Loader in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • EPSS 11.5%
  • Veröffentlicht 23.08.2023 00:15:09
  • Zuletzt bearbeitet 21.11.2024 08:35:08

Use after free in Vulkan in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • EPSS 0.17%
  • Veröffentlicht 23.08.2023 00:15:09
  • Zuletzt bearbeitet 21.11.2024 08:35:08

Out of bounds memory access in Fonts in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium)

Exploit
  • EPSS 7.27%
  • Veröffentlicht 22.08.2023 19:16:32
  • Zuletzt bearbeitet 21.11.2024 07:33:30

An XML External Entity (XXE) issue was discovered in Python through 3.9.1. The plistlib module no longer accepts entity declarations in XML plist files to avoid XML vulnerabilities.

Exploit
  • EPSS 0.09%
  • Veröffentlicht 22.08.2023 19:16:32
  • Zuletzt bearbeitet 21.11.2024 07:33:31

An issue was discovered in compare_digest in Lib/hmac.py in Python through 3.9.1. Constant-time-defeating optimisations were possible in the accumulator variable in hmac.compare_digest.

  • EPSS 0.68%
  • Veröffentlicht 22.08.2023 19:16:31
  • Zuletzt bearbeitet 18.12.2025 18:20:59

There is a stack overflow vulnerability in ash.c:6030 in busybox before 1.35. In the environment of Internet of Vehicles, this vulnerability can be executed from command to arbitrary code execution.

Exploit
  • EPSS 0.02%
  • Veröffentlicht 22.08.2023 19:16:31
  • Zuletzt bearbeitet 21.11.2024 07:33:30

File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project.

Exploit
  • EPSS 0.2%
  • Veröffentlicht 22.08.2023 19:16:31
  • Zuletzt bearbeitet 21.11.2024 07:33:30

A use-after-free exists in Python through 3.9 via heappushpop in heapq.

  • EPSS 0.12%
  • Veröffentlicht 22.08.2023 19:16:29
  • Zuletzt bearbeitet 13.02.2025 17:15:46

Server-Side Request Forgery (SSRF) vulnerability in Apache Software Foundation Apache XML Graphics Batik.This issue affects Apache XML Graphics Batik: 1.16. On version 1.16, a malicious SVG could trigger loading external resources by default, causin...