Debian

Debian Linux

9947 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 15.22%
  • Veröffentlicht 16.05.2023 19:15:09
  • Zuletzt bearbeitet 05.05.2025 16:15:36

Type confusion in V8 in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • EPSS 10.36%
  • Veröffentlicht 16.05.2023 19:15:09
  • Zuletzt bearbeitet 05.05.2025 16:15:36

Use after free in Guest View in Google Chrome prior to 113.0.5672.126 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • EPSS 0.03%
  • Veröffentlicht 16.05.2023 19:15:09
  • Zuletzt bearbeitet 05.05.2025 16:15:36

Inappropriate implementation in WebApp Installs in Google Chrome prior to 113.0.5672.126 allowed an attacker who convinced a user to install a malicious web app to bypass install dialog via a crafted HTML page. (Chromium security severity: Medium)

Exploit
  • EPSS 0.02%
  • Veröffentlicht 15.05.2023 22:15:12
  • Zuletzt bearbeitet 21.11.2024 07:57:58

An out-of-bounds memory access flaw was found in the Linux kernel’s XFS file system in how a user restores an XFS image after failure (with a dirty log journal). This flaw allows a local user to crash or potentially escalate their privileges on the s...

  • EPSS 2.09%
  • Veröffentlicht 09.05.2023 22:15:10
  • Zuletzt bearbeitet 21.11.2024 07:58:02

A flaw was found in the networking subsystem of the Linux kernel within the handling of the RPL protocol. This issue results from the lack of proper handling of user-supplied data, which can lead to an assertion failure. This may allow an unauthentic...

Exploit
  • EPSS 5.77%
  • Veröffentlicht 09.05.2023 16:15:14
  • Zuletzt bearbeitet 21.11.2024 08:01:58

An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_attr_psid_sub() function.

  • EPSS 1.25%
  • Veröffentlicht 09.05.2023 14:15:13
  • Zuletzt bearbeitet 21.11.2024 08:01:28

MaraDNS is open-source software that implements the Domain Name System (DNS). In version 3.5.0024 and prior, a remotely exploitable integer underflow vulnerability in the DNS packet decompression function allows an attacker to cause a Denial of Servi...

  • EPSS 0.19%
  • Veröffentlicht 08.05.2023 20:15:18
  • Zuletzt bearbeitet 29.01.2025 15:15:13

The issue was addressed by removing origin information. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, tvOS 16.4, watchOS 9.4. A website may be able to track sensitive user information.

  • EPSS 0.01%
  • Veröffentlicht 08.05.2023 20:15:17
  • Zuletzt bearbeitet 29.01.2025 21:15:15

This issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, tvOS 16.4, watchOS 9.4. Processing maliciously crafted web content may bypass Same Origin Policy.

  • EPSS 0.17%
  • Veröffentlicht 03.05.2023 12:16:30
  • Zuletzt bearbeitet 21.11.2024 07:27:01

An out-of-bounds read exists in the BGP daemon of FRRouting FRR through 8.4. When sending a malformed BGP OPEN message that ends with the option length octet (or the option length word, in case of an extended OPEN message), the FRR code reads of out ...