Debian

Debian Linux

9142 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.42%
  • Veröffentlicht 06.03.2022 06:15:07
  • Zuletzt bearbeitet 21.11.2024 06:54:03

In nbd-server in nbd before 3.24, there is a stack-based buffer overflow. An attacker can cause a buffer overflow in the parsing of the name field by sending a crafted NBD_OPT_INFO or NBD_OPT_GO message with an large value as the length of the name.

  • EPSS 0.02%
  • Veröffentlicht 06.03.2022 04:15:07
  • Zuletzt bearbeitet 25.06.2025 21:01:34

st21nfca_connectivity_event_received in drivers/nfc/st21nfca/se.c in the Linux kernel through 5.16.12 has EVT_TRANSACTION buffer overflows because of untrusted length parameters.

  • EPSS 0.02%
  • Veröffentlicht 05.03.2022 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:51:23

regexp.Compile in Go before 1.16.15 and 1.17.x before 1.17.8 allows stack exhaustion via a deeply nested expression.

  • EPSS 0.12%
  • Veröffentlicht 04.03.2022 18:15:07
  • Zuletzt bearbeitet 21.11.2024 05:46:18

A flaw was found in OpenEXR's hufUncompress functionality in OpenEXR/IlmImf/ImfHuf.cpp. This flaw allows an attacker who can submit a crafted file that is processed by OpenEXR, to trigger an integer overflow. The highest threat from this vulnerabilit...

  • EPSS 0.15%
  • Veröffentlicht 04.03.2022 18:15:07
  • Zuletzt bearbeitet 21.11.2024 05:46:18

A flaw was found in OpenEXR's TiledInputFile functionality. This flaw allows an attacker who can submit a crafted single-part non-image to be processed by OpenEXR, to trigger a floating-point exception error. The highest threat from this vulnerabilit...

  • EPSS 0.11%
  • Veröffentlicht 04.03.2022 18:15:07
  • Zuletzt bearbeitet 21.11.2024 05:46:19

A flaw found in function dataWindowForTile() of IlmImf/ImfTiledMisc.cpp. An attacker who is able to submit a crafted file to be processed by OpenEXR could trigger an integer overflow, leading to an out-of-bounds write on the heap. The greatest impact...

Exploit
  • EPSS 0.01%
  • Veröffentlicht 04.03.2022 16:15:08
  • Zuletzt bearbeitet 21.11.2024 06:22:19

A memory leak flaw was found in the Linux kernel in the ccp_run_aes_gcm_cmd() function in drivers/crypto/ccp/ccp-ops.c, which allows attackers to cause a denial of service (memory consumption). This vulnerability is similar with the older CVE-2019-18...

Exploit
  • EPSS 0%
  • Veröffentlicht 03.03.2022 23:15:08
  • Zuletzt bearbeitet 21.11.2024 06:22:03

A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other way triggers race condition of the call sco_conn_del() together with the call sco_sock_sendmsg() with...

  • EPSS 0.29%
  • Veröffentlicht 03.03.2022 23:15:08
  • Zuletzt bearbeitet 21.11.2024 06:39:16

Under certain ldap conditions, Cacti authentication can be bypassed with certain credential types.

Exploit
  • EPSS 0.02%
  • Veröffentlicht 03.03.2022 22:15:08
  • Zuletzt bearbeitet 21.11.2024 06:36:42

A memory leak flaw in the Linux kernel's hugetlbfs memory usage was found in the way the user maps some regions of memory twice using shmget() which are aligned to PUD alignment with the fault of some of the memory pages. A local user could use this ...