Debian

Debian Linux

9144 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.29%
  • Published 15.03.2021 05:15:12
  • Last modified 21.11.2024 05:59:36

The Debian courier-authlib package before 0.71.1-2 for Courier Authentication Library creates a /run/courier/authdaemon directory with weak permissions, allowing an attacker to read user information. This may include a cleartext password in some conf...

  • EPSS 0.57%
  • Published 12.03.2021 17:15:12
  • Last modified 21.11.2024 05:48:12

xmldom is a pure JavaScript W3C standard-based (XML DOM Level 2 Core) DOMParser and XMLSerializer module. xmldom versions 0.4.0 and older do not correctly preserve system identifiers, FPIs or namespaces when repeatedly parsing and serializing malicio...

Exploit
  • EPSS 1.47%
  • Published 12.03.2021 01:15:12
  • Last modified 21.11.2024 05:29:11

Leptonica before 1.80.0 allows a heap-based buffer over-read in pixFewColorsOctcubeQuantMixed in colorquant1.c.

Exploit
  • EPSS 2.15%
  • Published 12.03.2021 00:15:12
  • Last modified 21.11.2024 05:29:11

Leptonica before 1.80.0 allows a heap-based buffer over-read in findNextBorderPixel in ccbord.c.

Exploit
  • EPSS 4.25%
  • Published 12.03.2021 00:15:12
  • Last modified 21.11.2024 05:29:11

Leptonica before 1.80.0 allows a heap-based buffer over-read in rasteropGeneralLow, related to adaptmap_reg.c and adaptmap.c.

Exploit
  • EPSS 0.53%
  • Published 11.03.2021 22:15:12
  • Last modified 21.11.2024 05:59:11

An issue was discovered in GNOME GLib before 2.66.8. When g_file_replace() is used with G_FILE_CREATE_REPLACE_DESTINATION to replace a path that is a dangling symlink, it incorrectly also creates the target of the symlink as an empty file, which coul...

Exploit
  • EPSS 6.65%
  • Published 11.03.2021 21:15:11
  • Last modified 21.11.2024 05:29:11

Leptonica before 1.80.0 allows a denial of service (application crash) via an incorrect left shift in pixConvert2To8 in pixconv.c.

  • EPSS 0.12%
  • Published 11.03.2021 17:15:12
  • Last modified 21.11.2024 05:48:14

Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. In Flatpack since version 0.9.4 and before version 1.10.2 has a vulnerability in the "file forwarding" feature which can be used by an attacker to ga...

Exploit
  • EPSS 1.31%
  • Published 10.03.2021 23:15:12
  • Last modified 21.11.2024 05:48:13

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In PJSIP version 2.10 and earlier, after an initial INVITE has been sent, when tw...

Exploit
  • EPSS 3.75%
  • Published 10.03.2021 17:15:15
  • Last modified 21.11.2024 05:48:56

A use-after-free vulnerability exists in the NMR::COpcPackageReader::releaseZIP() functionality of 3MF Consortium lib3mf 2.0.0. A specially crafted 3MF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerab...