Debian

Debian Linux

9922 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.41%
  • Veröffentlicht 16.08.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:50:58

Node.js before 16.6.1, 14.17.5, and 12.22.5 is vulnerable to a use after free attack where an attacker might be able to exploit the memory corruption, to change process behavior.

Exploit
  • EPSS 1.13%
  • Veröffentlicht 16.08.2021 08:15:11
  • Zuletzt bearbeitet 01.05.2025 15:40:12

A crafted method sent through HTTP/2 will bypass validation and be forwarded by mod_proxy, which can lead to request splitting or cache poisoning. This issue affects Apache HTTP Server 2.4.17 to 2.4.48.

  • EPSS 0.48%
  • Veröffentlicht 13.08.2021 00:15:07
  • Zuletzt bearbeitet 21.11.2024 06:15:43

ckeditor is an open source WYSIWYG HTML editor with rich content support. A potential vulnerability has been discovered in CKEditor 4 [Fake Objects](https://ckeditor.com/cke4/addon/fakeobjects) package. The vulnerability allowed to inject malformed F...

Exploit
  • EPSS 0.33%
  • Veröffentlicht 12.08.2021 16:15:10
  • Zuletzt bearbeitet 21.11.2024 06:16:43

FFmpeg version (git commit de8e6e67e7523e48bb27ac224a0b446df05e1640) suffers from a an assertion failure at src/libavutil/mathematics.c.

Exploit
  • EPSS 0.11%
  • Veröffentlicht 10.08.2021 21:15:07
  • Zuletzt bearbeitet 21.11.2024 05:12:46

A stack-based buffer overflow in the genptk_text component in genptk.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into ptk format.

Exploit
  • EPSS 0.12%
  • Veröffentlicht 10.08.2021 21:15:07
  • Zuletzt bearbeitet 21.11.2024 05:12:46

A stack-based buffer overflow in the genpstrx_text() component in genpstricks.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pstricks format.

Exploit
  • EPSS 0.26%
  • Veröffentlicht 10.08.2021 21:15:07
  • Zuletzt bearbeitet 21.11.2024 05:12:48

A heap-use-after-free in the av_freep function in libavutil/mem.c of FFmpeg 4.2 allows attackers to execute arbitrary code.

Exploit
  • EPSS 0.24%
  • Veröffentlicht 10.08.2021 21:15:07
  • Zuletzt bearbeitet 21.11.2024 05:12:48

A heap-use-after-free in the mpeg_mux_write_packet function in libavformat/mpegenc.c of FFmpeg 4.2 allows to cause a denial of service (DOS) via a crafted avi file.

  • EPSS 0.09%
  • Veröffentlicht 09.08.2021 19:15:08
  • Zuletzt bearbeitet 21.11.2024 06:15:32

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was found in Exiv2 versions v0.27.4 and earlier. The out-of-bounds read is triggered when Exiv2 is used t...

  • EPSS 0.09%
  • Veröffentlicht 09.08.2021 19:15:08
  • Zuletzt bearbeitet 21.11.2024 06:15:32

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An infinite loop was found in Exiv2 versions v0.27.4 and earlier. The infinite loop is triggered when Exiv2 is used to print th...