Debian

Debian Linux

9952 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 5.15%
  • Veröffentlicht 02.01.2020 23:15:11
  • Zuletzt bearbeitet 21.11.2024 02:18:43

An off-by-one error leading to a crash was discovered in openldap 2.4 when processing DNS SRV messages. If slapd was configured to use the dnssrv backend, an attacker could crash the service with crafted DNS responses.

  • EPSS 0.33%
  • Veröffentlicht 02.01.2020 22:15:11
  • Zuletzt bearbeitet 21.11.2024 02:14:04

FusionForge before 5.3.2 use scripts that run under the shared Apache user, which is also used by project homepages by default. If project webpages are hosted on the same server than FusionForge, it can allow users to incorrectly access on-disk priva...

  • EPSS 0.17%
  • Veröffentlicht 02.01.2020 16:15:11
  • Zuletzt bearbeitet 21.11.2024 01:55:45

Qemu 1.1.2+dfsg to 2.1+dfsg suffers from a buffer overrun which could potentially result in arbitrary code execution on the host with the privileges of the QEMU process.

Exploit
  • EPSS 1.02%
  • Veröffentlicht 02.01.2020 15:15:12
  • Zuletzt bearbeitet 21.11.2024 04:27:31

Ansible, versions 2.9.x before 2.9.1, 2.8.x before 2.8.7 and Ansible versions 2.7.x before 2.7.15, is not respecting the flag no_log set it to True when Sumologic and Splunk callback plugins are used send tasks results events to collectors. This woul...

Exploit
  • EPSS 0.51%
  • Veröffentlicht 02.01.2020 14:16:36
  • Zuletzt bearbeitet 11.07.2025 20:06:49

dimC_Read in isomedia/box_code_3gpp.c in GPAC from 0.5.2 to 0.8.0 has a stack-based buffer overflow.

  • EPSS 0.4%
  • Veröffentlicht 02.01.2020 14:16:36
  • Zuletzt bearbeitet 21.11.2024 04:38:13

selectExpander in select.c in SQLite 3.30.1 proceeds with WITH stack unwinding even after a parsing error.

Exploit
  • EPSS 1.19%
  • Veröffentlicht 31.12.2019 19:15:10
  • Zuletzt bearbeitet 21.11.2024 01:55:25

The eglibc package before 2.14 incorrectly handled the getaddrinfo() function. An attacker could use this issue to cause a denial of service.

  • EPSS 0.24%
  • Veröffentlicht 31.12.2019 18:15:11
  • Zuletzt bearbeitet 21.11.2024 04:26:48

The GOsa_Filter_Settings cookie in GONICUS GOsa 2.7.5.2 is vulnerable to PHP objection injection, which allows a remote authenticated attacker to perform file deletions (in the context of the user account that runs the web server) via a crafted cooki...

Exploit
  • EPSS 0.47%
  • Veröffentlicht 31.12.2019 00:15:13
  • Zuletzt bearbeitet 21.11.2024 04:38:09

An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is an invalid pointer dereference in the function GF_IPMPX_AUTH_Delete() in odf/ipmpx_code.c.

Exploit
  • EPSS 0.33%
  • Veröffentlicht 31.12.2019 00:15:13
  • Zuletzt bearbeitet 07.03.2025 14:24:42

An issue was discovered in GPAC version 0.5.2 and 0.9.0-development-20191109. There are memory leaks in metx_New in isomedia/box_code_base.c and abst_Read in isomedia/box_code_adobe.c.