Debian

Debian Linux

9928 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.41%
  • Veröffentlicht 31.07.2019 23:15:11
  • Zuletzt bearbeitet 21.11.2024 04:26:47

XMFile::read in XMFile.cpp in milkyplay in MilkyTracker 1.02.00 has a heap-based buffer overflow.

  • EPSS 0.22%
  • Veröffentlicht 31.07.2019 23:15:10
  • Zuletzt bearbeitet 21.11.2024 04:18:35

It was found that in icedtea-web up to and including 1.7.2 and 1.8.2 executable code could be injected in a JAR file without compromising the signature verification. An attacker could use this flaw to inject code in a trusted JAR. The code would be e...

  • EPSS 1.56%
  • Veröffentlicht 31.07.2019 23:15:10
  • Zuletzt bearbeitet 21.11.2024 04:18:36

It was found that icedtea-web up to and including 1.7.2 and 1.8.2 was vulnerable to a zip-slip attack during auto-extraction of a JAR file. An attacker could use this flaw to write files to arbitrary locations. This could also be used to replace the ...

  • EPSS 0.92%
  • Veröffentlicht 31.07.2019 23:15:10
  • Zuletzt bearbeitet 21.11.2024 04:26:47

An issue was discovered in libmodbus before 3.0.7 and 3.1.x before 3.1.5. There is an out-of-bounds read for the MODBUS_FC_WRITE_MULTIPLE_COILS case, aka VD-1302.

Exploit
  • EPSS 2.07%
  • Veröffentlicht 31.07.2019 21:15:11
  • Zuletzt bearbeitet 21.11.2024 04:26:47

nfdump 1.6.17 and earlier is affected by an integer overflow in the function Process_ipfix_template_withdraw in ipfix.c that can be abused in order to crash the process remotely (denial of service).

  • EPSS 0.65%
  • Veröffentlicht 30.07.2019 23:15:12
  • Zuletzt bearbeitet 21.11.2024 04:18:32

A flaw was discovered in the way Ansible templating was implemented in versions before 2.6.18, 2.7.12 and 2.8.2, causing the possibility of information disclosure through unexpected variable substitution. By taking advantage of unintended variable su...

  • EPSS 0.29%
  • Veröffentlicht 30.07.2019 19:15:13
  • Zuletzt bearbeitet 21.11.2024 04:26:37

libopenmpt before 0.4.5 allows a crash during playback due to an out-of-bounds read in XM and MT2 files.

Exploit
  • EPSS 0.22%
  • Veröffentlicht 30.07.2019 13:15:18
  • Zuletzt bearbeitet 21.11.2024 04:26:45

In mpc8_read_header in libavformat/mpc8.c in Libav 12.3, an input file can result in an avio_seek infinite loop and hang, with 100% CPU consumption. Attackers could leverage this vulnerability to cause a denial of service via a crafted file.

Exploit
  • EPSS 0.51%
  • Veröffentlicht 30.07.2019 13:15:18
  • Zuletzt bearbeitet 21.11.2024 04:26:45

An issue was discovered in Libav 12.3. Division by zero in range_decode_culshift in libavcodec/apedec.c allows remote attackers to cause a denial of service (application crash), as demonstrated by avconv.

  • EPSS 10.32%
  • Veröffentlicht 30.07.2019 11:15:11
  • Zuletzt bearbeitet 21.11.2024 04:26:44

A Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.x before 2.9.9.2. This occurs when Default Typing is enabled (either globally or for a specific property) for an externally exposed JSON endpoint and the service has the logbac...