Debian

Debian Linux

9922 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.94%
  • Veröffentlicht 29.11.2018 08:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:22

An issue was discovered in libsndfile 1.0.28. There is a buffer over-read in the function i2ulaw_array in ulaw.c that will lead to a denial of service.

Exploit
  • EPSS 0.7%
  • Veröffentlicht 29.11.2018 08:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:22

An issue was discovered in libsndfile 1.0.28. There is a buffer over-read in the function i2alaw_array in alaw.c that will lead to a denial of service.

Exploit
  • EPSS 1.35%
  • Veröffentlicht 29.11.2018 04:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:17

In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the MMSE dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-mmse.c by preventing length overflows.

Exploit
  • EPSS 2.06%
  • Veröffentlicht 29.11.2018 04:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:18

In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the LBMPDM dissector could crash. In addition, a remote attacker could write arbitrary data to any memory locations before the packet-scoped memory. This was addressed in epan/dissectors/packet-lbmpdm....

Exploit
  • EPSS 0.27%
  • Veröffentlicht 29.11.2018 04:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:18

In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the PVFS dissector could crash. This was addressed in epan/dissectors/packet-pvfs2.c by preventing a NULL pointer dereference.

Exploit
  • EPSS 0.27%
  • Veröffentlicht 29.11.2018 04:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:18

In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the dissection engine could crash. This was addressed in epan/tvbuff_composite.c by preventing a heap-based buffer over-read.

Exploit
  • EPSS 0.27%
  • Veröffentlicht 29.11.2018 04:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:18

In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the DCOM dissector could crash. This was addressed in epan/dissectors/packet-dcom.c by adding '\0' termination.

Exploit
  • EPSS 18.64%
  • Veröffentlicht 29.11.2018 04:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:18

In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the IxVeriWave file parser could crash. This was addressed in wiretap/vwr.c by adjusting a buffer boundary.

Exploit
  • EPSS 0.92%
  • Veröffentlicht 29.11.2018 04:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:18

In Wireshark 2.6.0 to 2.6.4, the ZigBee ZCL dissector could crash. This was addressed in epan/dissectors/packet-zbee-zcl-lighting.c by preventing a divide-by-zero error.

Exploit
  • EPSS 13.62%
  • Veröffentlicht 28.11.2018 14:29:00
  • Zuletzt bearbeitet 21.11.2024 03:49:27

A denial of service vulnerability was discovered in Samba's LDAP server before versions 4.7.12, 4.8.7, and 4.9.3. A CNAME loop could lead to infinite recursion in the server. An unprivileged local attacker could create such an entry, leading to denia...