Debian

Debian Linux

9922 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.65%
  • Veröffentlicht 13.09.2018 16:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:16

An issue was discovered in mgetty before 1.2.1. In fax/faxq-helper.c, the function do_activate() does not properly sanitize shell metacharacters to prevent command injection. It is possible to use the ||, &&, or > characters within a file created by ...

Exploit
  • EPSS 0.45%
  • Veröffentlicht 12.09.2018 23:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:38

stb stb_image.h 2.19, as used in catimg, Emscripten, and other products, has a heap-based buffer overflow in the stbi__out_gif_code function.

  • EPSS 1.57%
  • Veröffentlicht 12.09.2018 01:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:33

An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. The backup tape controller (butc) process accepts incoming RPCs but does not require (or allow for) authentication of those RPCs. Handling those RPCs results in operations being...

  • EPSS 0.38%
  • Veröffentlicht 12.09.2018 01:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:34

An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. Several RPC server routines did not fully initialize their output variables before returning, leaking memory contents from both the stack and the heap. Because the OpenAFS cache...

  • EPSS 4.61%
  • Veröffentlicht 12.09.2018 01:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:34

An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. Several data types used as RPC input variables were implemented as unbounded array types, limited only by the inherent 32-bit length field to 4 GB. An unauthenticated attacker c...

  • EPSS 0.03%
  • Veröffentlicht 11.09.2018 14:29:01
  • Zuletzt bearbeitet 21.11.2024 03:42:08

A flaw was found in the way Linux kernel KVM hypervisor before 4.18 emulated instructions such as sgdt/sidt/fxsave/fxrstor. It did not check current privilege(CPL) level while emulating unprivileged instructions. An unprivileged guest user/process co...

  • EPSS 0.01%
  • Veröffentlicht 11.09.2018 13:29:01
  • Zuletzt bearbeitet 21.11.2024 02:57:24

An issue has been found in PowerDNS before 3.4.11 and 4.0.2, and PowerDNS recursor before 4.0.4, allowing an attacker in position of man-in-the-middle to alter the content of an AXFR because of insufficient validation of TSIG signatures. A missing ch...

  • EPSS 0%
  • Veröffentlicht 11.09.2018 13:29:01
  • Zuletzt bearbeitet 21.11.2024 02:57:24

An issue has been found in PowerDNS before 3.4.11 and 4.0.2, and PowerDNS recursor before 4.0.4, allowing an attacker in position of man-in-the-middle to alter the content of an AXFR because of insufficient validation of TSIG signatures. A missing ch...

  • EPSS 0.09%
  • Veröffentlicht 11.09.2018 13:29:00
  • Zuletzt bearbeitet 21.11.2024 02:57:23

An issue has been found in PowerDNS before 3.4.11 and 4.0.2, and PowerDNS recursor before 3.7.4 and 4.0.4, allowing a remote, unauthenticated attacker to cause an abnormal CPU usage load on the PowerDNS server by sending crafted DNS queries, which mi...

  • EPSS 0.03%
  • Veröffentlicht 10.09.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 02:57:24

An issue has been found in PowerDNS Authoritative Server before 3.4.11 and 4.0.2 allowing a remote, unauthenticated attacker to cause a denial of service by opening a large number of TCP connections to the web server. If the web server runs out of fi...