Debian

Debian Linux

9922 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.33%
  • Veröffentlicht 10.09.2018 16:29:00
  • Zuletzt bearbeitet 21.11.2024 02:57:22

A timing attack flaw was found in OpenSSL 1.0.1u and before that could allow a malicious user with local access to recover ECDSA P-256 private keys.

  • EPSS 0.97%
  • Veröffentlicht 10.09.2018 16:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:22

An issue was discovered in Artifex Ghostscript before 9.25. Incorrect "restoration of privilege" checking when running out of stack during exception handling could be used by attackers able to supply crafted PostScript to execute code using the "pipe...

  • EPSS 0.06%
  • Veröffentlicht 10.09.2018 13:29:00
  • Zuletzt bearbeitet 21.11.2024 03:49:27

A flaw was found in the Linux Kernel where an attacker may be able to have an uncontrolled read to kernel-memory from within a vm guest. A race condition between connect() and close() function may allow an attacker using the AF_VSOCK protocol to gath...

Exploit
  • EPSS 0.24%
  • Veröffentlicht 09.09.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:17

In ImageMagick 7.0.7-29 and earlier, a missing NULL check in ReadOneJNGImage in coders/png.c allows an attacker to cause a denial of service (WriteBlob assertion failure and application exit) via a crafted file.

Exploit
  • EPSS 0.27%
  • Veröffentlicht 07.09.2018 14:29:03
  • Zuletzt bearbeitet 21.11.2024 03:53:09

In Kamailio before 5.0.7 and 5.1.x before 5.1.4, a crafted SIP message with an invalid Via header causes a segmentation fault and crashes Kamailio. The reason is missing input validation in the crcitt_string_array core function for calculating a CRC ...

  • EPSS 0.02%
  • Veröffentlicht 07.09.2018 14:29:03
  • Zuletzt bearbeitet 21.11.2024 03:53:09

An issue was discovered in the Linux kernel before 4.18.6. An information leak in cdrom_ioctl_drive_status in drivers/cdrom/cdrom.c could be used by local attackers to read kernel memory because a cast from unsigned long to int interferes with bounds...

Exploit
  • EPSS 0.68%
  • Veröffentlicht 06.09.2018 23:29:01
  • Zuletzt bearbeitet 21.11.2024 03:53:08

In Poppler 0.68.0, the Parser::getObj() function in Parser.cc may cause infinite recursion via a crafted file. A remote attacker can leverage this for a DoS attack.

  • EPSS 0.34%
  • Veröffentlicht 06.09.2018 22:29:01
  • Zuletzt bearbeitet 21.11.2024 03:53:07

The functions ReadDCMImage in coders/dcm.c, ReadPWPImage in coders/pwp.c, ReadCALSImage in coders/cals.c, and ReadPICTImage in coders/pict.c in ImageMagick 7.0.8-4 do not check the return value of the fputc function, which allows remote attackers to ...

  • EPSS 0.24%
  • Veröffentlicht 06.09.2018 22:29:01
  • Zuletzt bearbeitet 21.11.2024 03:53:07

There is a missing check for length in the functions ReadDCMImage of coders/dcm.c and ReadPICTImage of coders/pict.c in ImageMagick 7.0.8-11, which allows remote attackers to cause a denial of service via a crafted image.

  • EPSS 0.56%
  • Veröffentlicht 06.09.2018 22:29:01
  • Zuletzt bearbeitet 21.11.2024 03:53:07

There is an excessive memory allocation issue in the functions ReadBMPImage of coders/bmp.c and ReadDIBImage of coders/dib.c in ImageMagick 7.0.8-11, which allows remote attackers to cause a denial of service via a crafted image file.