Debian

Debian Linux

9921 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.1%
  • Veröffentlicht 07.04.2025 20:15:21
  • Zuletzt bearbeitet 09.10.2025 13:41:29

libvips is a demand-driven, horizontally threaded image processing library. The heifsave operation could incorrectly determine the presence of an alpha channel in an input when it was not possible to determine the colour interpretation, known intern...

Exploit
  • EPSS 0.67%
  • Veröffentlicht 03.04.2025 14:15:46
  • Zuletzt bearbeitet 12.08.2025 21:15:30

A flaw was found in Yelp. The Gnome user help application allows the help document to execute arbitrary scripts. This vulnerability allows malicious users to input help documents, which may exfiltrate user files to an external environment.

  • EPSS 0.06%
  • Veröffentlicht 01.04.2025 16:15:26
  • Zuletzt bearbeitet 22.01.2026 20:57:23

In the Linux kernel, the following vulnerability has been resolved: drivers: virt: acrn: hsm: Use kzalloc to avoid info leak in pmcmd_ioctl In the "pmcmd_ioctl" function, three memory objects allocated by kmalloc are initialized by "hcall_get_cpu_s...

  • EPSS 0.03%
  • Veröffentlicht 27.03.2025 16:37:15
  • Zuletzt bearbeitet 25.11.2025 17:28:44

In the Linux kernel, the following vulnerability has been resolved: mm/khugepaged: fix ->anon_vma race If an ->anon_vma is attached to the VMA, collapse_and_free_pmd() requires it to be locked. Page table traversal is allowed under any one of the ...

  • EPSS 0.01%
  • Veröffentlicht 17.03.2025 21:32:37
  • Zuletzt bearbeitet 02.10.2025 01:51:43

containerd is an open-source container runtime. A bug was found in containerd prior to versions 1.6.38, 1.7.27, and 2.0.4 where containers launched with a User set as a `UID:GID` larger than the maximum 32-bit signed integer can cause an overflow con...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 14.03.2025 14:25:59
  • Zuletzt bearbeitet 31.12.2025 00:48:10

In the Linux kernel, the following vulnerability has been resolved: netfilter: allow exp not to be removed in nf_ct_find_expectation Currently nf_conntrack_in() calling nf_ct_find_expectation() will remove the exp from the hash table. However, in s...

Warnung
  • EPSS 0.07%
  • Veröffentlicht 11.03.2025 18:15:30
  • Zuletzt bearbeitet 14.11.2025 13:52:54

An out-of-bounds write issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in visionOS 2.3.2, iOS 18.3.2 and iPadOS 18.3.2, macOS Sequoia 15.3.2, Safari 18.3.1, watchOS 11.4, iPadOS 17.7.6, iOS 16.7.11 and iP...

Warnung Medienbericht
  • EPSS 76.68%
  • Veröffentlicht 11.03.2025 13:28:31
  • Zuletzt bearbeitet 27.10.2025 17:06:41

An out of bounds write exists in FreeType versions 2.13.0 and below (newer versions of FreeType are not vulnerable) when attempting to parse font subglyph structures related to TrueType GX and variable font files. The vulnerable code assigns a signed...

Warnung Medienbericht Exploit
  • EPSS 94.18%
  • Veröffentlicht 10.03.2025 16:44:03
  • Zuletzt bearbeitet 23.10.2025 14:49:29

Path Equivalence: 'file.Name' (Internal Dot) leading to Remote Code Execution and/or Information disclosure and/or malicious content added to uploaded files via write enabled Default Servlet in Apache Tomcat. This issue affects Apache Tomcat: from 1...

  • EPSS 1.6%
  • Veröffentlicht 06.03.2025 19:15:27
  • Zuletzt bearbeitet 03.10.2025 00:32:38

An issue was discovered in Django 5.1 before 5.1.7, 5.0 before 5.0.13, and 4.2 before 4.2.20. The django.utils.text.wrap() method and wordwrap template filter are subject to a potential denial-of-service attack when used with very long strings.