Debian

Debian Linux

9950 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 64.86%
  • Veröffentlicht 29.04.2018 21:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:32

An issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x before 7.2.5. An infinite loop exists in ext/iconv/iconv.c because the iconv stream filter does not reject invalid multibyte sequences.

  • EPSS 17.24%
  • Veröffentlicht 29.04.2018 21:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:32

An issue was discovered in ext/phar/phar_object.c in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x before 7.2.5. There is Reflected XSS on the PHAR 403 and 404 error pages via request data of a request for a .phar file. NOTE:...

  • EPSS 52.7%
  • Veröffentlicht 29.04.2018 21:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:32

An issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x before 7.2.5. ext/ldap/ldap.c allows remote LDAP servers to cause a denial of service (NULL pointer dereference and application crash) because of mishan...

  • EPSS 2.45%
  • Veröffentlicht 29.04.2018 21:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:32

An issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x before 7.2.5. exif_read_data in ext/exif/exif.c has an out-of-bounds read for crafted JPEG data because exif_iif_add_value mishandles the case of a Make...

  • EPSS 1.01%
  • Veröffentlicht 29.04.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:30

An issue was discovered in WavPack 5.1.0 and earlier. The WAV parser component contains a vulnerability that allows writing to memory because ParseRiffHeaderConfig in riff.c does not reject multiple format chunks.

  • EPSS 0.96%
  • Veröffentlicht 29.04.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:31

An issue was discovered in WavPack 5.1.0 and earlier. The W64 parser component contains a vulnerability that allows writing to memory because ParseWave64HeaderConfig in wave64.c does not reject multiple format chunks.

Exploit
  • EPSS 0.64%
  • Veröffentlicht 29.04.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:31

An issue was discovered in WavPack 5.1.0 and earlier for WAV input. Out-of-bounds writes can occur because ParseRiffHeaderConfig in riff.c does not validate the sizes of unknown chunks before attempting memory allocation, related to a lack of integer...

Exploit
  • EPSS 0.62%
  • Veröffentlicht 29.04.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:31

An issue was discovered in WavPack 5.1.0 and earlier for DSDiff input. Out-of-bounds writes can occur because ParseDsdiffHeaderConfig in dsdiff.c does not validate the sizes of unknown chunks before attempting memory allocation, related to a lack of ...

Exploit
  • EPSS 0.38%
  • Veröffentlicht 29.04.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:31

An issue was discovered in WavPack 5.1.0 and earlier for W64 input. Out-of-bounds writes can occur because ParseWave64HeaderConfig in wave64.c does not validate the sizes of unknown chunks before attempting memory allocation, related to a lack of int...

  • EPSS 0.06%
  • Veröffentlicht 27.04.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:22

An issue was discovered in Xen through 4.10.x allowing x86 PV guest OS users to cause a denial of service (out-of-bounds zero write and hypervisor crash) via unexpected INT 80 processing, because of an incorrect fix for CVE-2017-5754.