Debian

Debian Linux

9922 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.08%
  • Veröffentlicht 06.03.2018 20:29:00
  • Zuletzt bearbeitet 05.05.2025 14:14:33

MIT krb5 1.6 or later allows an authenticated kadmin with permission to add principals to an LDAP Kerberos database to cause a denial of service (NULL pointer dereference) or bypass a DN container check by supplying tagged data that is internal to th...

  • EPSS 0.43%
  • Veröffentlicht 06.03.2018 20:29:00
  • Zuletzt bearbeitet 05.05.2025 14:12:56

MIT krb5 1.6 or later allows an authenticated kadmin with permission to add principals to an LDAP Kerberos database to circumvent a DN containership check by supplying both a "linkdn" and "containerdn" database argument, or by supplying a DN string w...

Exploit
  • EPSS 0.5%
  • Veröffentlicht 06.03.2018 18:29:00
  • Zuletzt bearbeitet 21.11.2024 04:12:37

An issue was discovered in Exempi through 2.4.4. XMPFiles/source/FileHandlers/TIFF_Handler.cpp mishandles a case of a zero length, leading to a heap-based buffer over-read in the MD5Update() function in third-party/zuid/interfaces/MD5.cpp.

Exploit
  • EPSS 0.1%
  • Veröffentlicht 06.03.2018 18:29:00
  • Zuletzt bearbeitet 21.11.2024 04:12:37

An issue was discovered in Exempi through 2.4.4. A certain case of a 0xffffffff length is mishandled in XMPFiles/source/FormatSupport/PSIR_FileWriter.cpp, leading to a heap-based buffer over-read in the PSD_MetaHandler::CacheFileData() function.

Exploit
  • EPSS 5.76%
  • Veröffentlicht 05.03.2018 22:29:00
  • Zuletzt bearbeitet 21.11.2024 03:19:35

An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadOnePNGImage in coders/png.c, which allows attackers to cause a denial of service via a crafted file that triggers an attempt at a larg...

  • EPSS 0.32%
  • Veröffentlicht 05.03.2018 22:29:00
  • Zuletzt bearbeitet 21.11.2024 04:12:34

HTTPRedirect.php in the saml2 library in SimpleSAMLphp before 1.15.4 has an incorrect check of return values in the signature validation utilities, allowing an attacker to get invalid signatures accepted as valid by forcing an error during validation...

  • EPSS 1.04%
  • Veröffentlicht 05.03.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:38:20

An issue was discovered in Tor before 0.2.9.15, 0.3.1.x before 0.3.1.10, and 0.3.2.x before 0.3.2.10. The directory-authority protocol-list subprotocol implementation allows remote attackers to cause a denial of service (NULL pointer dereference and ...

Exploit
  • EPSS 82.53%
  • Veröffentlicht 05.03.2018 14:29:00
  • Zuletzt bearbeitet 21.11.2024 03:39:40

Memcached version 1.5.5 contains an Insufficient Control of Network Message Volume (Network Amplification, CWE-406) vulnerability in the UDP support of the memcached server that can result in denial of service via network flood (traffic amplification...

  • EPSS 1.75%
  • Veröffentlicht 02.03.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:12:50

A specially crafted email delivered over SMTP and passed on to Dovecot by MTA can trigger an out of bounds read resulting in potential sensitive information disclosure and denial of service. In order to trigger this vulnerability, an attacker needs t...

  • EPSS 2.38%
  • Veröffentlicht 02.03.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:14:07

A denial of service flaw was found in dovecot before 2.2.34. An attacker able to generate random SNI server names could exploit TLS SNI configuration lookups, leading to excessive memory usage and the process to restart.