Debian

Debian Linux

9979 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.11%
  • Veröffentlicht 04.11.2017 01:29:37
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The usbhid_parse function in drivers/hid/usbhid/hid-core.c in the Linux kernel before 4.13.8 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.

  • EPSS 0.1%
  • Veröffentlicht 04.11.2017 01:29:36
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The usb_serial_console_disconnect function in drivers/usb/serial/console.c in the Linux kernel before 4.13.8 allows local users to cause a denial of service (use-after-free and system crash) or possibly have unspecified other impact via a crafted USB...

  • EPSS 0.11%
  • Veröffentlicht 04.11.2017 01:29:36
  • Zuletzt bearbeitet 13.05.2026 00:24:29

drivers/uwb/uwbd.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (general protection fault and system crash) or possibly have unspecified other impact via a crafted USB device.

  • EPSS 0.12%
  • Veröffentlicht 04.11.2017 01:29:36
  • Zuletzt bearbeitet 13.05.2026 00:24:29

sound/usb/mixer.c in the Linux kernel before 4.13.8 allows local users to cause a denial of service (snd_usb_mixer_interrupt use-after-free and system crash) or possibly have unspecified other impact via a crafted USB device.

  • EPSS 0.12%
  • Veröffentlicht 04.11.2017 01:29:36
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The snd_usb_create_streams function in sound/usb/card.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.

Exploit
  • EPSS 1.68%
  • Veröffentlicht 03.11.2017 15:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

In the yajl-ruby gem 1.3.0 for Ruby, when a crafted JSON file is supplied to Yajl::Parser.new.parse, the whole ruby process crashes with a SIGABRT in the yajl_string_decode function in yajl_encode.c. This results in the whole ruby process terminating...

Exploit
  • EPSS 31.37%
  • Veröffentlicht 01.11.2017 15:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

GraphicsMagick 1.3.26 is vulnerable to a heap-based buffer overflow vulnerability found in the "Display visual image directory" feature of the DescribeImage() function of the magick/describe.c file. One possible way to trigger the vulnerability is to...

Exploit
  • EPSS 32.26%
  • Veröffentlicht 01.11.2017 15:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

GraphicsMagick 1.3.26 is vulnerable to a memory information disclosure vulnerability found in the DescribeImage function of the magick/describe.c file, because of a heap-based buffer over-read. The portion of the code containing the vulnerability is ...

  • EPSS 0.86%
  • Veröffentlicht 31.10.2017 21:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

An IMAP FETCH response line indicates the size of the returned data, in number of bytes. When that response says the data is zero bytes, libcurl would pass on that (non-existing) data with a pointer and the size (zero) to the deliver-data function. l...

  • EPSS 0.9%
  • Veröffentlicht 31.10.2017 15:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

libvirt version 2.3.0 and later is vulnerable to a bad default configuration of "verify-peer=no" passed to QEMU by libvirt resulting in a failure to validate SSL/TLS certificates by default.