Debian

Debian Linux

9142 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 84.16%
  • Veröffentlicht 19.07.2016 02:00:17
  • Zuletzt bearbeitet 12.04.2025 10:46:40

PHP through 7.0.8 does not attempt to address RFC 3875 section 4.1.18 namespace conflicts and therefore does not protect applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which might allow remote attacker...

  • EPSS 2.82%
  • Veröffentlicht 13.07.2016 15:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

libvirt before 2.0.0 improperly disables password checking when the password on a VNC server is set to an empty string, which allows remote attackers to bypass authentication and establish a VNC session by connecting to the server.

  • EPSS 0.57%
  • Veröffentlicht 12.07.2016 19:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form.

  • EPSS 32.07%
  • Veröffentlicht 08.07.2016 19:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Stack-based buffer overflow in Apache Xerces-C++ before 3.1.4 allows context-dependent attackers to cause a denial of service via a deeply nested DTD.

  • EPSS 0.4%
  • Veröffentlicht 08.07.2016 19:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Use-after-free vulnerability in LibreOffice before 5.1.4 allows remote attackers to execute arbitrary code via a crafted RTF file, related to stylesheet and superscript tokens.

  • EPSS 33.87%
  • Veröffentlicht 04.07.2016 22:59:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The MultipartStream class in Apache Commons Fileupload before 1.3.2, as used in Apache Tomcat 7.x before 7.0.70, 8.x before 8.0.36, 8.5.x before 8.5.3, and 9.x before 9.0.0.M7 and other products, allows remote attackers to cause a denial of service (...

  • EPSS 0.06%
  • Veröffentlicht 03.07.2016 21:59:18
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Race condition in the sclp_ctl_ioctl_sccb function in drivers/s390/char/sclp_ctl.c in the Linux kernel before 4.6 allows local users to obtain sensitive information from kernel memory by changing a certain length value, aka a "double fetch" vulnerabi...

Exploit
  • EPSS 5.22%
  • Veröffentlicht 03.07.2016 21:59:16
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The compat IPT_SO_SET_REPLACE and IP6T_SO_SET_REPLACE setsockopt implementations in the netfilter subsystem in the Linux kernel before 4.6.3 allow local users to gain privileges or cause a denial of service (memory corruption) by leveraging in-contai...

  • EPSS 12.8%
  • Veröffentlicht 03.07.2016 21:59:15
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The usbip_recv_xbuff function in drivers/usb/usbip/usbip_common.c in the Linux kernel before 4.5.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted length value in a US...

  • EPSS 0.05%
  • Veröffentlicht 27.06.2016 10:59:14
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple heap-based buffer overflows in the hiddev_ioctl_usage function in drivers/hid/usbhid/hiddev.c in the Linux kernel through 4.6.3 allow local users to cause a denial of service or possibly have unspecified other impact via a crafted (1) HIDIOC...