Debian

Debian Linux

9142 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 6.05%
  • Veröffentlicht 13.04.2016 17:59:07
  • Zuletzt bearbeitet 12.04.2025 10:46:40

dict.c in libxml2 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via an unexpected character immediately after the "<!DOCTYPE html" substring in a crafted HTML document.

  • EPSS 1.52%
  • Veröffentlicht 13.04.2016 17:59:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The NeXTDecode function in tif_next.c in LibTIFF allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted TIFF image, as demonstrated by libtiff5.tif.

  • EPSS 0.21%
  • Veröffentlicht 13.04.2016 17:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The putcontig8bitCIELab function in tif_getimage.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via a packed TIFF image.

  • EPSS 2.83%
  • Veröffentlicht 13.04.2016 17:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The (1) SSH_MSG_NEWKEYS and (2) SSH_MSG_KEXDH_REPLY packet handlers in package_cb.c in libssh before 0.6.5 do not properly validate state, which allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted S...

Exploit
  • EPSS 4.43%
  • Veröffentlicht 13.04.2016 17:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The NeXTDecode function in tif_next.c in LibTIFF allows remote attackers to cause a denial of service (uninitialized memory access) via a crafted TIFF image, as demonstrated by libtiff5.tif.

  • EPSS 1.1%
  • Veröffentlicht 13.04.2016 17:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The (1) putcontig8bitYCbCr21tile function in tif_getimage.c or (2) NeXTDecode function in tif_next.c in LibTIFF allows remote attackers to cause a denial of service (uninitialized memory access) via a crafted TIFF image, as demonstrated by libtiff-cv...

  • EPSS 1.7%
  • Veröffentlicht 13.04.2016 16:59:24
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Off-by-one error in the bmp_rle4_fread function in pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (out-of-bounds read or write access and crash) or possibly execute arbitrary code via a crafted image file, whi...

Exploit
  • EPSS 0.95%
  • Veröffentlicht 13.04.2016 16:59:23
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Heap-based buffer overflow in the bmp_read_rows function in pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (out-of-bounds read or write access and crash) or possibly execute arbitrary code via a crafted image ...

  • EPSS 5.19%
  • Veröffentlicht 13.04.2016 16:59:20
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The binary delta decoder in Mercurial before 3.7.3 allows remote attackers to execute arbitrary code via a (1) clone, (2) push, or (3) pull command, related to (a) a list sizing rounding error and (b) short records.

  • EPSS 0.04%
  • Veröffentlicht 13.04.2016 16:59:19
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The fpu_fxrstor function in arch/x86/i387.c in Xen 4.x does not properly handle writes to the hardware FSW.ES bit when running on AMD64 processors, which allows local guest OS users to obtain sensitive register content information from another guest ...