Debian

Debian Linux

9950 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.09%
  • Veröffentlicht 02.08.2017 19:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Stack-based buffer overflow in hw/usb/redirect.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (QEMU process crash) via vectors related to logging debug messages.

  • EPSS 0.04%
  • Veröffentlicht 02.08.2017 19:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The address_space_write_continue function in exec.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds access and guest instance crash) by leveraging use of qemu_map_ram_ptr to access guest...

Exploit
  • EPSS 5.82%
  • Veröffentlicht 31.07.2017 13:29:01
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The read_samples function in hcom.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted hcom file.

Exploit
  • EPSS 5.17%
  • Veröffentlicht 31.07.2017 13:29:01
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The wavwritehdr function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted snd file, during conversion to a wav file.

Exploit
  • EPSS 2.59%
  • Veröffentlicht 31.07.2017 13:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The startread function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted wav file.

  • EPSS 0.22%
  • Veröffentlicht 29.07.2017 05:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

A heap-based buffer overflow vulnerability was found in the function dcputs (called from decompileIMPLEMENTS) in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.

  • EPSS 0.32%
  • Veröffentlicht 29.07.2017 05:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

A null pointer dereference vulnerability was found in the function stackswap (called from decompileSTACKSWAP) in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.

  • EPSS 0.34%
  • Veröffentlicht 28.07.2017 05:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

psi/ztoken.c in Artifex Ghostscript 9.21 mishandles references to the scanner state structure, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PostScript document,...

  • EPSS 8.41%
  • Veröffentlicht 27.07.2017 21:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Apache HTTP Server, in all releases prior to 2.2.32 and 2.4.25, was liberal in the whitespace accepted from requests and sent in response lines and headers. Accepting these different behaviors represented a security concern when httpd participates in...

  • EPSS 0.48%
  • Veröffentlicht 27.07.2017 06:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

There is a reachable assertion in the Internal::TiffReader::visitDirectory function in tiffvisitor.cpp of Exiv2 0.26 that will lead to a remote denial of service attack via crafted input.