Debian

Debian Linux

9979 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.03%
  • Veröffentlicht 02.08.2017 19:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The address_space_write_continue function in exec.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds access and guest instance crash) by leveraging use of qemu_map_ram_ptr to access guest...

Exploit
  • EPSS 5.82%
  • Veröffentlicht 31.07.2017 13:29:01
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The read_samples function in hcom.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted hcom file.

Exploit
  • EPSS 5.17%
  • Veröffentlicht 31.07.2017 13:29:01
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The wavwritehdr function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted snd file, during conversion to a wav file.

Exploit
  • EPSS 2.59%
  • Veröffentlicht 31.07.2017 13:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The startread function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted wav file.

  • EPSS 0.22%
  • Veröffentlicht 29.07.2017 05:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

A heap-based buffer overflow vulnerability was found in the function dcputs (called from decompileIMPLEMENTS) in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.

  • EPSS 0.32%
  • Veröffentlicht 29.07.2017 05:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

A null pointer dereference vulnerability was found in the function stackswap (called from decompileSTACKSWAP) in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.

  • EPSS 0.34%
  • Veröffentlicht 28.07.2017 05:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

psi/ztoken.c in Artifex Ghostscript 9.21 mishandles references to the scanner state structure, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PostScript document,...

  • EPSS 10.64%
  • Veröffentlicht 27.07.2017 21:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

Apache HTTP Server, in all releases prior to 2.2.32 and 2.4.25, was liberal in the whitespace accepted from requests and sent in response lines and headers. Accepting these different behaviors represented a security concern when httpd participates in...

  • EPSS 0.48%
  • Veröffentlicht 27.07.2017 06:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

There is a reachable assertion in the Internal::TiffReader::visitDirectory function in tiffvisitor.cpp of Exiv2 0.26 that will lead to a remote denial of service attack via crafted input.

Exploit
  • EPSS 0.39%
  • Veröffentlicht 26.07.2017 19:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The Ins_MIRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted document.