Debian

Debian Linux

9950 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2.19%
  • Veröffentlicht 07.06.2017 01:29:01
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Irssi before 1.0.3, when receiving certain incorrectly quoted DCC files, it tries to find the terminating quote one byte before the allocated memory. Thus, remote attackers might be able to cause a crash.

Exploit
  • EPSS 3.38%
  • Veröffentlicht 06.06.2017 21:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

smbd in Samba before 4.4.10 and 4.5.x before 4.5.6 has a denial of service vulnerability (fd_open_atomic infinite loop with high CPU usage and memory consumption) due to wrongly handling dangling symlinks.

  • EPSS 48.7%
  • Veröffentlicht 06.06.2017 21:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Mercurial before 4.1.3, "hg serve --stdio" allows remote authenticated users to launch the Python debugger, and consequently execute arbitrary code, by using --debugger as a repository name.

  • EPSS 0.46%
  • Veröffentlicht 06.06.2017 18:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Double-free vulnerability in libavformat/mov.c in FFMPEG in Google Chrome 41.0.2251.0 allows remote attackers to cause a denial of service (memory corruption and crash) via a crafted .m4a file.

  • EPSS 0.96%
  • Veröffentlicht 02.06.2017 19:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In LibTIFF 4.0.7, a memory leak vulnerability was found in the function TIFFReadDirEntryLong8Array in tif_dirread.c, which allows attackers to cause a denial of service via a crafted file.

  • EPSS 0.96%
  • Veröffentlicht 02.06.2017 19:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In LibTIFF 4.0.7, a memory leak vulnerability was found in the function OJPEGReadHeaderInfoSecTablesQTable in tif_ojpeg.c, which allows attackers to cause a denial of service via a crafted file.

  • EPSS 1.05%
  • Veröffentlicht 02.06.2017 19:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Poppler 0.54.0, a memory leak vulnerability was found in the function gmalloc in gmem.cc, which allows attackers to cause a denial of service via a crafted file.

  • EPSS 1.05%
  • Veröffentlicht 02.06.2017 19:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Poppler 0.54.0, a memory leak vulnerability was found in the function Object::initArray in Object.cc, which allows attackers to cause a denial of service via a crafted file.

  • EPSS 1.18%
  • Veröffentlicht 02.06.2017 05:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the Bluetooth L2CAP dissector could divide by zero. This was addressed in epan/dissectors/packet-btl2cap.c by validating an interval value.

  • EPSS 0.81%
  • Veröffentlicht 02.06.2017 05:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the DICOM dissector has an infinite loop. This was addressed in epan/dissectors/packet-dcm.c by validating a length value.