Debian

Debian Linux

9979 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.56%
  • Veröffentlicht 09.09.2016 10:59:06
  • Zuletzt bearbeitet 06.05.2026 22:30:45

epan/dissectors/packet-ipmi-trace.c in the IPMI trace dissector in Wireshark 2.x before 2.0.6 does not properly consider whether a string is constant, which allows remote attackers to cause a denial of service (use-after-free and application crash) v...

  • EPSS 0.68%
  • Veröffentlicht 09.09.2016 10:59:05
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Stack-based buffer overflow in epan/dissectors/packet-catapult-dct2000.c in the Catapult DCT2000 dissector in Wireshark 2.x before 2.0.6 allows remote attackers to cause a denial of service (application crash) via a crafted packet.

  • EPSS 0.56%
  • Veröffentlicht 09.09.2016 10:59:04
  • Zuletzt bearbeitet 06.05.2026 22:30:45

epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 2.x before 2.0.6 does not ensure that memory is allocated for certain data structures, which allows remote attackers to cause a denial of service (invalid write access and applica...

  • EPSS 0.56%
  • Veröffentlicht 09.09.2016 10:59:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

epan/dissectors/packet-catapult-dct2000.c in the Catapult DCT2000 dissector in Wireshark 2.x before 2.0.6 does not restrict the number of channels, which allows remote attackers to cause a denial of service (buffer over-read and application crash) vi...

  • EPSS 0.51%
  • Veröffentlicht 09.09.2016 10:59:01
  • Zuletzt bearbeitet 06.05.2026 22:30:45

epan/dissectors/packet-h225.c in the H.225 dissector in Wireshark 2.x before 2.0.6 calls snprintf with one of its input buffers as the output buffer, which allows remote attackers to cause a denial of service (copy overlap and application crash) via ...

  • EPSS 2.36%
  • Veröffentlicht 07.09.2016 19:28:12
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Stack-based buffer overflow in the FascistGecosUser function in lib/fascist.c in cracklib allows local users to cause a denial of service (application crash) or gain privileges via a long GECOS field, involving longbuffer.

  • EPSS 1.63%
  • Veröffentlicht 07.09.2016 19:28:10
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Cross-site scripting (XSS) vulnerability in Action View in Ruby on Rails 3.x before 3.2.22.3, 4.x before 4.2.7.1, and 5.x before 5.0.0.1 might allow remote attackers to inject arbitrary web script or HTML via text declared as "HTML safe" and used as ...

  • EPSS 0.23%
  • Veröffentlicht 07.09.2016 18:59:04
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The esp_do_dma function in hw/scsi/esp.c in QEMU (aka Quick Emulator), when built with ESP/NCR53C9x controller emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) or execut...

  • EPSS 0.07%
  • Veröffentlicht 02.09.2016 14:59:04
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The megasas_lookup_frame function in QEMU, when built with MegaRAID SAS 8708EM2 Host Bus Adapter emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds read and crash) via unspecified vectors.

  • EPSS 0.08%
  • Veröffentlicht 02.09.2016 14:59:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The megasas_dcmd_set_properties function in hw/scsi/megasas.c in QEMU, when built with MegaRAID SAS 8708EM2 Host Bus Adapter emulation support, allows local guest administrators to cause a denial of service (out-of-bounds write access) via vectors in...