Debian

Debian Linux

9142 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Warning Exploit
  • EPSS 94.48%
  • Published 07.04.2014 22:55:03
  • Last modified 12.04.2025 10:46:40

The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows remote attackers to obtain sensitive information from process memory via crafted packets that trigger a buffer ov...

Exploit
  • EPSS 1.27%
  • Published 27.03.2014 16:55:05
  • Last modified 12.04.2025 10:46:40

Cross-site scripting (XSS) vulnerability in cdef.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Exploit
  • EPSS 1.53%
  • Published 24.03.2014 16:31:08
  • Last modified 12.04.2025 10:46:40

The BEGIN regular expression in the awk script detector in magic/Magdir/commands in file before 5.15 uses multiple wildcards with unlimited repetitions, which allows context-dependent attackers to cause a denial of service (CPU consumption) via a cra...

Exploit
  • EPSS 12.14%
  • Published 21.03.2014 14:55:12
  • Last modified 12.04.2025 10:46:40

The gdImageCreateFromXpm function in gdxpm.c in libgd, as used in PHP 5.4.26 and earlier, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted color table in an XPM file.

Exploit
  • EPSS 0.55%
  • Published 20.03.2014 16:55:12
  • Last modified 12.04.2025 10:46:40

Multiple SQL injection vulnerabilities in MantisBT before 1.2.16 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to the (1) mc_project_get_attachments function in api/soap/mc_project_api.php; the (2) news_get_limit...

Exploit
  • EPSS 1.47%
  • Published 19.03.2014 10:55:06
  • Last modified 12.04.2025 10:46:40

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allow remote attackers to cause a denial of service (memory corruption and app...

Exploit
  • EPSS 0.5%
  • Published 19.03.2014 10:55:06
  • Last modified 12.04.2025 10:46:40

The mozilla::WaveReader::DecodeAudioData function in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to obtain sensitive information from process heap memory, cause...

Exploit
  • EPSS 0.54%
  • Published 19.03.2014 10:55:06
  • Last modified 12.04.2025 10:46:40

The SVG filter implementation in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to obtain sensitive displacement-correlation information, and possibly bypass the S...

Exploit
  • EPSS 0.99%
  • Published 19.03.2014 10:55:06
  • Last modified 12.04.2025 10:46:40

The libxul.so!gfxContext::Polygon function in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to obtain sensitive information from process memory, cause a denial of...

Exploit
  • EPSS 77.56%
  • Published 19.03.2014 10:55:06
  • Last modified 12.04.2025 10:46:40

The Web IDL implementation in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to execute arbitrary JavaScript code with chrome privileges by using an IDL fragment t...