Debian

Debian Linux

9947 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 9.37%
  • Veröffentlicht 23.05.2016 19:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Buffer overflow in the stellaris_enet_receive function in hw/net/stellaris_enet.c in QEMU, when the Stellaris ethernet controller is configured to accept large packets, allows remote attackers to cause a denial of service (QEMU crash) via a large pac...

  • EPSS 0.05%
  • Veröffentlicht 23.05.2016 19:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The ehci_process_itd function in hw/usb/hcd-ehci.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via a circular isochronous transfer descriptor (iTD) list.

Exploit
  • EPSS 0.13%
  • Veröffentlicht 23.05.2016 10:59:09
  • Zuletzt bearbeitet 12.04.2025 10:46:40

sound/core/timer.c in the Linux kernel through 4.6 does not initialize certain r1 data structures, which allows local users to obtain sensitive information from kernel stack memory via crafted use of the ALSA timer interface, related to the (1) snd_t...

  • EPSS 0.19%
  • Veröffentlicht 23.05.2016 10:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The InfiniBand (aka IB) stack in the Linux kernel before 4.5.3 incorrectly relies on the write system call, which allows local users to cause a denial of service (kernel memory write operation) or possibly have unspecified other impact via a uAPI int...

Exploit
  • EPSS 4.3%
  • Veröffentlicht 22.05.2016 01:59:29
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The exif_process_TIFF_in_JPEG function in ext/exif/exif.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 does not validate TIFF start data, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly h...

  • EPSS 0.1%
  • Veröffentlicht 20.05.2016 14:59:08
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The get_cmd function in hw/scsi/esp.c in the 53C9X Fast SCSI Controller (FSC) support in QEMU does not properly check DMA length, which allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via...

  • EPSS 0.31%
  • Veröffentlicht 20.05.2016 14:59:07
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The esp_reg_write function in hw/scsi/esp.c in the 53C9X Fast SCSI Controller (FSC) support in QEMU does not properly check command buffer length, which allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU p...

  • EPSS 3.08%
  • Veröffentlicht 20.05.2016 14:59:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The _rsvg_css_normalize_font_size function in librsvg 2.40.2 allows context-dependent attackers to cause a denial of service (stack consumption and application crash) via circular definitions in an SVG document.

  • EPSS 1.43%
  • Veröffentlicht 20.05.2016 14:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

librsvg before 2.40.12 allows context-dependent attackers to cause a denial of service (infinite loop, stack consumption, and application crash) via cyclic references in an SVG document.

Exploit
  • EPSS 2.14%
  • Veröffentlicht 20.05.2016 10:59:54
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Heap-based buffer overflow in the xmlFAParsePosCharGroup function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to execute arbitrary code or cause...