Debian

Debian Linux

9141 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.52%
  • Veröffentlicht 25.05.2013 03:18:16
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple integer overflows in Wireshark 1.8.x before 1.8.7 allow remote attackers to cause a denial of service (loop or application crash) via a malformed packet, related to a crash of the Websocket dissector, an infinite loop in the MySQL dissector,...

Exploit
  • EPSS 3.44%
  • Veröffentlicht 25.05.2013 03:18:16
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple integer signedness errors in the tvb_unmasked function in epan/dissectors/packet-websocket.c in the Websocket dissector in Wireshark 1.8.x before 1.8.7 allow remote attackers to cause a denial of service (application crash) via a malformed p...

Exploit
  • EPSS 3.4%
  • Veröffentlicht 25.05.2013 03:18:15
  • Zuletzt bearbeitet 11.04.2025 00:51:21

epan/dissectors/packet-gtpv2.c in the GTPv2 dissector in Wireshark 1.8.x before 1.8.7 calls incorrect functions in certain contexts related to ciphers, which allows remote attackers to cause a denial of service (application crash) via a malformed pac...

  • EPSS 1.54%
  • Veröffentlicht 25.05.2013 03:18:15
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The fragment_add_seq_common function in epan/reassemble.c in the ASN.1 BER dissector in Wireshark before r48943 has an incorrect pointer dereference during a comparison, which allows remote attackers to cause a denial of service (application crash) v...

Warnung Exploit
  • EPSS 2.57%
  • Veröffentlicht 16.05.2013 11:45:30
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 do not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoomEvent::mNewScale funct...

  • EPSS 4.85%
  • Veröffentlicht 25.04.2013 23:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

ModSecurity before 2.7.3 allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a denial of service (CPU and memory consumption) via an XML external entity declaration in conjunction with an entity reference...

  • EPSS 2.8%
  • Veröffentlicht 03.04.2013 11:56:21
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer signedness error in the pixman_fill_sse2 function in pixman-sse2.c in Pixman, as distributed with Cairo and used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, Se...

Exploit
  • EPSS 39.41%
  • Veröffentlicht 28.03.2013 23:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

MariaDB 5.5.x before 5.5.30, 5.3.x before 5.3.13, 5.2.x before 5.2.15, and 5.1.x before 5.1.68, and Oracle MySQL 5.1.69 and earlier, 5.5.31 and earlier, and 5.6.11 and earlier allows remote attackers to cause a denial of service (crash) via a crafted...

  • EPSS 3.56%
  • Veröffentlicht 07.03.2013 15:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark 1.8.x before 1.8.6 uses incorrect integer data types, which allows remote attackers to cause a denial of service (infinite loop) via crafted in...

  • EPSS 3.87%
  • Veröffentlicht 07.03.2013 15:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The DTLS dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 does not validate the fragment offset before invoking the reassembly state machine, which allows remote attackers to cause a denial of service (application crash) via a large ...