Debian

Debian Linux

9979 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.09%
  • Veröffentlicht 06.05.2016 17:59:04
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Heap-based buffer overflow in the ExponentialFunction::ExponentialFunction function in Poppler before 0.40.0 allows remote attackers to cause a denial of service (memory corruption and crash) or possibly execute arbitrary code via an invalid blend mo...

  • EPSS 0.04%
  • Veröffentlicht 06.05.2016 17:59:01
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Cool Projects TarDiff allows local users to write to arbitrary files via a symlink attack on a pathname in a /tmp/tardiff-$$ temporary directory.

  • EPSS 3.12%
  • Veröffentlicht 06.05.2016 17:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Cool Projects TarDiff allows remote attackers to execute arbitrary commands via shell metacharacters in the name of a (1) tar file or (2) file within a tar file.

Warnung
  • EPSS 93.86%
  • Veröffentlicht 05.05.2016 18:59:03
  • Zuletzt bearbeitet 21.04.2026 19:14:46

The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to execute arbitrary code via shell metacharacters in a crafted image, aka "I...

  • EPSS 79.96%
  • Veröffentlicht 05.05.2016 01:59:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The AES-NI implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h does not consider memory allocation during a certain padding check, which allows remote attackers to obtain sensitive cleartext information via a padding-oracle attack against...

  • EPSS 42.47%
  • Veröffentlicht 05.05.2016 01:59:01
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of binary data.

  • EPSS 0.09%
  • Veröffentlicht 01.05.2016 01:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The do_setup_env function in session.c in sshd in OpenSSH through 7.2p2, when the UseLogin feature is enabled and PAM is configured to read .pam_environment files in user home directories, allows local users to gain privileges by triggering a crafted...

  • EPSS 1.78%
  • Veröffentlicht 30.04.2016 17:59:02
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 46.0 and Firefox ESR 45.x before 45.1 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary cod...

  • EPSS 0.17%
  • Veröffentlicht 27.04.2016 17:59:08
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The fork implementation in the Linux kernel before 4.5 on s390 platforms mishandles the case of four page-table levels, which allows local users to cause a denial of service (system crash) or possibly have unspecified other impact via a crafted appli...

  • EPSS 7.87%
  • Veröffentlicht 26.04.2016 14:59:04
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Buffer overflow in the mipsnet_receive function in hw/net/mipsnet.c in QEMU, when the guest NIC is configured to accept large packets, allows remote attackers to cause a denial of service (memory corruption and QEMU crash) or possibly execute arbitra...