Debian

Debian Linux

9947 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 4.71%
  • Veröffentlicht 11.04.2016 21:59:15
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The htmlParseComment function in HTMLparser.c in libxml2 allows attackers to obtain sensitive information, cause a denial of service (out-of-bounds heap memory access and application crash), or possibly have unspecified other impact via an unclosed H...

Exploit
  • EPSS 25.3%
  • Veröffentlicht 11.04.2016 15:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Heap-based buffer overflow in the encode_msg function in encode_msg.c in the SEAS module in Kamailio (formerly OpenSER and SER) before 4.3.5 allows remote attackers to cause a denial of service (memory corruption and process crash) or possibly execut...

  • EPSS 0.92%
  • Veröffentlicht 11.04.2016 15:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The oarsh script in OAR before 2.5.7 allows remote authenticated users of a cluster to obtain sensitive information and possibly gain privileges via vectors related to OpenSSH options.

  • EPSS 0.51%
  • Veröffentlicht 11.04.2016 15:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The decode_search function in dhcp.c in dhcpcd 3.x does not properly free allocated memory, which allows remote DHCP servers to cause a denial of service via a crafted response.

  • EPSS 0.56%
  • Veröffentlicht 11.04.2016 15:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The decode_search function in dhcp.c in dhcpcd 3.x allows remote DHCP servers to cause a denial of service (out-of-bounds read) via a crafted response.

  • EPSS 0.56%
  • Veröffentlicht 11.04.2016 15:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The decode_search function in dhcp.c in dhcpcd 3.x allows remote DHCP servers to cause a denial of service (out-of-bounds write) via a crafted response.

  • EPSS 19.47%
  • Veröffentlicht 08.04.2016 15:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Perl might allow context-dependent attackers to bypass the taint protection mechanism in a child process via duplicate environment variables in envp.

  • EPSS 1.46%
  • Veröffentlicht 08.04.2016 14:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

SPIP 2.x before 2.1.19, 3.0.x before 3.0.22, and 3.1.x before 3.1.1 allows remote attackers to execute arbitrary PHP code by adding content, related to the filtrer_entites function.

Exploit
  • EPSS 23.06%
  • Veröffentlicht 07.04.2016 23:59:09
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer overflow in proto.c in libotr before 4.1.1 on 64-bit platforms allows remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via a series of large OTR messages, which triggers a heap-...

  • EPSS 87.43%
  • Veröffentlicht 07.04.2016 23:59:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Action Pack in Ruby on Rails before 3.2.22.2, 4.x before 4.1.14.2, and 4.2.x before 4.2.5.2 allows remote attackers to execute arbitrary Ruby code by leveraging an application's unrestricted use of the render method.