Debian

Debian Linux

9979 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 19.45%
  • Veröffentlicht 22.02.2016 15:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The cpio_safer_name_suffix function in util.c in cpio 2.11 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted cpio file.

  • EPSS 3.21%
  • Veröffentlicht 21.02.2016 18:59:01
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Google Chrome before 48.0.2564.116 allows remote attackers to bypass the Blink Same Origin Policy and a sandbox protection mechanism via unspecified vectors.

  • EPSS 0.91%
  • Veröffentlicht 21.02.2016 05:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

pi.c in OpenJPEG, as used in PDFium in Google Chrome before 48.0.2564.109, does not validate a certain precision value, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via a crafted JPEG 2000 ...

  • EPSS 0.3%
  • Veröffentlicht 19.02.2016 16:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Xen 4.6.x and earlier allows local guest administrators to cause a denial of service (host reboot) via vectors related to multiple mappings of MMIO pages with different cachability settings.

  • EPSS 93.95%
  • Veröffentlicht 18.02.2016 21:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C Library (aka glibc or libc6) before 2.23 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrar...

  • EPSS 10.87%
  • Veröffentlicht 17.02.2016 15:59:02
  • Zuletzt bearbeitet 06.05.2026 22:30:45

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow and crash) via a large Unicode character range in a ...

  • EPSS 0.51%
  • Veröffentlicht 17.02.2016 15:59:01
  • Zuletzt bearbeitet 06.05.2026 22:30:45

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) for PL/Java, which allows attackers to gain privilege...

  • EPSS 2.33%
  • Veröffentlicht 16.02.2016 02:59:07
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Active Model in Ruby on Rails 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 supports the use of instance-level writers for class accessors, which allows remote attackers to bypass intended validation steps via crafted para...

Warnung Exploit
  • EPSS 91.05%
  • Veröffentlicht 16.02.2016 02:59:06
  • Zuletzt bearbeitet 22.04.2026 14:36:55

Directory traversal vulnerability in Action View in Ruby on Rails before 3.2.22.1, 4.0.x and 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 allows remote attackers to read arbitrary files by leveraging an application's unre...

  • EPSS 20.44%
  • Veröffentlicht 15.02.2016 19:59:02
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 does not properly limit CNAME resolution, which allows remote attackers to cause a denial of service (worker process resource consumption) via vectors related to arbitrary name resolution.