Debian

Debian Linux

9979 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 2.42%
  • Veröffentlicht 13.02.2016 02:59:07
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Code.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, does not consider recursive load calls during a size check, which allows remote attackers to cause a denial of service (heap-based...

  • EPSS 0.85%
  • Veröffentlicht 13.02.2016 02:59:06
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The directrun function in directmachine.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, does not validate a certain skip operation, which allows remote attackers to execute arbitrary ...

  • EPSS 2.21%
  • Veröffentlicht 13.02.2016 02:59:02
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Multiple memory leaks in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) before 1.13.4 and 1.14.x before 1.14.1 allow remote authenticated users to cause a denial of service (memory consumption) via a request specifying a NULL pr...

  • EPSS 1.61%
  • Veröffentlicht 13.02.2016 02:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The xdr_nullstring function in lib/kadm5/kadm_rpc_xdr.c in kadmind in MIT Kerberos 5 (aka krb5) before 1.13.4 and 1.14.x before 1.14.1 does not verify whether '\0' characters exist as expected, which allows remote authenticated users to obtain sensit...

  • EPSS 1.51%
  • Veröffentlicht 12.02.2016 15:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The htmlParseNameComplex function in HTMLparser.c in libxml2 allows attackers to cause a denial of service (out-of-bounds read) via a crafted XML document.

  • EPSS 1.07%
  • Veröffentlicht 12.02.2016 05:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Integer overflow in the asf_write_packet function in libavformat/asfenc.c in FFmpeg before 2.8.5 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted PTS (aka presentation timestamp) value in a ...

  • EPSS 54.65%
  • Veröffentlicht 08.02.2016 03:59:10
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The join_session_keyring function in security/keys/process_keys.c in the Linux kernel before 4.4.1 mishandles object references in a certain error case, which allows local users to gain privileges or cause a denial of service (integer overflow and us...

  • EPSS 0.12%
  • Veröffentlicht 08.02.2016 03:59:06
  • Zuletzt bearbeitet 06.05.2026 22:30:45

net/sctp/sm_sideeffect.c in the Linux kernel before 4.3 does not properly manage the relationship between a lock and a socket, which allows local users to cause a denial of service (deadlock) via a crafted sctp_accept call.

  • EPSS 0.09%
  • Veröffentlicht 08.02.2016 03:59:01
  • Zuletzt bearbeitet 06.05.2026 22:30:45

arch/x86/kvm/x86.c in the Linux kernel before 4.4 does not reset the PIT counter values during state restoration, which allows guest OS users to cause a denial of service (divide-by-zero error and host OS crash) via a zero value, related to the kvm_v...

  • EPSS 0.66%
  • Veröffentlicht 01.02.2016 21:59:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

tif_luv.c in libtiff allows attackers to cause a denial of service (out-of-bounds reads) via a crafted TIFF image.