Debian

Debian Linux

9140 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.05%
  • Published 26.11.2010 19:00:06
  • Last modified 11.04.2025 00:51:21

drivers/media/video/v4l2-compat-ioctl32.c in the Video4Linux (V4L) implementation in the Linux kernel before 2.6.36 on 64-bit platforms does not validate the destination of a memory copy operation, which allows local users to write to arbitrary kerne...

  • EPSS 4.32%
  • Published 22.11.2010 13:00:02
  • Last modified 11.04.2025 00:51:21

The sctp_packet_config function in net/sctp/output.c in the Linux kernel before 2.6.35.6 performs extraneous initializations of packet data structures, which allows remote attackers to cause a denial of service (panic) via a certain sequence of SCTP ...

Exploit
  • EPSS 0.57%
  • Published 17.11.2010 01:00:02
  • Last modified 11.04.2025 00:51:21

libxml2 before 2.7.8, as used in Google Chrome before 7.0.517.44, Apple Safari 5.0.2 and earlier, and other products, reads from invalid memory locations during processing of malformed XPath expressions, which allows context-dependent attackers to ca...

Exploit
  • EPSS 0.81%
  • Published 06.11.2010 00:00:02
  • Last modified 11.04.2025 00:51:21

Google Chrome before 7.0.517.44 does not properly perform a cast of an unspecified variable during processing of an SVG use element, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted SV...

  • EPSS 3.86%
  • Published 05.11.2010 18:00:05
  • Last modified 11.04.2025 00:51:21

The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) via unkn...

  • EPSS 27.69%
  • Published 05.11.2010 17:00:01
  • Last modified 11.04.2025 00:51:21

ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly execute arbi...

Exploit
  • EPSS 0.6%
  • Published 21.10.2010 19:00:04
  • Last modified 11.04.2025 00:51:21

Google Chrome before 7.0.517.41 does not properly handle animated GIF images, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted image.

Exploit
  • EPSS 1.83%
  • Published 04.10.2010 21:00:04
  • Last modified 11.04.2025 00:51:21

Integer signedness error in the pkt_find_dev_from_minor function in drivers/block/pktcdvd.c in the Linux kernel before 2.6.36-rc6 allows local users to obtain sensitive information from kernel memory or cause a denial of service (invalid pointer dere...

  • EPSS 0.17%
  • Published 04.10.2010 21:00:04
  • Last modified 11.04.2025 00:51:21

Multiple integer overflows in the snd_ctl_new function in sound/core/control.c in the Linux kernel before 2.6.36-rc5-next-20100929 allow local users to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a...

  • EPSS 0.1%
  • Published 30.09.2010 15:00:02
  • Last modified 11.04.2025 00:51:21

The cxgb_extension_ioctl function in drivers/net/cxgb3/cxgb3_main.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack ...