Debian

Debian Linux

9947 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 4.45%
  • Veröffentlicht 20.05.2015 10:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome before 43.0.2357.65 allows remote attackers to execute arbitrary code via a crafted document.

  • EPSS 0.44%
  • Veröffentlicht 14.05.2015 14:59:11
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Quassel before 0.12.2 does not properly re-initialize the database session when the PostgreSQL database is restarted, which allows remote attackers to conduct SQL injection attacks via a \ (backslash) in a message. NOTE: this vulnerability exists be...

  • EPSS 0.39%
  • Veröffentlicht 14.05.2015 14:59:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The DER parser in Suricata before 2.0.8 allows remote attackers to cause a denial of service (crash) via vectors related to SSL/TLS certificates.

  • EPSS 7.61%
  • Veröffentlicht 14.05.2015 10:59:00
  • Zuletzt bearbeitet 17.03.2026 15:52:33

GStreamer before 1.4.5, as used in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 on Linux, allows remote attackers to cause a denial of service (buffer over-read and application crash) or possibly execute arbi...

  • EPSS 4.98%
  • Veröffentlicht 12.05.2015 19:59:21
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The _clone function in XML::LibXML before 2.0119 does not properly set the expand_entities option, which allows remote attackers to conduct XML external entity (XXE) attacks via crafted XML data to the (1) new or (2) load_xml function.

  • EPSS 0.46%
  • Veröffentlicht 08.05.2015 14:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple cross-site scripting (XSS) vulnerabilities in WebODF before 0.5.5, as used in ownCloud, allow remote attackers to inject arbitrary web script or HTML via a (1) style or (2) font name or (3) javascript or (4) data URI.

  • EPSS 0.21%
  • Veröffentlicht 08.05.2015 14:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple cross-site scripting (XSS) vulnerabilities in the contacts application in ownCloud Server Community Edition before 5.0.19, 6.x before 6.0.7, and 7.x before 7.0.5 allow remote authenticated users to inject arbitrary web script or HTML via a c...

  • EPSS 9.76%
  • Veröffentlicht 01.05.2015 15:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.

  • EPSS 1.77%
  • Veröffentlicht 01.05.2015 10:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Use-after-free vulnerability in the MutationObserver::disconnect function in core/dom/MutationObserver.cpp in the DOM implementation in Blink, as used in Google Chrome before 42.0.2311.135, allows remote attackers to cause a denial of service or poss...

  • EPSS 1.08%
  • Veröffentlicht 01.05.2015 10:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple unspecified vulnerabilities in Google Chrome before 42.0.2311.135 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.