Debian

Debian Linux

9946 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 26.16%
  • Veröffentlicht 01.06.2014 04:29:34
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The cdf_read_property_info function in cdf.c in the Fileinfo component in PHP before 5.4.29 and 5.5.x before 5.5.13 allows remote attackers to cause a denial of service (infinite loop or out-of-bounds memory access) via a vector that (1) has zero len...

  • EPSS 0.99%
  • Veröffentlicht 16.05.2014 15:55:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The django.util.http.is_safe_url function in Django 1.4 before 1.4.13, 1.5 before 1.5.8, 1.6 before 1.6.5, and 1.7 before 1.7b4 does not properly validate URLs, which allows remote attackers to conduct open redirect attacks via a malformed URL, as de...

  • EPSS 0.09%
  • Veröffentlicht 11.05.2014 21:55:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The try_to_unmap_cluster function in mm/rmap.c in the Linux kernel before 3.14.3 does not properly consider which pages must be locked, which allows local users to cause a denial of service (system crash) by triggering a memory-usage pattern that req...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 11.05.2014 21:55:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The (1) BPF_S_ANC_NLATTR and (2) BPF_S_ANC_NLATTR_NEST extension implementations in the sk_run_filter function in net/core/filter.c in the Linux kernel through 3.14.3 do not check whether a certain length value is sufficiently large, which allows loc...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 11.05.2014 21:55:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The BPF_S_ANC_NLATTR_NEST extension implementation in the sk_run_filter function in net/core/filter.c in the Linux kernel through 3.14.3 uses the reverse order in a certain subtraction, which allows local users to cause a denial of service (over-read...

  • EPSS 0.05%
  • Veröffentlicht 11.05.2014 21:55:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The raw_cmd_copyin function in drivers/block/floppy.c in the Linux kernel through 3.14.3 does not properly handle error conditions during processing of an FDRAWCMD ioctl call, which allows local users to trigger kfree operations and gain privileges b...

  • EPSS 0.03%
  • Veröffentlicht 11.05.2014 21:55:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The raw_cmd_copyout function in drivers/block/floppy.c in the Linux kernel through 3.14.3 does not properly restrict access to certain pointers during processing of an FDRAWCMD ioctl call, which allows local users to obtain sensitive information from...

Warnung Exploit
  • EPSS 53.11%
  • Veröffentlicht 07.05.2014 10:55:04
  • Zuletzt bearbeitet 22.10.2025 01:15:53

The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not properly manage tty driver access in the "LECHO & !OPOST" case, which allows local users to cause a denial of service (memory corruption and system crash) or ...

  • EPSS 30.89%
  • Veröffentlicht 06.05.2014 10:44:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The do_ssl3_write function in s3_pkt.c in OpenSSL 1.x through 1.0.1g, when SSL_MODE_RELEASE_BUFFERS is enabled, does not properly manage a buffer pointer during certain recursive calls, which allows remote attackers to cause a denial of service (NULL...

  • EPSS 0.87%
  • Veröffentlicht 30.04.2014 10:49:05
  • Zuletzt bearbeitet 25.11.2025 17:50:16

The docshell implementation in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to trigger the loading of a URL with a spoofed baseURI property, and conduct cross-si...