Debian

Debian Linux

9944 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.26%
  • Veröffentlicht 25.05.2013 03:18:16
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The dissect_ccp_bsdcomp_opt function in epan/dissectors/packet-ppp.c in the PPP CCP dissector in Wireshark 1.8.x before 1.8.7 does not terminate a bit-field list, which allows remote attackers to cause a denial of service (application crash) via a ma...

Exploit
  • EPSS 5.04%
  • Veröffentlicht 25.05.2013 03:18:16
  • Zuletzt bearbeitet 11.04.2025 00:51:21

epan/dissectors/packet-dcp-etsi.c in the DCP ETSI dissector in Wireshark 1.8.x before 1.8.7 uses incorrect integer data types, which allows remote attackers to cause a denial of service (integer overflow, and heap memory corruption or NULL pointer de...

Exploit
  • EPSS 3.45%
  • Veröffentlicht 25.05.2013 03:18:16
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The dissect_dsmcc_un_download function in epan/dissectors/packet-mpeg-dsmcc.c in the MPEG DSM-CC dissector in Wireshark 1.8.x before 1.8.7 uses an incorrect format string, which allows remote attackers to cause a denial of service (application crash)...

  • EPSS 1.52%
  • Veröffentlicht 25.05.2013 03:18:16
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple integer overflows in Wireshark 1.8.x before 1.8.7 allow remote attackers to cause a denial of service (loop or application crash) via a malformed packet, related to a crash of the Websocket dissector, an infinite loop in the MySQL dissector,...

Exploit
  • EPSS 3.44%
  • Veröffentlicht 25.05.2013 03:18:16
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple integer signedness errors in the tvb_unmasked function in epan/dissectors/packet-websocket.c in the Websocket dissector in Wireshark 1.8.x before 1.8.7 allow remote attackers to cause a denial of service (application crash) via a malformed p...

Exploit
  • EPSS 3.4%
  • Veröffentlicht 25.05.2013 03:18:15
  • Zuletzt bearbeitet 11.04.2025 00:51:21

epan/dissectors/packet-gtpv2.c in the GTPv2 dissector in Wireshark 1.8.x before 1.8.7 calls incorrect functions in certain contexts related to ciphers, which allows remote attackers to cause a denial of service (application crash) via a malformed pac...

  • EPSS 1.54%
  • Veröffentlicht 25.05.2013 03:18:15
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The fragment_add_seq_common function in epan/reassemble.c in the ASN.1 BER dissector in Wireshark before r48943 has an incorrect pointer dereference during a comparison, which allows remote attackers to cause a denial of service (application crash) v...

Warnung Exploit
  • EPSS 4.74%
  • Veröffentlicht 16.05.2013 11:45:30
  • Zuletzt bearbeitet 22.10.2025 01:15:48

Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 do not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoomEvent::mNewScale funct...

  • EPSS 4.85%
  • Veröffentlicht 25.04.2013 23:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

ModSecurity before 2.7.3 allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a denial of service (CPU and memory consumption) via an XML external entity declaration in conjunction with an entity reference...

  • EPSS 2.8%
  • Veröffentlicht 03.04.2013 11:56:21
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer signedness error in the pixman_fill_sse2 function in pixman-sse2.c in Pixman, as distributed with Cairo and used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, Se...