Debian

Debian Linux

9944 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 22.14%
  • Veröffentlicht 25.07.2012 10:42:35
  • Zuletzt bearbeitet 11.04.2025 00:51:21

ISC DHCP 4.1.2 through 4.2.4 and 4.1-ESV before 4.1-ESV-R6 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a malformed client identifier.

  • EPSS 6.48%
  • Veröffentlicht 25.07.2012 10:42:35
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple memory leaks in ISC DHCP 4.1.x and 4.2.x before 4.2.4-P1 and 4.1-ESV before 4.1-ESV-R6 allow remote attackers to cause a denial of service (memory consumption) by sending many requests.

  • EPSS 0.21%
  • Veröffentlicht 24.07.2012 19:55:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The PPP dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8.x before 1.8.1 allows remote attackers to cause a denial of service (invalid pointer dereference and application crash) via a crafted packet, as demonstrated by a usbmon ...

  • EPSS 1.94%
  • Veröffentlicht 22.07.2012 16:55:27
  • Zuletzt bearbeitet 11.04.2025 00:51:21

ModSecurity before 2.6.6, when used with PHP, does not properly handle single quotes not at the beginning of a request parameter value in the Content-Disposition field of a request with a multipart/form-data Content-Type header, which allows remote a...

  • EPSS 2.05%
  • Veröffentlicht 18.07.2012 23:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

PostgreSQL 8.4.x before 8.4.11, 9.0.x before 9.0.7, and 9.1.x before 9.1.3 truncates the common name to only 32 characters when verifying SSL certificates, which allows remote attackers to spoof connections when the host name is exactly 32 characters...

  • EPSS 0.33%
  • Veröffentlicht 12.07.2012 20:55:15
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The default configuration of the auth/saml plugin in Mahara before 1.4.2 sets the "Match username attribute to Remote username" option to false, which allows remote SAML IdP servers to spoof users of other SAML IdP servers by using the same internal ...

  • EPSS 3%
  • Veröffentlicht 05.07.2012 14:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The crypt_des (aka DES-based crypt) function in FreeBSD before 9.0-RELEASE-p2, as used in PHP, PostgreSQL, and other products, does not process the complete cleartext password if this password contains a 0x80 character, which makes it easier for cont...

  • EPSS 0.31%
  • Veröffentlicht 03.07.2012 19:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The XML parser (xmlparse.c) in expat before 2.1.0 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via an XML file wit...

  • EPSS 1.19%
  • Veröffentlicht 21.06.2012 15:55:11
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer overflow in the vclmi.dll module in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a cra...

Exploit
  • EPSS 0.9%
  • Veröffentlicht 17.06.2012 03:41:40
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Redland Raptor (aka libraptor) before 2.0.7, as used by OpenOffice 3.3 and 3.4 Beta, LibreOffice before 3.4.6 and 3.5.x before 3.5.1, and other products, allows user-assisted remote attackers to read arbitrary files via a crafted XML external entity ...