Debian

Debian Linux

9979 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 52.51%
  • Veröffentlicht 10.10.2012 17:55:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Heap-based buffer overflow in the nsWaveReader::DecodeAudioData function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to...

  • EPSS 52.51%
  • Veröffentlicht 10.10.2012 17:55:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Heap-based buffer overflow in the Convolve3x3 function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary...

  • EPSS 1.28%
  • Veröffentlicht 10.10.2012 17:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allow remote attackers to cause a denial...

  • EPSS 0.84%
  • Veröffentlicht 10.10.2012 17:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 do not properly restrict calls to DOMWindowUtils (aka nsDOMWindowUtils) methods, which allows remote a...

  • EPSS 6.07%
  • Veröffentlicht 10.10.2012 17:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Use-after-free vulnerability in the IME State Manager implementation in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to exe...

  • EPSS 0.96%
  • Veröffentlicht 03.10.2012 21:55:00
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The xml_parse function in the libxml2 support in the core server component in PostgreSQL 8.3 before 8.3.20, 8.4 before 8.4.13, 9.0 before 9.0.9, and 9.1 before 9.1.5 allows remote authenticated users to determine the existence of arbitrary files or U...

  • EPSS 0.22%
  • Veröffentlicht 18.09.2012 18:55:04
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Stack-based buffer overflow in the milliwatt_generate function in the Miliwatt application in Asterisk 1.4.x before 1.4.44, 1.6.x before 1.6.2.23, 1.8.x before 1.8.10.1, and 10.x before 10.2.1, when the o option is used and the internal_timing option...

  • EPSS 8.99%
  • Veröffentlicht 15.09.2012 18:55:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The TLS protocol 1.2 and earlier, as used in Mozilla Firefox, Google Chrome, Qt, and other products, can encrypt compressed data without properly obfuscating the length of the unencrypted data, which allows man-in-the-middle attackers to obtain plain...

  • EPSS 15.52%
  • Veröffentlicht 14.09.2012 10:33:21
  • Zuletzt bearbeitet 29.04.2026 01:13:23

ISC DHCP 4.1.x before 4.1-ESV-R7 and 4.2.x before 4.2.4-P2 allows remote attackers to cause a denial of service (daemon crash) in opportunistic circumstances by establishing an IPv6 lease in an environment where the lease expiration time is later red...

Exploit
  • EPSS 2.19%
  • Veröffentlicht 07.09.2012 22:55:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The sapi_header_op function in main/SAPI.c in PHP 5.4.0RC2 through 5.4.0 does not properly determine a pointer during checks for %0D sequences (aka carriage return characters), which allows remote attackers to bypass an HTTP response-splitting protec...