Debian

Debian Linux

9979 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.37%
  • Veröffentlicht 14.08.2012 22:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The utf-16 decoder in Python 3.1 through 3.3 does not update the aligned_end variable after calling the unicode_decode_call_errorhandler function, which allows remote attackers to obtain sensitive information (process memory) or cause a denial of ser...

  • EPSS 3.23%
  • Veröffentlicht 13.08.2012 20:55:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The png_push_read_zTXt function in pngpread.c in libpng 1.0.x before 1.0.58, 1.2.x before 1.2.48, 1.4.x before 1.4.10, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (out-of-bounds read) via a large avail_in field value ...

  • EPSS 0.25%
  • Veröffentlicht 07.08.2012 19:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The Debian php_crypt_revamped.patch patch for PHP 5.3.x, as used in the php5 package before 5.3.3-7+squeeze4 in Debian GNU/Linux squeeze, the php5 package before 5.3.2-1ubuntu4.17 in Ubuntu 10.04 LTS, and the php5 package before 5.3.5-1ubuntu7.10 in ...

  • EPSS 5.02%
  • Veröffentlicht 06.08.2012 18:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Multiple heap-based buffer overflows in the XML manifest encryption tag parsing functionality in OpenOffice.org and LibreOffice before 3.5.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted Open Do...

Exploit
  • EPSS 1.42%
  • Veröffentlicht 06.08.2012 16:55:06
  • Zuletzt bearbeitet 29.04.2026 01:13:23

lib/puppet/ssl/certificate_authority.rb in Puppet before 2.6.17 and 2.7.x before 2.7.18, and Puppet Enterprise before 2.5.2, does not properly restrict the characters in the Common Name field of a Certificate Signing Request (CSR), which makes it eas...

  • EPSS 20.55%
  • Veröffentlicht 25.07.2012 10:42:35
  • Zuletzt bearbeitet 29.04.2026 01:13:23

ISC DHCP 4.1.2 through 4.2.4 and 4.1-ESV before 4.1-ESV-R6 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a malformed client identifier.

  • EPSS 4.46%
  • Veröffentlicht 25.07.2012 10:42:35
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Multiple memory leaks in ISC DHCP 4.1.x and 4.2.x before 4.2.4-P1 and 4.1-ESV before 4.1-ESV-R6 allow remote attackers to cause a denial of service (memory consumption) by sending many requests.

  • EPSS 0.21%
  • Veröffentlicht 24.07.2012 19:55:00
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The PPP dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8.x before 1.8.1 allows remote attackers to cause a denial of service (invalid pointer dereference and application crash) via a crafted packet, as demonstrated by a usbmon ...

  • EPSS 1.94%
  • Veröffentlicht 22.07.2012 16:55:27
  • Zuletzt bearbeitet 29.04.2026 01:13:23

ModSecurity before 2.6.6, when used with PHP, does not properly handle single quotes not at the beginning of a request parameter value in the Content-Disposition field of a request with a multipart/form-data Content-Type header, which allows remote a...

  • EPSS 1.87%
  • Veröffentlicht 18.07.2012 23:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

PostgreSQL 8.4.x before 8.4.11, 9.0.x before 9.0.7, and 9.1.x before 9.1.3 truncates the common name to only 32 characters when verifying SSL certificates, which allows remote attackers to spoof connections when the host name is exactly 32 characters...