Debian

Debian Linux

9944 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.15%
  • Veröffentlicht 30.12.2010 19:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Stack-based buffer overflow in the econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to gain privileges by providing a large number of iovec structures.

  • EPSS 0.18%
  • Veröffentlicht 30.12.2010 19:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a sendmsg call that specifies a N...

  • EPSS 0.1%
  • Veröffentlicht 30.12.2010 19:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The ec_dev_ioctl function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2 does not require the CAP_NET_ADMIN capability, which allows local users to bypass intended access restrictions and configure econet addresses via an SIOCSIFADDR i...

  • EPSS 0.15%
  • Veröffentlicht 29.12.2010 18:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple integer signedness errors in the TIPC implementation in the Linux kernel before 2.6.36.2 allow local users to gain privileges via a crafted sendmsg call that triggers a heap-based buffer overflow, related to the tipc_msg_build function in ne...

  • EPSS 0.1%
  • Veröffentlicht 29.12.2010 18:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Heap-based buffer overflow in the bcm_connect function in net/can/bcm.c (aka the Broadcast Manager) in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.36.2 on 64-bit platforms might allow local users to cause a denial ...

Exploit
  • EPSS 4.27%
  • Veröffentlicht 22.12.2010 01:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The CSSParser::parseFontFaceSrc function in WebCore/css/CSSParser.cpp in WebKit, as used in Google Chrome before 8.0.552.224, Chrome OS before 8.0.552.343, webkitgtk before 1.2.6, and other products does not properly parse Cascading Style Sheets (CSS...

  • EPSS 1.77%
  • Veröffentlicht 22.12.2010 01:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 do not properly perform cursor handling, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to "stale po...

Warnung Medienbericht Exploit
  • EPSS 61.46%
  • Veröffentlicht 14.12.2010 16:00:04
  • Zuletzt bearbeitet 22.10.2025 01:15:39

Heap-based buffer overflow in the string_vformat function in string.c in Exim before 4.70 allows remote attackers to execute arbitrary code via an SMTP session that includes two MAIL commands in conjunction with a large message containing crafted hea...

Warnung Medienbericht
  • EPSS 4.02%
  • Veröffentlicht 14.12.2010 16:00:04
  • Zuletzt bearbeitet 22.10.2025 01:15:39

Exim 4.72 and earlier allows local users to gain privileges by leveraging the ability of the exim user account to specify an alternate configuration file with a directive that contains arbitrary commands, as demonstrated by the spool_directory direct...

  • EPSS 0.13%
  • Veröffentlicht 10.12.2010 19:00:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

net/ipv4/inet_diag.c in the Linux kernel before 2.6.37-rc2 does not properly audit INET_DIAG bytecode, which allows local users to cause a denial of service (kernel infinite loop) via crafted INET_DIAG_REQ_BYTECODE instructions in a netlink message t...