Debian

Debian Linux

9979 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.05%
  • Veröffentlicht 08.08.2008 19:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The shmem_delete_inode function in mm/shmem.c in the tmpfs implementation in the Linux kernel before 2.6.26.1 allows local users to cause a denial of service (system crash) via a certain sequence of file create, remove, and overwrite operations, as d...

Exploit
  • EPSS 0.05%
  • Veröffentlicht 08.08.2008 19:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Off-by-one error in the iov_iter_advance function in mm/filemap.c in the Linux kernel before 2.6.27-rc2 allows local users to cause a denial of service (system crash) via a certain sequence of file I/O operations with readv and writev, as demonstrate...

  • EPSS 0.06%
  • Veröffentlicht 08.08.2008 18:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The snd_seq_oss_synth_make_info function in sound/core/seq/oss/seq_oss_synth.c in the sound subsystem in the Linux kernel before 2.6.27-rc2 does not verify that the device number is within the range defined by max_synthdev before returning certain da...

Exploit
  • EPSS 1.65%
  • Veröffentlicht 01.08.2008 14:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple buffer overflows in Python 2.5.2 and earlier on 32bit platforms allow context-dependent attackers to cause a denial of service (crash) or have unspecified other impact via a long string that leads to incorrect memory allocation during Unicod...

  • EPSS 0.4%
  • Veröffentlicht 25.07.2008 16:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Cross-site request forgery (CSRF) vulnerability in Moodle 1.6.x before 1.6.7 and 1.7.x before 1.7.5 allows remote attackers to modify profile settings and gain privileges as other users via a link or IMG tag to the user edit profile page.

  • EPSS 0.03%
  • Veröffentlicht 09.07.2008 18:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The do_change_type function in fs/namespace.c in the Linux kernel before 2.6.22 does not verify that the caller has the CAP_SYS_ADMIN capability, which allows local users to gain privileges or cause a denial of service by modifying the properties of ...

  • EPSS 0.1%
  • Veröffentlicht 09.07.2008 00:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The Linux kernel before 2.6.25.10 does not properly perform tty operations, which allows local users to cause a denial of service (system crash) or possibly gain privileges via vectors involving NULL pointer dereference of function pointers in (1) ha...

Exploit
  • EPSS 4.13%
  • Veröffentlicht 07.07.2008 23:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Heap-based buffer overflow in pcre_compile.c in the Perl-Compatible Regular Expression (PCRE) library 7.7 allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via a regular expression that begins ...

  • EPSS 0.15%
  • Veröffentlicht 02.07.2008 16:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Integer overflow in the sctp_getsockopt_local_addrs_old function in net/sctp/socket.c in the Stream Control Transmission Protocol (sctp) functionality in the Linux kernel before 2.6.25.9 allows local users to cause a denial of service (resource consu...

  • EPSS 2.77%
  • Veröffentlicht 24.06.2008 19:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple integer overflows in the rb_str_buf_append function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230, 1.8.7 before 1.8.7-p22, and 1.9.0 before 1.9.0-2 allow context-dependent attackers to execute arbitrary code or ...