Debian

Debian Linux

10003 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.05%
  • Veröffentlicht 27.10.2005 10:02:00
  • Zuletzt bearbeitet 16.06.2026 22:16:43

docutils in Zope 2.6, 2.7 before 2.7.8, and 2.8 before 2.8.2 allows remote attackers to include arbitrary files via include directives in RestructuredText functionality.

Exploit
  • EPSS 3.88%
  • Veröffentlicht 24.10.2005 10:02:00
  • Zuletzt bearbeitet 16.06.2026 22:16:40

Eval injection vulnerability in bvh_import.py in Blender 2.36 allows attackers to execute arbitrary Python code via a hierarchy element in a .bvh file, which is supplied to an eval function call.

  • EPSS 0.39%
  • Veröffentlicht 21.10.2005 01:02:00
  • Zuletzt bearbeitet 16.06.2026 22:16:37

Race condition in ip_vs_conn_flush in Linux 2.6 before 2.6.13 and 2.4 before 2.4.32-pre2, when running on SMP systems, allows local users to cause a denial of service (null dereference) by causing a connection timer to expire while the connection tab...

  • EPSS 23.26%
  • Veröffentlicht 17.10.2005 20:06:00
  • Zuletzt bearbeitet 16.06.2026 22:16:17

Stack-based buffer overflow in the HTrjis function in Lynx 2.8.6 and earlier allows remote NNTP servers to execute arbitrary code via certain article headers containing Asian characters that cause Lynx to add extra escape (ESC) characters.

  • EPSS 0.5%
  • Veröffentlicht 12.10.2005 13:04:00
  • Zuletzt bearbeitet 16.06.2026 22:16:25

The audit system in Linux kernel 2.6.6, and other versions before 2.6.13.4, when CONFIG_AUDITSYSCALL is enabled, uses an incorrect function to free names_cache memory, which prevents the memory from being tracked by AUDITSYSCALL code and leads to a m...

  • EPSS 0.43%
  • Veröffentlicht 05.10.2005 19:02:00
  • Zuletzt bearbeitet 16.06.2026 22:15:58

cfengine 1.6.5 and 2.1.16 allows local users to overwrite arbitrary files via a symlink attack on temporary files used by vicf.in, a different vulnerability than CVE-2005-3137.

  • EPSS 0.29%
  • Veröffentlicht 30.09.2005 10:05:00
  • Zuletzt bearbeitet 16.06.2026 22:16:15

Race condition in Linux 2.6, when threads are sharing memory mapping via CLONE_VM (such as linuxthreads and vfork), might allow local users to cause a denial of service (deadlock) by triggering a core dump while waiting for a thread that has just per...

Exploit
  • EPSS 2.58%
  • Veröffentlicht 28.09.2005 21:03:00
  • Zuletzt bearbeitet 16.06.2026 22:15:12

Cross-site scripting (XSS) vulnerability in view_all_set.php in Mantis 0.19.0a1 through 1.0.0a3 allows remote attackers to inject arbitrary web script or HTML via the dir parameter, as identified by bug#0005959, and a different vulnerability than CVE...

  • EPSS 0.45%
  • Veröffentlicht 26.09.2005 19:03:00
  • Zuletzt bearbeitet 16.06.2026 22:16:10

Linux kernel 2.6.8 to 2.6.14-rc2 allows local users to cause a denial of service (kernel OOPS) via a userspace process that issues a USB Request Block (URB) to a USB device and terminates before the URB is finished, which leads to a stale pointer ref...

  • EPSS 30.58%
  • Veröffentlicht 06.09.2005 23:03:00
  • Zuletzt bearbeitet 16.06.2026 22:15:29

ssl_engine_kernel.c in mod_ssl before 2.8.24, when using "SSLVerifyClient optional" in the global virtual host configuration, does not properly enforce "SSLVerifyClient require" in a per-location context, which allows remote attackers to bypass inten...