Debian

Debian 7 (wheezy)

306 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.09%
  • Veröffentlicht 04.07.2013 21:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The ip6_sk_dst_check function in net/ipv6/ip6_output.c in the Linux kernel before 3.10 allows local users to cause a denial of service (system crash) by using an AF_INET6 socket for a connection to an IPv4 interface.

Exploit
  • EPSS 0.08%
  • Veröffentlicht 04.07.2013 21:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The (1) key_notify_sa_flush and (2) key_notify_policy_flush functions in net/key/af_key.c in the Linux kernel before 3.10 do not initialize certain structure members, which allows local users to obtain sensitive information from kernel heap memory by...

Exploit
  • EPSS 0.08%
  • Veröffentlicht 04.07.2013 21:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The key_notify_policy_flush function in net/key/af_key.c in the Linux kernel before 3.9 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel heap memory by reading a broadcast message fr...

Exploit
  • EPSS 0.07%
  • Veröffentlicht 04.07.2013 21:55:00
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The mmc_ioctl_cdrom_read_data function in drivers/cdrom/cdrom.c in the Linux kernel through 3.10 allows local users to obtain sensitive information from kernel memory via a read operation on a malfunctioning CD-ROM drive.

  • EPSS 0.05%
  • Veröffentlicht 07.06.2013 14:03:20
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Format string vulnerability in the register_disk function in block/genhd.c in the Linux kernel through 3.9.4 allows local users to gain privileges by leveraging root access and writing format string specifiers to /sys/module/md_mod/parameters/new_arr...

  • EPSS 0.21%
  • Veröffentlicht 07.06.2013 14:03:20
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Format string vulnerability in the b43_request_firmware function in drivers/net/wireless/b43/main.c in the Broadcom B43 wireless driver in the Linux kernel through 3.9.4 allows local users to gain privileges by leveraging root access and including fo...

  • EPSS 0.06%
  • Veröffentlicht 07.06.2013 14:03:19
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The fill_event_metadata function in fs/notify/fanotify/fanotify_user.c in the Linux kernel through 3.9.4 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel memory via a read operation ...

Exploit
  • EPSS 0.12%
  • Veröffentlicht 07.06.2013 14:03:18
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Heap-based buffer overflow in the tg3_read_vpd function in drivers/net/ethernet/broadcom/tg3.c in the Linux kernel before 3.8.6 allows physically proximate attackers to cause a denial of service (system crash) or possibly execute arbitrary code via c...

Exploit
  • EPSS 0.03%
  • Veröffentlicht 07.06.2013 14:03:18
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The do_tkill function in kernel/signal.c in the Linux kernel before 3.8.9 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory via a crafted application that makes a (1) tkill or (2...

Warnung Exploit
  • EPSS 65.85%
  • Veröffentlicht 14.05.2013 20:55:01
  • Zuletzt bearbeitet 22.04.2026 14:38:13

The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data type, which allows local users to gain privileges via a crafted perf_event_open system call.