Debian Linux vulnerabilities
9,953 known vulnerabilities affecting debian/debian_linux.
Total CVEs
9,953
CISA KEV
121
actively exploited
Public exploits
460
Exploited in wild
210
Severity breakdown
CRITICAL1133HIGH4150MEDIUM4312LOW358
Vulnerabilities
Page 174 of 498
CVE-2021-3999P3HIGHCVSS 7.8v10.0v11.02022-08-24
CVE-2021-3999 [HIGH] CWE-193 CVE-2021-3999: A flaw was found in glibc. An off-by-one buffer overflow and underflow in getcwd() may lead to memor
A flaw was found in glibc. An off-by-one buffer overflow and underflow in getcwd() may lead to memory corruption when the size of the buffer is exactly 1. A local attacker who can control the input buffer and size passed to getcwd() in a setuid program could use this flaw to potentially execute arbitrary code and escalate their privileges on the system.
nvd
CVE-2016-1669P3HIGHCVSS 8.8v8.02016-05-14
CVE-2016-1669 [HIGH] CWE-119 CVE-2016-1669: The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as used in Google Chrome before 50.
The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as used in Google Chrome before 50.0.2661.102, does not properly determine when to expand certain memory allocations, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via crafted JavaScript code.
nvd
CVE-2018-16864P3HIGHCVSS 7.8v8.0v9.02019-01-11
CVE-2018-16864 [HIGH] CWE-770 CVE-2018-16864: An allocation of memory without limits, that could result in the stack clashing with another memory
An allocation of memory without limits, that could result in the stack clashing with another memory region, was discovered in systemd-journald when a program with long command line arguments calls syslog. A local attacker may use this flaw to crash systemd-journald or escalate his privileges. Versions through v240 are vulnerable.
nvd
CVE-2022-41881P3HIGHCVSS 7.5v10.0v11.02022-12-12
CVE-2022-41881 [HIGH] CWE-674 CVE-2022-41881: Netty project is an event-driven asynchronous network application framework. In versions prior to 4.
Netty project is an event-driven asynchronous network application framework. In versions prior to 4.1.86.Final, a StackOverflowError can be raised when parsing a malformed crafted message due to an infinite recursion. This issue is patched in version 4.1.86.Final. There is no workaround, except using a custom HaProxyMessageDecoder.
nvd
CVE-2018-1128P3HIGHCVSS 7.5v8.0v9.02018-07-10
CVE-2018-1128 [HIGH] CWE-294 CVE-2018-1128: It was found that cephx authentication protocol did not verify ceph clients correctly and was vulner
It was found that cephx authentication protocol did not verify ceph clients correctly and was vulnerable to replay attack. Any attacker having access to ceph cluster network who is able to sniff packets on network can use this vulnerability to authenticate with ceph service and perform actions allowed by ceph service. Ceph branches master, mimic, lumino
nvd
CVE-2022-26505P3HIGHCVSS 7.4v9.02022-03-06
CVE-2022-26505 [HIGH] CWE-290 CVE-2022-26505: A DNS rebinding issue in ReadyMedia (formerly MiniDLNA) before 1.3.1 allows a remote web server to e
A DNS rebinding issue in ReadyMedia (formerly MiniDLNA) before 1.3.1 allows a remote web server to exfiltrate media files.
nvd
CVE-2018-10875P3HIGHCVSS 7.8v9.0v8.02018-07-13
CVE-2018-10875 [HIGH] CWE-426 CVE-2018-10875: A flaw was found in ansible. ansible.cfg is read from the current working directory which can be alt
A flaw was found in ansible. ansible.cfg is read from the current working directory which can be altered to make it point to a plugin or a module path under the control of an attacker, thus allowing the attacker to execute arbitrary code.
nvd
CVE-2020-25670P3HIGHCVSS 7.8v9.02021-05-26
CVE-2020-25670 [HIGH] CWE-416 CVE-2020-25670: A vulnerability was found in Linux Kernel where refcount leak in llcp_sock_bind() causing use-after-
A vulnerability was found in Linux Kernel where refcount leak in llcp_sock_bind() causing use-after-free which might lead to privilege escalations.
nvd
CVE-2021-28091P3HIGHCVSS 7.5v9.0v10.02021-06-04
CVE-2021-28091 [HIGH] CWE-347 CVE-2021-28091: Lasso all versions prior to 2.7.0 has improper verification of a cryptographic signature.
Lasso all versions prior to 2.7.0 has improper verification of a cryptographic signature.
nvd
CVE-2023-39351P3HIGHCVSS 7.5v10.02023-08-31
CVE-2023-39351 [HIGH] CWE-476 CVE-2023-39351: FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache lic
FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions of FreeRDP are subject to a Null Pointer Dereference leading a crash in the RemoteFX (rfx) handling. Inside the `rfx_process_message_tileset` function, the program allocates tiles using `rfx_allocate_tiles` for the number of numT
nvd
CVE-2018-8822P3HIGHCVSS 7.8v7.0v8.0+1 more2018-03-20
CVE-2018-8822 [HIGH] CWE-119 CVE-2018-8822: Incorrect buffer length handling in the ncp_read_kernel function in fs/ncpfs/ncplib_kernel.c in the
Incorrect buffer length handling in the ncp_read_kernel function in fs/ncpfs/ncplib_kernel.c in the Linux kernel through 4.15.11, and in drivers/staging/ncpfs/ncplib_kernel.c in the Linux kernel 4.16-rc through 4.16-rc6, could be exploited by malicious NCPFS servers to crash the kernel or execute code.
nvd
CVE-2020-25671P3HIGHCVSS 7.8v9.02021-05-26
CVE-2020-25671 [HIGH] CWE-416 CVE-2020-25671: A vulnerability was found in Linux Kernel, where a refcount leak in llcp_sock_connect() causing use-
A vulnerability was found in Linux Kernel, where a refcount leak in llcp_sock_connect() causing use-after-free which might lead to privilege escalations.
nvd
CVE-2025-37778P3HIGHCVSS 7.8v11.02025-05-01
CVE-2025-37778 [HIGH] CWE-416 CVE-2025-37778: In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix dangling pointer in
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: Fix dangling pointer in krb_authenticate
krb_authenticate frees sess->user and does not set the pointer
to NULL. It calls ksmbd_krb5_authenticate to reinitialise
sess->user but that function may return without doing so. If
that happens then smb2_sess_setup, which calls krb_auth
nvd
CVE-2013-2016P3HIGHCVSS 7.8v8.0v9.0+1 more2019-12-30
CVE-2013-2016 [HIGH] CWE-269 CVE-2013-2016: A flaw was found in the way qemu v1.3.0 and later (virtio-rng) validates addresses when guest access
A flaw was found in the way qemu v1.3.0 and later (virtio-rng) validates addresses when guest accesses the config space of a virtio device. If the virtio device has zero/small sized config space, such as virtio-rng, a privileged guest user could use this flaw to access the matching host's qemu address space and thus increase their privileges on the host
nvd
CVE-2021-20298P3HIGHCVSS 7.5v10.02022-08-23
CVE-2021-20298 [HIGH] CWE-400 CVE-2021-20298: A flaw was found in OpenEXR's B44Compressor. This flaw allows an attacker who can submit a crafted f
A flaw was found in OpenEXR's B44Compressor. This flaw allows an attacker who can submit a crafted file to be processed by OpenEXR, to exhaust all memory accessible to the application. The highest threat from this vulnerability is to system availability.
nvd
CVE-2021-4213P3HIGHCVSS 7.5v10.0v11.02022-08-24
CVE-2021-4213 [HIGH] CWE-401 CVE-2021-4213: A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory
A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.
nvd
CVE-2021-33289P3HIGHCVSS 7.8v9.0v10.0+1 more2021-09-07
CVE-2021-33289 [HIGH] CWE-787 CVE-2021-33289: In NTFS-3G versions < 2021.8.22, when a specially crafted MFT section is supplied in an NTFS image a
In NTFS-3G versions < 2021.8.22, when a specially crafted MFT section is supplied in an NTFS image a heap buffer overflow can occur and allow for code execution.
nvd
CVE-2025-38052P3HIGHCVSS 7.8v11.02025-06-18
CVE-2025-38052 [HIGH] CWE-416 CVE-2025-38052: In the Linux kernel, the following vulnerability has been resolved: net/tipc: fix slab-use-after-fr
In the Linux kernel, the following vulnerability has been resolved:
net/tipc: fix slab-use-after-free Read in tipc_aead_encrypt_done
Syzbot reported a slab-use-after-free with the following call trace:
BUG: KASAN: slab-use-after-free in tipc_aead_encrypt_done+0x4bd/0x510 net/tipc/crypto.c:840
Read of size 8 at addr ffff88807a733000 by task kworker/1
nvd
CVE-2022-3705P3HIGHCVSS 7.5v10.02022-10-26
CVE-2022-3705 [HIGH] CWE-119 CVE-2022-3705: A vulnerability was found in vim and classified as problematic. Affected by this issue is the functi
A vulnerability was found in vim and classified as problematic. Affected by this issue is the function qf_update_buffer of the file quickfix.c of the component autocmd Handler. The manipulation leads to use after free. The attack may be launched remotely. Upgrading to version 9.0.0805 is able to address this issue. The name of the patch is d0fab10ed2a86
nvd
CVE-2020-36423P3HIGHCVSS 7.5v10.02021-07-19
CVE-2020-36423 [HIGH] CWE-319 CVE-2020-36423: An issue was discovered in Arm Mbed TLS before 2.23.0. A remote attacker can recover plaintext becau
An issue was discovered in Arm Mbed TLS before 2.23.0. A remote attacker can recover plaintext because a certain Lucky 13 countermeasure doesn't properly consider the case of a hardware accelerator.
nvd