cbcvebase.

Debian Linux vulnerabilities

9,953 known vulnerabilities affecting debian/debian_linux.

Total CVEs
9,953
CISA KEV
121
actively exploited
Public exploits
460
Exploited in wild
210
Severity breakdown
CRITICAL1133HIGH4150MEDIUM4312LOW358

Vulnerabilities

Page 20 of 498
CVE-2005-3120P3CRITICALCVSS 9.8PoCv3.0v3.12005-10-17
CVE-2005-3120 [CRITICAL] CWE-131 CVE-2005-3120: Stack-based buffer overflow in the HTrjis function in Lynx 2.8.6 and earlier allows remote NNTP serv Stack-based buffer overflow in the HTrjis function in Lynx 2.8.6 and earlier allows remote NNTP servers to execute arbitrary code via certain article headers containing Asian characters that cause Lynx to add extra escape (ESC) characters.
nvd
CVE-2017-17085P3HIGHCVSS 7.5PoCv8.0v9.02017-12-01
CVE-2017-17085 [HIGH] CWE-754 CVE-2017-17085: In Wireshark 2.4.0 to 2.4.2 and 2.2.0 to 2.2.10, the CIP Safety dissector could crash. This was addr In Wireshark 2.4.0 to 2.4.2 and 2.2.0 to 2.2.10, the CIP Safety dissector could crash. This was addressed in epan/dissectors/packet-cipsafety.c by validating the packet length.
nvd
CVE-2022-34169P2HIGHCVSS 7.5v10.0v11.02022-07-19
CVE-2022-34169 [HIGH] CWE-681 CVE-2022-34169: The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing mali The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This can be used to corrupt Java class files generated by the internal XSLTC compiler and execute arbitrary Java bytecode. Users are recommended to update to version 2.7.3 or later. Note: Java runtimes (such as OpenJDK) include r
nvd
CVE-2018-7187P2HIGHCVSS 8.8v7.0v9.02018-02-16
CVE-2018-7187 [HIGH] CWE-78 CVE-2018-7187: The "go get" implementation in Go 1.9.4, when the -insecure command-line option is used, does not va The "go get" implementation in Go 1.9.4, when the -insecure command-line option is used, does not validate the import path (get/vcs.go only checks for "://" anywhere in the string), which allows remote attackers to execute arbitrary OS commands via a crafted web site.
nvd
CVE-2021-44224P2HIGHCVSS 8.2v10.0v11.02021-12-20
CVE-2021-44224 [HIGH] CWE-476 CVE-2021-44224: A crafted URI sent to httpd configured as a forward proxy (ProxyRequests on) can cause a crash (NULL A crafted URI sent to httpd configured as a forward proxy (ProxyRequests on) can cause a crash (NULL pointer dereference) or, for configurations mixing forward and reverse proxy declarations, can allow for requests to be directed to a declared Unix Domain Socket endpoint (Server Side Request Forgery). This issue affects Apache HTTP Server 2.4.7 up to
nvd
CVE-2020-8165P2CRITICALCVSS 9.8v8.0v9.0+1 more2020-06-19
CVE-2020-8165 [CRITICAL] CWE-502 CVE-2020-8165: A deserialization of untrusted data vulnernerability exists in rails < 5.2.4.3, rails < 6.0.3.1 that A deserialization of untrusted data vulnernerability exists in rails < 5.2.4.3, rails < 6.0.3.1 that can allow an attacker to unmarshal user-provided objects in MemCacheStore and RedisCacheStore potentially resulting in an RCE.
nvd
CVE-2024-34069P3HIGHCVSS 7.5PoCv11.02024-05-06
CVE-2024-34069 [HIGH] CWE-352 CVE-2024-34069: Werkzeug is a comprehensive WSGI web application library. The debugger in affected versions of Werkz Werkzeug is a comprehensive WSGI web application library. The debugger in affected versions of Werkzeug can allow an attacker to execute code on a developer's machine under some circumstances. This requires the attacker to get the developer to interact with a domain and subdomain they control, and enter the debugger PIN, but if they are successful it
nvd
CVE-2017-5991P3HIGHCVSS 7.5PoCv8.0v9.02017-02-15
CVE-2017-5991 [HIGH] CWE-476 CVE-2017-5991: An issue was discovered in Artifex MuPDF before 1912de5f08e90af1d9d0a9791f58ba3afdb9d465. The pdf_ru An issue was discovered in Artifex MuPDF before 1912de5f08e90af1d9d0a9791f58ba3afdb9d465. The pdf_run_xobject function in pdf-op-run.c encounters a NULL pointer dereference during a Fitz fz_paint_pixmap_with_mask painting operation. Versions 1.11 and later are unaffected.
nvd
CVE-2012-0053P3MEDIUMCVSS 4.3PoCv5.0v6.0+1 more2012-01-28
CVE-2012-0053 [MEDIUM] CVE-2012-0053: protocol.c in the Apache HTTP Server 2.2.x through 2.2.21 does not properly restrict header informat protocol.c in the Apache HTTP Server 2.2.x through 2.2.21 does not properly restrict header information during construction of Bad Request (aka 400) error documents, which allows remote attackers to obtain the values of HTTPOnly cookies via vectors involving a (1) long or (2) malformed header in conjunction with crafted web script.
nvd
CVE-2018-16873P2HIGHCVSS 8.1v9.02018-12-14
CVE-2018-16873 [HIGH] CWE-20 CVE-2018-16873: In Go before 1.10.6 and 1.11.x before 1.11.3, the "go get" command is vulnerable to remote code exec In Go before 1.10.6 and 1.11.x before 1.11.3, the "go get" command is vulnerable to remote code execution when executed with the -u flag and the import path of a malicious Go package, or a package that imports it directly or indirectly. Specifically, it is only vulnerable in GOPATH mode, but not in module mode (the distinction is documented at https://
nvd
CVE-2000-0666P3CRITICALCVSS 10.0PoCv2.2v2.32000-07-16
CVE-2000-0666 [CRITICAL] CVE-2000-0666: rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untruste rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote attackers to gain root privileges.
nvd
CVE-2017-0359P3CRITICALCVSS 9.8PoCv9.02018-04-13
CVE-2017-0359 [CRITICAL] CVE-2017-0359: diffoscope before 77 writes to arbitrary locations on disk based on the contents of an untrusted arc diffoscope before 77 writes to arbitrary locations on disk based on the contents of an untrusted archive.
nvd
CVE-2018-1056P3HIGHCVSS 7.8Exploitedv7.0v8.0+1 more2018-07-27
CVE-2018-1056 [HIGH] CWE-122 CVE-2018-1056: An out-of-bounds heap buffer read flaw was found in the way advancecomp before 2.1-2018/02 handled p An out-of-bounds heap buffer read flaw was found in the way advancecomp before 2.1-2018/02 handled processing of ZIP files. An attacker could potentially use this flaw to crash the advzip utility by tricking it into processing crafted ZIP files.
nvd
CVE-2020-8866P3MEDIUMCVSS 6.5PoCv8.02020-03-23
CVE-2020-8866 [MEDIUM] CWE-434 CVE-2020-8866: This vulnerability allows remote attackers to create arbitrary files on affected installations of Ho This vulnerability allows remote attackers to create arbitrary files on affected installations of Horde Groupware Webmail Edition 5.2.22. Authentication is required to exploit this vulnerability. The specific flaw exists within add.php. The issue results from the lack of proper validation of user-supplied data, which can allow the upload of arbitrary
nvd
CVE-2019-17671P3MEDIUMCVSS 5.3PoCv8.0v9.0+1 more2019-10-17
CVE-2019-17671 [MEDIUM] CWE-200 CVE-2019-17671: In WordPress before 5.2.4, unauthenticated viewing of certain content is possible because the static In WordPress before 5.2.4, unauthenticated viewing of certain content is possible because the static query property is mishandled.
nvd
CVE-2019-14234P2CRITICALCVSS 9.8v9.0v10.02019-08-09
CVE-2019-14234 [CRITICAL] CWE-89 CVE-2019-14234: An issue was discovered in Django 1.11.x before 1.11.23, 2.1.x before 2.1.11, and 2.2.x before 2.2.4 An issue was discovered in Django 1.11.x before 1.11.23, 2.1.x before 2.1.11, and 2.2.x before 2.2.4. Due to an error in shallow key transformation, key and index lookups for django.contrib.postgres.fields.JSONField, and key lookups for django.contrib.postgres.fields.HStoreField, were subject to SQL injection. This could, for example, be exploited
nvd
CVE-2023-3420P2HIGHCVSS 8.8v11.0v12.02023-06-26
CVE-2023-3420 [HIGH] CWE-843 CVE-2023-3420: Type Confusion in V8 in Google Chrome prior to 114.0.5735.198 allowed a remote attacker to potential Type Confusion in V8 in Google Chrome prior to 114.0.5735.198 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
nvd
CVE-2022-2068P2HIGHCVSS 7.3v10.0v11.02022-06-21
CVE-2022-2068 [HIGH] CVE-2022-2068: In addition to the c_rehash shell command injection identified in CVE-2022-1292, further circumstanc In addition to the c_rehash shell command injection identified in CVE-2022-1292, further circumstances where the c_rehash script does not properly sanitise shell metacharacters to prevent command injection were found by code review. When the CVE-2022-1292 was fixed it was not discovered that there are other places in the script where the file names of certifica
nvd
CVE-2020-24916P2CRITICALCVSS 9.8v9.0v10.02020-09-09
CVE-2020-24916 [CRITICAL] CWE-78 CVE-2020-24916: CGI implementation in Yaws web server versions 1.81 to 2.0.7 is vulnerable to OS command injection. CGI implementation in Yaws web server versions 1.81 to 2.0.7 is vulnerable to OS command injection.
nvd
CVE-2017-13089P2HIGHCVSS 8.8v8.0v9.02017-10-27
CVE-2017-13089 [HIGH] CWE-121 CVE-2017-13089: The http.c:skip_short_body() function is called in some circumstances, such as when processing redir The http.c:skip_short_body() function is called in some circumstances, such as when processing redirects. When the response is sent chunked in wget before 1.19.2, the chunk parser uses strtol() to read each chunk's length, but doesn't check that the chunk length is a non-negative number. The code then tries to skip the chunk in pieces of 512 bytes by
nvd
Debian Linux vulnerabilities | cvebase