Debian Linux vulnerabilities
9,954 known vulnerabilities affecting debian/debian_linux.
Total CVEs
9,954
CISA KEV
121
actively exploited
Public exploits
460
Exploited in wild
210
Severity breakdown
CRITICAL1133HIGH4167MEDIUM4296LOW358
Vulnerabilities
Page 227 of 498
CVE-2016-3705P3HIGHCVSS 7.5v8.02016-05-17
CVE-2016-3705 [HIGH] CWE-20 CVE-2016-3705: The (1) xmlParserEntityCheck and (2) xmlParseAttValueComplex functions in parser.c in libxml2 2.9.3
The (1) xmlParserEntityCheck and (2) xmlParseAttValueComplex functions in parser.c in libxml2 2.9.3 do not properly keep track of the recursion depth, which allows context-dependent attackers to cause a denial of service (stack consumption and application crash) via a crafted XML document containing a large number of nested entity references.
nvd
CVE-2017-17782P3HIGHCVSS 8.8v7.0v8.0+1 more2017-12-20
CVE-2017-17782 [HIGH] CWE-125 CVE-2017-17782: In GraphicsMagick 1.3.27a, there is a heap-based buffer over-read in ReadOneJNGImage in coders/png.c
In GraphicsMagick 1.3.27a, there is a heap-based buffer over-read in ReadOneJNGImage in coders/png.c, related to oFFs chunk allocation.
nvd
CVE-2014-9657P3HIGHCVSS 7.5v7.02015-02-08
CVE-2014-9657 [HIGH] CWE-125 CVE-2014-9657: The tt_face_load_hdmx function in truetype/ttpload.c in FreeType before 2.5.4 does not establish a m
The tt_face_load_hdmx function in truetype/ttpload.c in FreeType before 2.5.4 does not establish a minimum record size, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted TrueType font.
nvd
CVE-2014-9663P3HIGHCVSS 7.5v7.02015-02-08
CVE-2014-9663 [HIGH] CWE-119 CVE-2014-9663: The tt_cmap4_validate function in sfnt/ttcmap.c in FreeType before 2.5.4 validates a certain length
The tt_cmap4_validate function in sfnt/ttcmap.c in FreeType before 2.5.4 validates a certain length field before that field's value is completely calculated, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted cmap SFNT table.
nvd
CVE-2014-9660P3HIGHCVSS 7.5v7.02015-02-08
CVE-2014-9660 [HIGH] CWE-476 CVE-2014-9660: The _bdf_parse_glyphs function in bdf/bdflib.c in FreeType before 2.5.4 does not properly handle a m
The _bdf_parse_glyphs function in bdf/bdflib.c in FreeType before 2.5.4 does not properly handle a missing ENDCHAR record, which allows remote attackers to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via a crafted BDF font.
nvd
CVE-2017-16790P3MEDIUMCVSS 6.5v9.02018-08-06
CVE-2017-16790 [MEDIUM] CWE-20 CVE-2017-16790: An issue was discovered in Symfony before 2.7.38, 2.8.31, 3.2.14, 3.3.13, 3.4-BETA5, and 4.0-BETA5.
An issue was discovered in Symfony before 2.7.38, 2.8.31, 3.2.14, 3.3.13, 3.4-BETA5, and 4.0-BETA5. When a form is submitted by the user, the request handler classes of the Form component merge POST data and uploaded files data into one array. This big array forms the data that are then bound to the form. At this stage there is no difference anymore b
nvd
CVE-2015-8702P3HIGHCVSS 8.6v7.0v8.02016-04-12
CVE-2015-8702 [HIGH] CWE-20 CVE-2015-8702: The DNS::GetResult function in dns.cpp in InspIRCd before 2.0.19 allows remote DNS servers to cause
The DNS::GetResult function in dns.cpp in InspIRCd before 2.0.19 allows remote DNS servers to cause a denial of service (netsplit) via an invalid character in a PTR response, as demonstrated by a "\032" (whitespace) character in a hostname.
nvd
CVE-2021-20316P3MEDIUMCVSS 6.8v10.0v11.02022-08-23
CVE-2021-20316 [MEDIUM] CWE-362 CVE-2021-20316: A flaw was found in the way Samba handled file/directory metadata. This flaw allows an authenticated
A flaw was found in the way Samba handled file/directory metadata. This flaw allows an authenticated attacker with permissions to read or modify share metadata, to perform this operation outside of the share.
nvd
CVE-2018-14447P3HIGHCVSS 8.8v8.02018-07-20
CVE-2018-14447 [HIGH] CWE-125 CVE-2018-14447: trim_whitespace in lexer.l in libConfuse v3.2.1 has an out-of-bounds read.
trim_whitespace in lexer.l in libConfuse v3.2.1 has an out-of-bounds read.
nvd
CVE-2017-7957P3HIGHCVSS 7.5v8.0v9.02017-04-29
CVE-2017-7957 [HIGH] CWE-20 CVE-2017-7957: XStream through 1.4.9, when a certain denyTypes workaround is not used, mishandles attempts to creat
XStream through 1.4.9, when a certain denyTypes workaround is not used, mishandles attempts to create an instance of the primitive type 'void' during unmarshalling, leading to a remote application crash, as demonstrated by an xstream.fromXML("") call.
nvd
CVE-2017-5194P3HIGHCVSS 7.5v7.02017-03-03
CVE-2017-5194 [HIGH] CWE-416 CVE-2017-5194: Use-after-free vulnerability in Irssi before 0.8.21 allows remote attackers to cause a denial of ser
Use-after-free vulnerability in Irssi before 0.8.21 allows remote attackers to cause a denial of service (crash) via an invalid nick message.
nvd
CVE-2010-0307P4MEDIUMCVSS 4.7PoCv4.0v5.02010-02-17
CVE-2010-0307 [MEDIUM] CVE-2010-0307: The load_elf_binary function in fs/binfmt_elf.c in the Linux kernel before 2.6.32.8 on the x86_64 pl
The load_elf_binary function in fs/binfmt_elf.c in the Linux kernel before 2.6.32.8 on the x86_64 platform does not ensure that the ELF interpreter is available before a call to the SET_PERSONALITY macro, which allows local users to cause a denial of service (system crash) via a 32-bit application that attempts to execute a 64-bit application and then trigger
nvd
CVE-2018-14881P3HIGHCVSS 7.5v8.0v9.0+1 more2019-10-03
CVE-2018-14881 [HIGH] CWE-125 CVE-2018-14881: The BGP parser in tcpdump before 4.9.3 has a buffer over-read in print-bgp.c:bgp_capabilities_print(
The BGP parser in tcpdump before 4.9.3 has a buffer over-read in print-bgp.c:bgp_capabilities_print() (BGP_CAPCODE_RESTART).
nvd
CVE-2021-3772P3MEDIUMCVSS 6.5v9.0v10.02022-03-02
CVE-2021-3772 [MEDIUM] CWE-354 CVE-2021-3772: A flaw was found in the Linux SCTP stack. A blind attacker may be able to kill an existing SCTP asso
A flaw was found in the Linux SCTP stack. A blind attacker may be able to kill an existing SCTP association through invalid chunks if the attacker knows the IP-addresses and port numbers being used and the attacker can send packets with spoofed IP addresses.
nvd
CVE-2016-7044P3HIGHCVSS 7.5v8.02016-09-27
CVE-2016-7044 [HIGH] CWE-119 CVE-2016-7044: The unformat_24bit_color function in the format parsing code in Irssi before 0.8.20, when compiled w
The unformat_24bit_color function in the format parsing code in Irssi before 0.8.20, when compiled with true-color enabled, allows remote attackers to cause a denial of service (heap corruption and crash) via an incomplete 24bit color code.
nvd
CVE-2016-7045P3HIGHCVSS 7.5v8.02016-09-27
CVE-2016-7045 [HIGH] CWE-119 CVE-2016-7045: The format_send_to_gui function in the format parsing code in Irssi before 0.8.20 allows remote atta
The format_send_to_gui function in the format parsing code in Irssi before 0.8.20 allows remote attackers to cause a denial of service (heap corruption and crash) via vectors involving the length of a string.
nvd
CVE-2017-9287P3MEDIUMCVSS 6.5v8.02017-05-29
CVE-2017-9287 [MEDIUM] CWE-415 CVE-2017-9287: servers/slapd/back-mdb/search.c in OpenLDAP through 2.4.44 is prone to a double free vulnerability.
servers/slapd/back-mdb/search.c in OpenLDAP through 2.4.44 is prone to a double free vulnerability. A user with access to search the directory can crash slapd by issuing a search including the Paged Results control with a page size of 0.
nvd
CVE-2016-1624P3HIGHCVSS 8.8v8.02016-02-14
CVE-2016-1624 [HIGH] CWE-119 CVE-2016-1624: Integer underflow in the ProcessCommandsInternal function in dec/decode.c in Brotli, as used in Goog
Integer underflow in the ProcessCommandsInternal function in dec/decode.c in Brotli, as used in Google Chrome before 48.0.2564.109, allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via crafted data with brotli compression.
nvd
CVE-2019-9892P3MEDIUMCVSS 6.5v8.02019-05-22
CVE-2019-9892 [MEDIUM] CWE-91 CVE-2019-9892: An issue was discovered in Open Ticket Request System (OTRS) 5.x through 5.0.34, 6.x through 6.0.17,
An issue was discovered in Open Ticket Request System (OTRS) 5.x through 5.0.34, 6.x through 6.0.17, and 7.x through 7.0.6. An attacker who is logged into OTRS as an agent user with appropriate permissions may try to import carefully crafted Report Statistics XML that will result in reading of arbitrary files on the OTRS filesystem.
nvd
CVE-2014-9656P3HIGHCVSS 7.5v7.02015-02-08
CVE-2014-9656 [HIGH] CWE-119 CVE-2014-9656: The tt_sbit_decoder_load_image function in sfnt/ttsbit.c in FreeType before 2.5.4 does not properly
The tt_sbit_decoder_load_image function in sfnt/ttsbit.c in FreeType before 2.5.4 does not properly check for an integer overflow, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted OpenType font.
nvd