cbcvebase.

Debian Linux vulnerabilities

9,954 known vulnerabilities affecting debian/debian_linux.

Total CVEs
9,954
CISA KEV
121
actively exploited
Public exploits
460
Exploited in wild
210
Severity breakdown
CRITICAL1133HIGH4167MEDIUM4296LOW358

Vulnerabilities

Page 275 of 498
CVE-2023-34059P4HIGHCVSS 7.0v10.0v11.0+1 more2023-10-27
CVE-2023-34059 [HIGH] CWE-404 CVE-2023-34059: open-vm-tools contains a file descriptor hijack vulnerability in the vmware-user-suid-wrapper. A mal open-vm-tools contains a file descriptor hijack vulnerability in the vmware-user-suid-wrapper. A malicious actor with non-root privileges may be able to hijack the /dev/uinput file descriptor allowing them to simulate user inputs.
nvd
CVE-2023-6932P4HIGHCVSS 7.0v10.02023-12-19
CVE-2023-6932 [HIGH] CWE-416 CVE-2023-6932: A use-after-free vulnerability in the Linux kernel's ipv4: igmp component can be exploited to achiev A use-after-free vulnerability in the Linux kernel's ipv4: igmp component can be exploited to achieve local privilege escalation. A race condition can be exploited to cause a timer be mistakenly registered on a RCU read locked object which is freed by another thread. We recommend upgrading past commit e2b706c691905fe78468c361aaabc719d0a496f1.
nvd
CVE-2021-3524P4MEDIUMCVSS 6.5v9.02021-05-17
CVE-2021-3524 [MEDIUM] CVE-2021-3524: A flaw was found in the Red Hat Ceph Storage RadosGW (Ceph Object Gateway) in versions before 14.2.2 A flaw was found in the Red Hat Ceph Storage RadosGW (Ceph Object Gateway) in versions before 14.2.21. The vulnerability is related to the injection of HTTP headers via a CORS ExposeHeader tag. The newline character in the ExposeHeader tag in the CORS configuration file generates a header injection in the response when the CORS request is made. In addition, t
nvd
CVE-2021-4083P4HIGHCVSS 7.0v9.0v10.02022-01-18
CVE-2021-4083 [HIGH] CWE-416 CVE-2021-4083: A read-after-free memory flaw was found in the Linux kernel's garbage collection for Unix domain soc A read-after-free memory flaw was found in the Linux kernel's garbage collection for Unix domain socket file handlers in the way users call close() and fget() simultaneously and can potentially trigger a race condition. This flaw allows a local user to crash the system or escalate their privileges on the system. This flaw affects Linux kernel versions p
nvd
CVE-2019-10206P4MEDIUMCVSS 6.5v10.02019-11-22
CVE-2019-10206 [MEDIUM] CWE-522 CVE-2019-10206: ansible-playbook -k and ansible cli tools, all versions 2.8.x before 2.8.4, all 2.7.x before 2.7.13 ansible-playbook -k and ansible cli tools, all versions 2.8.x before 2.8.4, all 2.7.x before 2.7.13 and all 2.6.x before 2.6.19, prompt passwords by expanding them from templates as they could contain special characters. Passwords should be wrapped to prevent templates trigger and exposing them.
nvd
CVE-2023-4244P4HIGHCVSS 7.0v10.02023-09-06
CVE-2023-4244 [HIGH] CWE-416 CVE-2023-4244: A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. Due to a race condition between nf_tables netlink control plane transaction and nft_set element garbage collection, it is possible to underflow the reference counter causing a use-after-free vulnerability. We re
nvd
CVE-2018-14055P4MEDIUMCVSS 6.5v9.02018-07-15
CVE-2018-14055 [MEDIUM] CWE-20 CVE-2018-14055: ZNC before 1.7.1-rc1 does not properly validate untrusted lines coming from the network, allowing a ZNC before 1.7.1-rc1 does not properly validate untrusted lines coming from the network, allowing a non-admin user to escalate his privilege and inject rogue values into znc.conf.
nvd
CVE-2024-26974P4HIGHCVSS 7.0v10.02024-05-01
CVE-2024-26974 [HIGH] CWE-367 CVE-2024-26974: In the Linux kernel, the following vulnerability has been resolved: crypto: qat - resolve race cond In the Linux kernel, the following vulnerability has been resolved: crypto: qat - resolve race condition during AER recovery During the PCI AER system's error recovery process, the kernel driver may encounter a race condition with freeing the reset_data structure's memory. If the device restart will take more than 10 seconds the function scheduling t
nvd
CVE-2015-1855P4MEDIUMCVSS 5.9v7.0v8.0+1 more2019-11-29
CVE-2015-1855 [MEDIUM] CWE-20 CVE-2015-1855: verify_certificate_identity in the OpenSSL extension in Ruby before 2.0.0 patchlevel 645, 2.1.x befo verify_certificate_identity in the OpenSSL extension in Ruby before 2.0.0 patchlevel 645, 2.1.x before 2.1.6, and 2.2.x before 2.2.2 does not properly validate hostnames, which allows remote attackers to spoof servers via vectors related to (1) multiple wildcards, (1) wildcards in IDNA names, (3) case sensitivity, and (4) non-ASCII characters.
nvd
CVE-2020-14928P3MEDIUMCVSS 5.9v9.0v10.02020-07-17
CVE-2020-14928 [MEDIUM] CWE-74 CVE-2020-14928: evolution-data-server (eds) through 3.36.3 has a STARTTLS buffering issue that affects SMTP and POP3 evolution-data-server (eds) through 3.36.3 has a STARTTLS buffering issue that affects SMTP and POP3. When a server sends a "begin TLS" response, eds reads additional data and evaluates it in a TLS context, aka "response injection."
nvd
CVE-2021-31810P4MEDIUMCVSS 5.8v9.02021-07-13
CVE-2021-31810 [MEDIUM] CVE-2021-31810: An issue was discovered in Ruby through 2.6.7, 2.7.x through 2.7.3, and 3.x through 3.0.1. A malicio An issue was discovered in Ruby through 2.6.7, 2.7.x through 2.7.3, and 3.x through 3.0.1. A malicious FTP server can use the PASV response to trick Net::FTP into connecting back to a given IP address and port. This potentially makes curl extract information about services that are otherwise private and not disclosed (e.g., the attacker can conduct port sca
nvd
CVE-2022-3621P4MEDIUMCVSS 6.5v10.02022-10-20
CVE-2022-3621 [MEDIUM] CWE-404 CVE-2022-3621: A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the fu A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function nilfs_bmap_lookup_at_level of the file fs/nilfs2/inode.c of the component nilfs2. The manipulation leads to null pointer dereference. It is possible to launch the attack remotely. It is recommended to apply a patch to fix this issue. The identifi
nvd
CVE-2022-0577P4MEDIUMCVSS 6.5v9.02022-03-02
CVE-2022-0577 [MEDIUM] CWE-200 CVE-2022-0577: Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository scrapy/scrapy prior Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository scrapy/scrapy prior to 2.6.1.
nvd
CVE-2021-3975P4MEDIUMCVSS 6.5v10.0v11.02022-08-23
CVE-2021-3975 [MEDIUM] CWE-416 CVE-2021-3975: A use-after-free flaw was found in libvirt. The qemuMonitorUnregister() function in qemuProcessHandl A use-after-free flaw was found in libvirt. The qemuMonitorUnregister() function in qemuProcessHandleMonitorEOF is called using multiple threads without being adequately protected by a monitor lock. This flaw could be triggered by the virConnectGetAllDomainStats API when the guest is shutting down. An unprivileged client with a read-only connection co
nvd
CVE-2024-27028P4MEDIUMCVSS 6.5v10.02024-05-01
CVE-2024-27028 [MEDIUM] CWE-476 CVE-2024-27028: In the Linux kernel, the following vulnerability has been resolved: spi: spi-mt65xx: Fix NULL point In the Linux kernel, the following vulnerability has been resolved: spi: spi-mt65xx: Fix NULL pointer access in interrupt handler The TX buffer in spi_transfer can be a NULL pointer, so the interrupt handler may end up writing to the invalid memory and cause crashes. Add a check to trans->tx_buf before using it.
nvd
CVE-2018-0497P4MEDIUMCVSS 5.9v8.0v9.02018-07-28
CVE-2018-0497 [MEDIUM] CVE-2018-0497: ARM mbed TLS before 2.12.0, before 2.7.5, and before 2.1.14 allows remote attackers to achieve parti ARM mbed TLS before 2.12.0, before 2.7.5, and before 2.1.14 allows remote attackers to achieve partial plaintext recovery (for a CBC based ciphersuite) via a timing-based side-channel attack. This vulnerability exists because of an incorrect fix (with a wrong SHA-384 calculation) for CVE-2013-0169.
nvd
CVE-2004-0996P4LOWCVSS 2.1PoCv3.02005-01-10
CVE-2004-0996 [LOW] CVE-2004-0996: main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows loca main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack.
nvd
CVE-2018-3180P4MEDIUMCVSS 5.6v8.0v9.02018-10-17
CVE-2018-3180 [MEDIUM] CVE-2018-3180: Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: J Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JSSE). Supported versions that are affected are Java SE: 6u201, 7u191, 8u182 and 11; Java SE Embedded: 8u181; JRockit: R28.3.19. Difficult to exploit vulnerability allows unauthenticated attacker with network access via SSL/TLS to compromise Java SE, Java SE Emb
nvd
CVE-2020-8130P4MEDIUMCVSS 6.4v8.02020-02-24
CVE-2020-8130 [MEDIUM] CWE-78 CVE-2020-8130: There is an OS command injection vulnerability in Ruby Rake < 12.3.3 in Rake::FileList when supplyin There is an OS command injection vulnerability in Ruby Rake < 12.3.3 in Rake::FileList when supplying a filename that begins with the pipe character `|`.
nvd
CVE-2020-10955P4MEDIUMCVSS 6.5v10.02020-03-27
CVE-2020-10955 [MEDIUM] CWE-862 CVE-2020-10955: GitLab EE/CE 11.1 through 12.9 is vulnerable to parameter tampering on an upload feature that allows GitLab EE/CE 11.1 through 12.9 is vulnerable to parameter tampering on an upload feature that allows an unauthorized user to read content available under specific folders.
nvd
Debian Linux vulnerabilities | cvebase