Debian Linux vulnerabilities
9,954 known vulnerabilities affecting debian/debian_linux.
Total CVEs
9,954
CISA KEV
121
actively exploited
Public exploits
460
Exploited in wild
210
Severity breakdown
CRITICAL1133HIGH4167MEDIUM4296LOW358
Vulnerabilities
Page 281 of 498
CVE-2018-10845P4MEDIUMCVSS 5.9v8.02018-08-22
CVE-2018-10845 [MEDIUM] CWE-385 CVE-2018-10845: It was found that the GnuTLS implementation of HMAC-SHA-384 was vulnerable to a Lucky thirteen style
It was found that the GnuTLS implementation of HMAC-SHA-384 was vulnerable to a Lucky thirteen style attack. Remote attackers could use this flaw to conduct distinguishing attacks and plain text recovery attacks via statistical analysis of timing data using crafted packets.
nvd
CVE-2020-11099P4MEDIUMCVSS 6.5v10.02020-06-22
CVE-2020-11099 [MEDIUM] CWE-125 CVE-2020-11099: In FreeRDP before version 2.1.2, there is an out of bounds read in license_read_new_or_upgrade_licen
In FreeRDP before version 2.1.2, there is an out of bounds read in license_read_new_or_upgrade_license_packet. A manipulated license packet can lead to out of bound reads to an internal buffer. This is fixed in version 2.1.2.
nvd
CVE-2020-11039P4MEDIUMCVSS 6.8v10.02020-05-29
CVE-2020-11039 [MEDIUM] CWE-190 CVE-2020-11039: In FreeRDP less than or equal to 2.0.0, when using a manipulated server with USB redirection enabled
In FreeRDP less than or equal to 2.0.0, when using a manipulated server with USB redirection enabled (nearly) arbitrary memory can be read and written due to integer overflows in length checks. This has been patched in 2.1.0.
nvd
CVE-2019-12746P4MEDIUMCVSS 6.5v8.02019-08-21
CVE-2019-12746 [MEDIUM] CWE-200 CVE-2019-12746: An issue was discovered in Open Ticket Request System (OTRS) Community Edition 5.0.x through 5.0.36
An issue was discovered in Open Ticket Request System (OTRS) Community Edition 5.0.x through 5.0.36 and 6.0.x through 6.0.19. A user logged into OTRS as an agent might unknowingly disclose their session ID by sharing the link of an embedded ticket article with third parties. This identifier can be then be potentially abused in order to impersonate th
nvd
CVE-2021-3864P4HIGHCVSS 7.0v10.0v11.02022-08-26
CVE-2021-3864 [HIGH] CWE-284 CVE-2021-3864: A flaw was found in the way the dumpable flag setting was handled when certain SUID binaries execute
A flaw was found in the way the dumpable flag setting was handled when certain SUID binaries executed its descendants. The prerequisite is a SUID binary that sets real UID equal to effective UID, and real GID equal to effective GID. The descendant will then have a dumpable value set to 1. As a result, if the descendant process crashes and core_pattern i
nvd
CVE-2023-3268P4HIGHCVSS 7.1v10.0v11.0+1 more2023-06-16
CVE-2023-3268 [HIGH] CWE-125 CVE-2023-3268: An out of bounds (OOB) memory access flaw was found in the Linux kernel in relay_file_read_start_pos
An out of bounds (OOB) memory access flaw was found in the Linux kernel in relay_file_read_start_pos in kernel/relay.c in the relayfs. This flaw could allow a local attacker to crash the system or leak kernel internal information.
nvd
CVE-2019-11840P4MEDIUMCVSS 5.9v8.0v9.0+1 more2019-05-09
CVE-2019-11840 [MEDIUM] CWE-330 CVE-2019-11840: An issue was discovered in the supplementary Go cryptography library, golang.org/x/crypto, before v0
An issue was discovered in the supplementary Go cryptography library, golang.org/x/crypto, before v0.0.0-20190320223903-b7391e95e576. A flaw was found in the amd64 implementation of the golang.org/x/crypto/salsa20 and golang.org/x/crypto/salsa20/salsa packages. If more than 256 GiB of keystream is generated, or if the counter otherwise grows greater
nvd
CVE-2021-44733P4HIGHCVSS 7.0v9.0v10.0+1 more2021-12-22
CVE-2021-44733 [HIGH] CWE-362 CVE-2021-44733: A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.
A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11. This occurs because of a race condition in tee_shm_get_from_id during an attempt to free a shared memory object.
nvd
CVE-2022-23181P4HIGHCVSS 7.0v10.0v11.02022-01-27
CVE-2022-23181 [HIGH] CVE-2022-23181: The fix for bug CVE-2020-9484 introduced a time of check, time of use vulnerability into Apache Tomc
The fix for bug CVE-2020-9484 introduced a time of check, time of use vulnerability into Apache Tomcat 10.1.0-M1 to 10.1.0-M8, 10.0.0-M5 to 10.0.14, 9.0.35 to 9.0.56 and 8.5.55 to 8.5.73 that allowed a local attacker to perform actions with the privileges of the user that the Tomcat process is using. This issue is only exploitable when Tomcat is configured to
nvd
CVE-2023-3141P4HIGHCVSS 7.1v10.02023-06-09
CVE-2023-3141 [HIGH] CWE-416 CVE-2023-3141: A use-after-free flaw was found in r592_remove in drivers/memstick/host/r592.c in media access in th
A use-after-free flaw was found in r592_remove in drivers/memstick/host/r592.c in media access in the Linux Kernel. This flaw allows a local attacker to crash the system at device disconnect, possibly leading to a kernel information leak.
nvd
CVE-2021-21210P4MEDIUMCVSS 6.5v10.02021-04-26
CVE-2021-21210 [MEDIUM] CVE-2021-21210: Inappropriate implementation in Network in Google Chrome prior to 90.0.4430.72 allowed a remote atta
Inappropriate implementation in Network in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to potentially access local UDP ports via a crafted HTML page.
nvd
CVE-2018-1129P4MEDIUMCVSS 6.5v8.0v9.02018-07-10
CVE-2018-1129 [MEDIUM] CWE-284 CVE-2018-1129: A flaw was found in the way signature calculation was handled by cephx authentication protocol. An a
A flaw was found in the way signature calculation was handled by cephx authentication protocol. An attacker having access to ceph cluster network who is able to alter the message payload was able to bypass signature checks done by cephx protocol. Ceph branches master, mimic, luminous and jewel are believed to be vulnerable.
nvd
CVE-2021-21182P4MEDIUMCVSS 6.5v10.02021-03-09
CVE-2021-21182 [MEDIUM] CWE-863 CVE-2021-21182: Insufficient policy enforcement in navigations in Google Chrome prior to 89.0.4389.72 allowed a remo
Insufficient policy enforcement in navigations in Google Chrome prior to 89.0.4389.72 allowed a remote attacker who had compromised the renderer process to bypass navigation restrictions via a crafted HTML page.
nvd
CVE-2020-14405P4MEDIUMCVSS 6.5v8.0v9.02020-06-17
CVE-2020-14405 [MEDIUM] CWE-770 CVE-2020-14405: An issue was discovered in LibVNCServer before 0.9.13. libvncclient/rfbproto.c does not limit TextCh
An issue was discovered in LibVNCServer before 0.9.13. libvncclient/rfbproto.c does not limit TextChat size.
nvd
CVE-2021-3506P4HIGHCVSS 7.1v9.02021-04-19
CVE-2021-3506 [HIGH] CWE-125 CVE-2021-3506: An out-of-bounds (OOB) memory access flaw was found in fs/f2fs/node.c in the f2fs module in the Linu
An out-of-bounds (OOB) memory access flaw was found in fs/f2fs/node.c in the f2fs module in the Linux kernel in versions before 5.12.0-rc4. A bounds check failure allows a local attacker to gain access to out-of-bounds memory leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to system avail
nvd
CVE-2016-2150P4HIGHCVSS 7.1v8.02016-06-09
CVE-2016-2150 [HIGH] CVE-2016-2150: SPICE allows local guest OS users to read from or write to arbitrary host memory locations via craft
SPICE allows local guest OS users to read from or write to arbitrary host memory locations via crafted primary surface parameters, a similar issue to CVE-2015-5261.
nvd
CVE-2018-3838P4MEDIUMCVSS 6.5v8.0v9.02018-04-10
CVE-2018-3838 [MEDIUM] CWE-125 CVE-2018-3838: An exploitable information vulnerability exists in the XCF image rendering functionality of Simple D
An exploitable information vulnerability exists in the XCF image rendering functionality of Simple DirectMedia Layer SDL2_image-2.0.2. A specially crafted XCF image can cause an out-of-bounds read on the heap, resulting in information disclosure. An attacker can display a specially crafted image to trigger this vulnerability.
nvd
CVE-2020-4033P4MEDIUMCVSS 6.5v10.02020-06-22
CVE-2020-4033 [MEDIUM] CWE-125 CVE-2020-4033: In FreeRDP before version 2.1.2, there is an out of bounds read in RLEDECOMPRESS. All FreeRDP based
In FreeRDP before version 2.1.2, there is an out of bounds read in RLEDECOMPRESS. All FreeRDP based clients with sessions with color depth < 32 are affected. This is fixed in version 2.1.2.
nvd
CVE-2021-21284P4MEDIUMCVSS 6.8v10.02021-02-02
CVE-2021-21284 [MEDIUM] CWE-22 CVE-2021-21284: In Docker before versions 9.03.15, 20.10.3 there is a vulnerability involving the --userns-remap opt
In Docker before versions 9.03.15, 20.10.3 there is a vulnerability involving the --userns-remap option in which access to remapped root allows privilege escalation to real root. When using "--userns-remap", if the root user in the remapped namespace has access to the host filesystem they can modify files under "/var/lib/docker/" that cause writing f
nvd
CVE-2023-51780P4HIGHCVSS 7.0v10.02024-01-11
CVE-2023-51780 [HIGH] CWE-416 CVE-2023-51780: An issue was discovered in the Linux kernel before 6.6.8. do_vcc_ioctl in net/atm/ioctl.c has a use-
An issue was discovered in the Linux kernel before 6.6.8. do_vcc_ioctl in net/atm/ioctl.c has a use-after-free because of a vcc_recvmsg race condition.
nvd