cbcvebase.

Debian Linux vulnerabilities

9,953 known vulnerabilities affecting debian/debian_linux.

Total CVEs
9,953
CISA KEV
121
actively exploited
Public exploits
460
Exploited in wild
210
Severity breakdown
CRITICAL1133HIGH4150MEDIUM4312LOW358

Vulnerabilities

Page 31 of 498
CVE-2020-6549P2HIGHCVSS 8.8v10.02020-09-21
CVE-2020-6549 [HIGH] CWE-416 CVE-2020-6549: Use after free in media in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potenti Use after free in media in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
nvd
CVE-2019-5436P3HIGHCVSS 7.8v9.0v10.02019-05-28
CVE-2019-5436 [HIGH] CWE-122 CVE-2019-5436: A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libc A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4 through 7.64.1.
nvd
CVE-2015-0252P3MEDIUMCVSS 5.0PoCv7.12015-03-24
CVE-2015-0252 [MEDIUM] CWE-20 CVE-2015-0252: internal/XMLReader.cpp in Apache Xerces-C before 3.1.2 allows remote attackers to cause a denial of internal/XMLReader.cpp in Apache Xerces-C before 3.1.2 allows remote attackers to cause a denial of service (segmentation fault and crash) via crafted XML data.
nvd
CVE-2019-13917P2CRITICALCVSS 9.8v9.0v10.02019-07-25
CVE-2019-13917 [CRITICAL] CWE-19 CVE-2019-13917: Exim 4.85 through 4.92 (fixed in 4.92.1) allows remote code execution as root in some unusual config Exim 4.85 through 4.92 (fixed in 4.92.1) allows remote code execution as root in some unusual configurations that use the ${sort } expansion for items that can be controlled by an attacker (e.g., $local_part or $domain).
nvd
CVE-2021-3148P2CRITICALCVSS 9.8v9.0v10.0+1 more2021-02-27
CVE-2021-3148 [CRITICAL] CWE-77 CVE-2021-3148: An issue was discovered in SaltStack Salt before 3002.5. Sending crafted web requests to the Salt AP An issue was discovered in SaltStack Salt before 3002.5. Sending crafted web requests to the Salt API can result in salt.utils.thin.gen_thin() command injection because of different handling of single versus double quotes. This is related to salt/utils/thin.py.
nvd
CVE-2022-23614P2CRITICALCVSS 9.8v11.02022-02-04
CVE-2022-23614 [CRITICAL] CWE-74 CVE-2022-23614: Twig is an open source template language for PHP. When in a sandbox mode, the `arrow` parameter of t Twig is an open source template language for PHP. When in a sandbox mode, the `arrow` parameter of the `sort` filter must be a closure to avoid attackers being able to run arbitrary PHP functions. In affected versions this constraint was not properly enforced and could lead to code injection of arbitrary PHP code. Patched versions now disallow call
nvd
CVE-2021-29472P2HIGHCVSS 8.8v9.0v10.02021-04-27
CVE-2021-29472 [HIGH] CWE-88 CVE-2021-29472: Composer is a dependency manager for PHP. URLs for Mercurial repositories in the root composer.json Composer is a dependency manager for PHP. URLs for Mercurial repositories in the root composer.json and package source download URLs are not sanitized correctly. Specifically crafted URL values allow code to be executed in the HgDriver if hg/Mercurial is installed on the system. The impact to Composer users directly is limited as the composer.json file
nvd
CVE-2001-0233P3CRITICALCVSS 10.0PoCv2.22001-03-26
CVE-2001-0233 [CRITICAL] CVE-2001-0233: Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of servic Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long Description field.
nvd
CVE-2017-11521P3HIGHCVSS 7.5PoCv8.0v9.02017-07-22
CVE-2017-11521 [HIGH] CWE-400 CVE-2017-11521: The SdpContents::Session::Medium::parse function in resip/stack/SdpContents.cxx in reSIProcate 1.10. The SdpContents::Session::Medium::parse function in resip/stack/SdpContents.cxx in reSIProcate 1.10.2 allows remote attackers to cause a denial of service (memory consumption) by triggering many media connections.
nvd
CVE-2018-10906P3HIGHCVSS 7.8PoCv8.0v9.02018-07-24
CVE-2018-10906 [HIGH] CWE-285 CVE-2018-10906: In fuse before versions 2.9.8 and 3.x before 3.2.5, fusermount is vulnerable to a restriction bypass In fuse before versions 2.9.8 and 3.x before 3.2.5, fusermount is vulnerable to a restriction bypass when SELinux is active. This allows non-root users to mount a FUSE file system with the 'allow_other' mount option regardless of whether 'user_allow_other' is set in the fuse configuration. An attacker may use this flaw to mount a FUSE file system, acc
nvd
CVE-2018-13405P3HIGHCVSS 7.8PoCv8.0v9.02018-07-06
CVE-2018-13405 [HIGH] CWE-269 CVE-2018-13405: The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to c The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is th
nvd
CVE-2023-2650P3MEDIUMCVSS 6.5v10.0v11.02023-05-30
CVE-2023-2650 [MEDIUM] CWE-770 CVE-2023-2650: Issue summary: Processing some specially crafted ASN.1 object identifiers or data containing them ma Issue summary: Processing some specially crafted ASN.1 object identifiers or data containing them may be very slow. Impact summary: Applications that use OBJ_obj2txt() directly, or use any of the OpenSSL subsystems OCSP, PKCS7/SMIME, CMS, CMP/CRMF or TS with no message size limit may experience notable to very long delays when processing those messag
nvd
CVE-2019-3822P2CRITICALCVSS 9.8v9.02019-02-06
CVE-2019-3822 [CRITICAL] CWE-121 CVE-2019-3822: libcurl versions from 7.36.0 to before 7.64.0 are vulnerable to a stack-based buffer overflow. The f libcurl versions from 7.36.0 to before 7.64.0 are vulnerable to a stack-based buffer overflow. The function creating an outgoing NTLM type-3 header (`lib/vauth/ntlm.c:Curl_auth_create_ntlm_type3_message()`), generates the request HTTP header contents based on previously received data. The check that exists to prevent the local buffer from getting ov
nvd
CVE-2026-46333P3HIGHCVSS 7.1PoCv11.02026-05-15
CVE-2026-46333 [HIGH] CWE-269 CVE-2026-46333: In the Linux kernel, the following vulnerability has been resolved: ptrace: slightly saner 'get_dum In the Linux kernel, the following vulnerability has been resolved: ptrace: slightly saner 'get_dumpable()' logic The 'dumpability' of a task is fundamentally about the memory image of the task - the concept comes from whether it can core dump or not - and makes no sense when you don't have an associated mm. And almost all users do in fact use it on
nvd
CVE-2023-45648P3MEDIUMCVSS 5.3PoCv10.0v11.0+1 more2023-10-10
CVE-2023-45648 [MEDIUM] CWE-20 CVE-2023-45648: Improper Input Validation vulnerability in Apache Tomcat.Tomcat from 11.0.0-M1 through 11.0.0-M11, f Improper Input Validation vulnerability in Apache Tomcat.Tomcat from 11.0.0-M1 through 11.0.0-M11, from 10.1.0-M1 through 10.1.13, from 9.0.0-M1 through 9.0.81 and from 8.5.0 through 8.5.93 did not correctly parse HTTP trailer headers. A specially crafted, invalid trailer header could cause Tomcat to treat a single request as multiple requests leadin
nvd
CVE-2020-10595P2CRITICALCVSS 9.8v8.0v9.0+1 more2020-03-31
CVE-2020-10595 [CRITICAL] CWE-120 CVE-2020-10595: pam-krb5 before 4.9 has a buffer overflow that might cause remote code execution in situations invol pam-krb5 before 4.9 has a buffer overflow that might cause remote code execution in situations involving supplemental prompting by a Kerberos library. It may overflow a buffer provided by the underlying Kerberos library by a single '\0' byte if an attacker responds to a prompt with an answer of a carefully chosen length. The effect may range from
nvd
CVE-2021-25283P2CRITICALCVSS 9.8v9.0v10.0+1 more2021-02-27
CVE-2021-25283 [CRITICAL] CWE-94 CVE-2021-25283: An issue was discovered in through SaltStack Salt before 3002.5. The jinja renderer does not protect An issue was discovered in through SaltStack Salt before 3002.5. The jinja renderer does not protect against server side template injection attacks.
nvd
CVE-2020-28032P2CRITICALCVSS 9.8v9.0v10.02020-11-02
CVE-2020-28032 [CRITICAL] CWE-502 CVE-2020-28032: WordPress before 5.5.2 mishandles deserialization requests in wp-includes/Requests/Utility/FilteredI WordPress before 5.5.2 mishandles deserialization requests in wp-includes/Requests/Utility/FilteredIterator.php.
nvd
CVE-2017-13090P3HIGHCVSS 8.8v8.0v9.02017-10-27
CVE-2017-13090 [HIGH] CWE-122 CVE-2017-13090: The retr.c:fd_read_body() function is called when processing OK responses. When the response is sent The retr.c:fd_read_body() function is called when processing OK responses. When the response is sent chunked in wget before 1.19.2, the chunk parser uses strtol() to read each chunk's length, but doesn't check that the chunk length is a non-negative number. The code then tries to read the chunk in pieces of 8192 bytes by using the MIN() macro, but end
nvd
CVE-2017-14746P2CRITICALCVSS 9.8v8.0v9.02017-11-27
CVE-2017-14746 [CRITICAL] CWE-416 CVE-2017-14746: Use-after-free vulnerability in Samba 4.x before 4.7.3 allows remote attackers to execute arbitrary Use-after-free vulnerability in Samba 4.x before 4.7.3 allows remote attackers to execute arbitrary code via a crafted SMB1 request.
nvd
Debian Linux vulnerabilities | cvebase