Debian Linux vulnerabilities
9,954 known vulnerabilities affecting debian/debian_linux.
Total CVEs
9,954
CISA KEV
121
actively exploited
Public exploits
460
Exploited in wild
210
Severity breakdown
CRITICAL1133HIGH4167MEDIUM4296LOW358
Vulnerabilities
Page 342 of 498
CVE-2020-11082P4MEDIUMCVSS 6.1v9.0v10.02020-05-28
CVE-2020-11082 [MEDIUM] CWE-79 CVE-2020-11082: In Kaminari before 1.2.1, there is a vulnerability that would allow an attacker to inject arbitrary
In Kaminari before 1.2.1, there is a vulnerability that would allow an attacker to inject arbitrary code into pages with pagination links. This has been fixed in 1.2.1.
nvd
CVE-2017-1002201P4MEDIUMCVSS 6.1v8.0v9.02019-10-15
CVE-2017-1002201 [MEDIUM] CWE-79 CVE-2017-1002201: In haml versions prior to version 5.0.0.beta.2, when using user input to perform tasks on the server
In haml versions prior to version 5.0.0.beta.2, when using user input to perform tasks on the server, characters like " ' must be escaped properly. In this case, the ' character was missed. An attacker can manipulate the input to introduce additional attributes, potentially executing code.
nvd
CVE-2016-2367P4MEDIUMCVSS 5.9v8.02017-01-06
CVE-2016-2367 [MEDIUM] CWE-125 CVE-2016-2367: An information leak exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT da
An information leak exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent via the server could potentially result in an out-of-bounds read. A malicious user, server, or man-in-the-middle can send an invalid size for an avatar which will trigger an out-of-bounds read vulnerability. This could result in a denial of serv
nvd
CVE-2017-5667P4MEDIUMCVSS 6.5v8.02017-03-16
CVE-2017-5667 [MEDIUM] CWE-125 CVE-2017-5667: The sdhci_sdma_transfer_multi_blocks function in hw/sd/sdhci.c in QEMU (aka Quick Emulator) allows l
The sdhci_sdma_transfer_multi_blocks function in hw/sd/sdhci.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds heap access and crash) or execute arbitrary code on the QEMU host via vectors involving the data transfer length.
nvd
CVE-2018-10880P4MEDIUMCVSS 5.5v8.02018-07-25
CVE-2018-10880 [MEDIUM] CWE-787 CVE-2018-10880: Linux kernel is vulnerable to a stack-out-of-bounds write in the ext4 filesystem code when mounting
Linux kernel is vulnerable to a stack-out-of-bounds write in the ext4 filesystem code when mounting and writing to a crafted ext4 image in ext4_update_inline_data(). An attacker could use this to cause a system crash and a denial of service.
nvd
CVE-2020-3702P4MEDIUMCVSS 6.5v10.0v9.02020-09-08
CVE-2020-3702 [MEDIUM] CWE-319 CVE-2020-3702: u'Specifically timed and handcrafted traffic can cause internal errors in a WLAN device that lead to
u'Specifically timed and handcrafted traffic can cause internal errors in a WLAN device that lead to improper layer 2 Wi-Fi encryption with a consequent possibility of information disclosure over the air for a discrete set of traffic' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, S
nvd
CVE-2020-25626P4MEDIUMCVSS 6.1v11.02020-09-30
CVE-2020-25626 [MEDIUM] CWE-20 CVE-2020-25626: A flaw was found in Django REST Framework versions before 3.12.0 and before 3.11.2. When using the b
A flaw was found in Django REST Framework versions before 3.12.0 and before 3.11.2. When using the browseable API viewer, Django REST Framework fails to properly escape certain strings that can come from user input. This allows a user who can control those strings to inject malicious tags, leading to a cross-site-scripting (XSS) vulnerability.
nvd
CVE-2017-2839P4MEDIUMCVSS 5.9v8.0v9.02018-04-24
CVE-2017-2839 [MEDIUM] CVE-2017-2839: An exploitable denial of service vulnerability exists within the handling of challenge packets in Fr
An exploitable denial of service vulnerability exists within the handling of challenge packets in FreeRDP 2.0.0-beta1+android11. A specially crafted challenge packet can cause the program termination leading to a denial of service condition. An attacker can compromise the server or use man in the middle to trigger this vulnerability.
nvd
CVE-2016-9373P4MEDIUMCVSS 5.9v8.02016-11-17
CVE-2016-9373 [MEDIUM] CWE-416 CVE-2016-9373: In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the DCERPC dissector could crash with a use-after-fr
In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the DCERPC dissector could crash with a use-after-free, triggered by network traffic or a capture file. This was addressed in epan/dissectors/packet-dcerpc-nt.c and epan/dissectors/packet-dcerpc-spoolss.c by using the wmem file scope for private strings.
nvd
CVE-2014-4975P4MEDIUMCVSS 5.0v7.0v8.02014-11-15
CVE-2014-4975 [MEDIUM] CWE-119 CVE-2014-4975: Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2,
Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, allows context-dependent attackers to cause a denial of service (segmentation fault) via vectors that trigger a stack-based buffer overflow.
nvd
CVE-2023-31130P4MEDIUMCVSS 6.4v10.0v11.02023-05-25
CVE-2023-31130 [MEDIUM] CWE-124 CVE-2023-31130: c-ares is an asynchronous resolver library. ares_inet_net_pton() is vulnerable to a buffer underflow
c-ares is an asynchronous resolver library. ares_inet_net_pton() is vulnerable to a buffer underflow for certain ipv6 addresses, in particular "0::00:00:00/2" was found to cause an issue. C-ares only uses this function internally for configuration purposes which would require an administrator to configure such an address via ares_set_sortlist(). How
nvd
CVE-2015-2191P4MEDIUMCVSS 5.0v7.0v8.02015-03-08
CVE-2015-2191 [MEDIUM] CWE-189 CVE-2015-2191: Integer overflow in the dissect_tnef function in epan/dissectors/packet-tnef.c in the TNEF dissector
Integer overflow in the dissect_tnef function in epan/dissectors/packet-tnef.c in the TNEF dissector in Wireshark 1.10.x before 1.10.13 and 1.12.x before 1.12.4 allows remote attackers to cause a denial of service (infinite loop) via a crafted length field in a packet.
nvd
CVE-2020-10941P4MEDIUMCVSS 5.9v10.02020-03-24
CVE-2020-10941 [MEDIUM] CVE-2020-10941: Arm Mbed TLS before 2.16.5 allows attackers to obtain sensitive information (an RSA private key) by
Arm Mbed TLS before 2.16.5 allows attackers to obtain sensitive information (an RSA private key) by measuring cache usage during an import.
nvd
CVE-2022-26362P4MEDIUMCVSS 6.4v11.02022-06-09
CVE-2022-26362 [MEDIUM] CWE-362 CVE-2022-26362: x86 pv: Race condition in typeref acquisition Xen maintains a type reference count for pages, in add
x86 pv: Race condition in typeref acquisition Xen maintains a type reference count for pages, in addition to a regular reference count. This scheme is used to maintain invariants required for Xen's safety, e.g. PV guests may not have direct writeable access to pagetables; updates need auditing by Xen. Unfortunately, the logic for acquiring a type re
nvd
CVE-2020-10690P4MEDIUMCVSS 6.4v8.02020-05-08
CVE-2020-10690 [MEDIUM] CWE-416 CVE-2020-10690: There is a use-after-free in kernel versions before 5.5 due to a race condition between the release
There is a use-after-free in kernel versions before 5.5 due to a race condition between the release of ptp_clock and cdev while resource deallocation. When a (high privileged) process allocates a ptp device file (like /dev/ptpX) and voluntarily goes to sleep. During this time if the underlying device is removed, it can cause an exploitable condition
nvd
CVE-2018-11386P4MEDIUMCVSS 5.9v9.02018-06-13
CVE-2018-11386 [MEDIUM] CWE-613 CVE-2018-11386: An issue was discovered in the HttpFoundation component in Symfony 2.7.x before 2.7.48, 2.8.x before
An issue was discovered in the HttpFoundation component in Symfony 2.7.x before 2.7.48, 2.8.x before 2.8.41, 3.3.x before 3.3.17, 3.4.x before 3.4.11, and 4.0.x before 4.0.11. The PDOSessionHandler class allows storing sessions on a PDO connection. Under some configurations and with a well-crafted payload, it was possible to do a denial of service o
nvd
CVE-2016-9375P4MEDIUMCVSS 5.9v8.02016-11-17
CVE-2016-9375 [MEDIUM] CWE-20 CVE-2016-9375: In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the DTN dissector could go into an infinite loop, tr
In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the DTN dissector could go into an infinite loop, triggered by network traffic or a capture file. This was addressed in epan/dissectors/packet-dtn.c by checking whether SDNV evaluation was successful.
nvd
CVE-2016-9376P4MEDIUMCVSS 5.9v8.02016-11-17
CVE-2016-9376 [MEDIUM] CWE-399 CVE-2016-9376: In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the OpenFlow dissector could crash with memory exhau
In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the OpenFlow dissector could crash with memory exhaustion, triggered by network traffic or a capture file. This was addressed in epan/dissectors/packet-openflow_v5.c by ensuring that certain length values were sufficiently large.
nvd
CVE-2017-2837P4MEDIUMCVSS 5.9v8.0v9.02018-04-24
CVE-2017-2837 [MEDIUM] CWE-190 CVE-2017-2837: An exploitable denial of service vulnerability exists within the handling of security data in FreeRD
An exploitable denial of service vulnerability exists within the handling of security data in FreeRDP 2.0.0-beta1+android11. A specially crafted challenge packet can cause the program termination leading to a denial of service condition. An attacker can compromise the server or use man in the middle to trigger this vulnerability.
nvd
CVE-2017-2838P4MEDIUMCVSS 5.9v8.0v9.02018-04-24
CVE-2017-2838 [MEDIUM] CWE-190 CVE-2017-2838: An exploitable denial of service vulnerability exists within the handling of challenge packets in Fr
An exploitable denial of service vulnerability exists within the handling of challenge packets in FreeRDP 2.0.0-beta1+android11. A specially crafted challenge packet can cause the program termination leading to a denial of service condition. An attacker can compromise the server or use man in the middle to trigger this vulnerability.
nvd