cbcvebase.

Debian Linux vulnerabilities

9,953 known vulnerabilities affecting debian/debian_linux.

Total CVEs
9,953
CISA KEV
121
actively exploited
Public exploits
460
Exploited in wild
210
Severity breakdown
CRITICAL1133HIGH4150MEDIUM4312LOW358

Vulnerabilities

Page 42 of 498
CVE-2019-10197P3CRITICALCVSS 9.1v10.02019-09-03
CVE-2019-10197 [CRITICAL] CWE-22 CVE-2019-10197: A flaw was found in samba versions 4.9.x up to 4.9.13, samba 4.10.x up to 4.10.8 and samba 4.11.x up A flaw was found in samba versions 4.9.x up to 4.9.13, samba 4.10.x up to 4.10.8 and samba 4.11.x up to 4.11.0rc3, when certain parameters were set in the samba configuration file. An unauthenticated attacker could use this flaw to escape the shared directory and access the contents of directories outside the share.
nvd
CVE-2018-8788P3CRITICALCVSS 9.8v8.02018-11-29
CVE-2018-8788 [CRITICAL] CWE-787 CVE-2018-8788: FreeRDP prior to version 2.0.0-rc4 contains an Out-Of-Bounds Write of up to 4 bytes in function nsc_ FreeRDP prior to version 2.0.0-rc4 contains an Out-Of-Bounds Write of up to 4 bytes in function nsc_rle_decode() that results in a memory corruption and possibly even a remote code execution.
nvd
CVE-2014-0456P3CRITICALCVSS 10.0v6.0v7.0+1 more2014-04-16
CVE-2014-0456 [CRITICAL] CVE-2014-0456: Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows rem Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
nvd
CVE-2014-2421P3CRITICALCVSS 10.0v6.0v7.0+1 more2014-04-16
CVE-2014-2421 [CRITICAL] CVE-2014-2421: Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and Java SE Em Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.
nvd
CVE-2024-25189P3CRITICALCVSS 9.8v10.02024-02-08
CVE-2024-25189 [CRITICAL] CWE-203 CVE-2024-25189: libjwt 1.15.3 uses strcmp (which is not constant time) to verify authentication, which makes it easi libjwt 1.15.3 uses strcmp (which is not constant time) to verify authentication, which makes it easier to bypass authentication via a timing side channel.
nvd
CVE-2015-5351P3HIGHCVSS 8.8v7.0v8.02016-02-25
CVE-2015-5351 [HIGH] CWE-352 CVE-2015-5351: The (1) Manager and (2) Host Manager applications in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0 The (1) Manager and (2) Host Manager applications in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 establish sessions and send CSRF tokens for arbitrary new requests, which allows remote attackers to bypass a CSRF protection mechanism by using a token.
nvd
CVE-2025-0781P3CRITICALCVSS 9.9v11.02025-01-28
CVE-2025-0781 [CRITICAL] CWE-863 CVE-2025-0781: An attacker can bypass the sandboxing of Nasal scripts and arbitrarily write to any file path that t An attacker can bypass the sandboxing of Nasal scripts and arbitrarily write to any file path that the user has permission to modify at the operating-system level.
nvd
CVE-2022-26846P3HIGHCVSS 8.8v9.0v10.0+1 more2022-03-10
CVE-2022-26846 [HIGH] CVE-2022-26846: SPIP before 3.2.14 and 4.x before 4.0.5 allows remote authenticated editors to execute arbitrary cod SPIP before 3.2.14 and 4.x before 4.0.5 allows remote authenticated editors to execute arbitrary code.
nvd
CVE-2025-2291P3CRITICALCVSS 9.8v11.02025-04-16
CVE-2025-2291 [CRITICAL] CWE-324 CVE-2025-2291: Password can be used past expiry in PgBouncer due to auth_query not taking into account Postgres its Password can be used past expiry in PgBouncer due to auth_query not taking into account Postgres its VALID UNTIL value, which allows an attacker to log in with an already expired password
nvd
CVE-2018-1000671P3MEDIUMCVSS 6.1PoCv8.02018-09-06
CVE-2018-1000671 [MEDIUM] CWE-601 CVE-2018-1000671: sympa version 6.2.16 and later contains a CWE-601: URL Redirection to Untrusted Site ('Open Redirect sympa version 6.2.16 and later contains a CWE-601: URL Redirection to Untrusted Site ('Open Redirect') vulnerability in The "referer" parameter of the wwsympa.fcgi login action. that can result in Open redirection and reflected XSS via data URIs. This attack appear to be exploitable via Victim's browser must follow a URL supplied by the attacker
nvd
CVE-2019-20445P3CRITICALCVSS 9.1v8.0v9.0+1 more2020-01-29
CVE-2019-20445 [CRITICAL] CWE-444 CVE-2019-20445: HttpObjectDecoder.java in Netty before 4.1.44 allows a Content-Length header to be accompanied by a HttpObjectDecoder.java in Netty before 4.1.44 allows a Content-Length header to be accompanied by a second Content-Length header, or by a Transfer-Encoding header.
nvd
CVE-2022-31086P3HIGHCVSS 8.8v11.02022-06-27
CVE-2022-31086 [HIGH] CWE-74 CVE-2022-31086: LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. In versions prior to 8.0 incorrect regular expressions allow to upload PHP scripts to config/templates/pdf. This vulnerability could lead to a Remote Code Execution if the /config/templates/pdf/ directory is accessible for r
nvd
CVE-2018-0492P3HIGHCVSS 7.0PoCv7.0v8.0+1 more2018-04-03
CVE-2018-0492 [HIGH] CWE-362 CVE-2018-0492: Johnathan Nightingale beep through 1.3.4, if setuid, has a race condition that allows local privileg Johnathan Nightingale beep through 1.3.4, if setuid, has a race condition that allows local privilege escalation.
nvd
CVE-2022-1049P3HIGHCVSS 8.8v10.0v11.02022-03-25
CVE-2022-1049 [HIGH] CWE-287 CVE-2022-1049: A flaw was found in the Pacemaker configuration tool (pcs). The pcs daemon was allowing expired acco A flaw was found in the Pacemaker configuration tool (pcs). The pcs daemon was allowing expired accounts, and accounts with expired passwords to login when using PAM authentication. Therefore, unprivileged expired accounts that have been denied access could still login.
nvd
CVE-2019-13345P3MEDIUMCVSS 6.1v8.02019-07-05
CVE-2019-13345 [MEDIUM] CWE-79 CVE-2019-13345: The cachemgr.cgi web module of Squid through 4.7 has XSS via the user_name or auth parameter. The cachemgr.cgi web module of Squid through 4.7 has XSS via the user_name or auth parameter.
nvd
CVE-2014-4678P3CRITICALCVSS 9.8v8.0v9.0+1 more2020-02-20
CVE-2014-4678 [CRITICAL] CVE-2014-4678: The safe_eval function in Ansible before 1.6.4 does not properly restrict the code subset, which all The safe_eval function in Ansible before 1.6.4 does not properly restrict the code subset, which allows remote attackers to execute arbitrary code via crafted instructions. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-4657.
nvd
CVE-2020-25097P3HIGHCVSS 8.6v10.02021-03-19
CVE-2020-25097 [HIGH] CWE-20 CVE-2020-25097: An issue was discovered in Squid through 4.13 and 5.x through 5.0.4. Due to improper input validatio An issue was discovered in Squid through 4.13 and 5.x through 5.0.4. Due to improper input validation, it allows a trusted client to perform HTTP Request Smuggling and access services otherwise forbidden by the security controls. This occurs for certain uri_whitespace configuration settings.
nvd
CVE-2020-12278P3CRITICALCVSS 9.8v9.02020-04-27
CVE-2020-12278 [CRITICAL] CVE-2020-12278: An issue was discovered in libgit2 before 0.28.4 and 0.9x before 0.99.0. path.c mishandles equivalen An issue was discovered in libgit2 before 0.28.4 and 0.9x before 0.99.0. path.c mishandles equivalent filenames that exist because of NTFS Alternate Data Streams. This may allow remote code execution when cloning a repository. This issue is similar to CVE-2019-1352.
nvd
CVE-2019-11068P3CRITICALCVSS 9.8v8.02019-04-10
CVE-2019-11068 [CRITICAL] CVE-2019-11068: libxslt through 1.1.33 allows bypass of a protection mechanism because callers of xsltCheckRead and libxslt through 1.1.33 allows bypass of a protection mechanism because callers of xsltCheckRead and xsltCheckWrite permit access even upon receiving a -1 error code. xsltCheckRead can return -1 for a crafted URL that is not actually invalid and is subsequently loaded.
nvd
CVE-2023-39417P3HIGHCVSS 8.8v8.0v11.0+1 more2023-08-11
CVE-2023-39417 [HIGH] CWE-89 CVE-2023-39417: IN THE EXTENSION SCRIPT, a SQL Injection vulnerability was found in PostgreSQL if it uses @extowner@ IN THE EXTENSION SCRIPT, a SQL Injection vulnerability was found in PostgreSQL if it uses @extowner@, @extschema@, or @extschema:...@ inside a quoting construct (dollar quoting, '', or ""). If an administrator has installed files of a vulnerable, trusted, non-bundled extension, an attacker with database-level CREATE privilege can execute arbitrary code
nvd
Debian Linux vulnerabilities | cvebase