Debian Linux vulnerabilities
9,956 known vulnerabilities affecting debian/debian_linux.
Total CVEs
9,956
CISA KEV
121
actively exploited
Public exploits
461
Exploited in wild
210
Severity breakdown
CRITICAL1133HIGH4169MEDIUM4296LOW358
Vulnerabilities
Page 498 of 498
CVE-2010-4079P4LOWCVSS 1.9v5.02010-11-29
CVE-2010-4079 [LOW] CWE-200 CVE-2010-4079: The ivtvfb_ioctl function in drivers/media/video/ivtv/ivtvfb.c in the Linux kernel before 2.6.36-rc8
The ivtvfb_ioctl function in drivers/media/video/ivtv/ivtvfb.c in the Linux kernel before 2.6.36-rc8 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an FBIOGET_VBLANK ioctl call.
nvd
CVE-2015-2157P4LOWCVSS 2.1v7.02015-03-27
CVE-2015-2157 [LOW] CWE-200 CVE-2015-2157: The (1) ssh2_load_userkey and (2) ssh2_save_userkey functions in PuTTY 0.51 through 0.63 do not prop
The (1) ssh2_load_userkey and (2) ssh2_save_userkey functions in PuTTY 0.51 through 0.63 do not properly wipe SSH-2 private keys from memory, which allows local users to obtain sensitive information by reading the memory.
nvd
CVE-2015-2045P4LOWCVSS 2.1v7.02015-03-12
CVE-2015-2045 [LOW] CWE-200 CVE-2015-2045: The HYPERVISOR_xen_version hypercall in Xen 3.2.x through 4.5.x does not properly initialize data st
The HYPERVISOR_xen_version hypercall in Xen 3.2.x through 4.5.x does not properly initialize data structures, which allows local guest users to obtain sensitive information via unspecified vectors.
nvd
CVE-2008-3272P4LOWCVSS 2.1v4.02008-08-08
CVE-2008-3272 [LOW] CWE-200 CVE-2008-3272: The snd_seq_oss_synth_make_info function in sound/core/seq/oss/seq_oss_synth.c in the sound subsyste
The snd_seq_oss_synth_make_info function in sound/core/seq/oss/seq_oss_synth.c in the sound subsystem in the Linux kernel before 2.6.27-rc2 does not verify that the device number is within the range defined by max_synthdev before returning certain data to the caller, which allows local users to obtain sensitive information.
nvd
CVE-1999-0374P4LOWCVSS 2.1v2.01999-02-16
CVE-1999-0374 [LOW] CVE-1999-0374: Debian GNU/Linux cfengine package is susceptible to a symlink attack.
Debian GNU/Linux cfengine package is susceptible to a symlink attack.
nvd
CVE-2007-1366P4LOWCVSS 2.1v3.1v4.02007-05-02
CVE-2007-1366 [LOW] CVE-2007-1366: QEMU 0.8.2 allows local users to crash a virtual machine via the divisor operand to the aam instruct
QEMU 0.8.2 allows local users to crash a virtual machine via the divisor operand to the aam instruction, as demonstrated by "aam 0x0," which triggers a divide-by-zero error.
nvd
CVE-2007-1322P4LOWCVSS 2.1v3.1v4.02007-05-02
CVE-2007-1322 [LOW] CVE-2007-1322: QEMU 0.8.2 allows local users to halt a virtual machine by executing the icebp instruction.
QEMU 0.8.2 allows local users to halt a virtual machine by executing the icebp instruction.
nvd
CVE-2010-3875P4LOWCVSS 2.1v5.02011-01-03
CVE-2010-3875 [LOW] CWE-200 CVE-2010-3875: The ax25_getname function in net/ax25/af_ax25.c in the Linux kernel before 2.6.37-rc2 does not initi
The ax25_getname function in net/ax25/af_ax25.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory by reading a copy of this structure.
nvd
CVE-2000-0076P4LOWCVSS 2.1v2.11999-12-30
CVE-2000-0076 [LOW] CVE-2000-0076: nviboot boot script in the Debian nvi package allows local users to delete files via malformed entri
nviboot boot script in the Debian nvi package allows local users to delete files via malformed entries in vi.recover.
nvd
CVE-2010-3877P4LOWCVSS 1.9v5.02011-01-03
CVE-2010-3877 [LOW] CWE-909 CVE-2010-3877: The get_name function in net/tipc/socket.c in the Linux kernel before 2.6.37-rc2 does not initialize
The get_name function in net/tipc/socket.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory by reading a copy of this structure.
nvd
CVE-2016-1000002P4LOWCVSS 2.4v8.0v9.0+1 more2019-11-05
CVE-2016-1000002 [LOW] CWE-200 CVE-2016-1000002: gdm3 3.14.2 and possibly later has an information leak before screen lock
gdm3 3.14.2 and possibly later has an information leak before screen lock
nvd
CVE-2012-3160P4LOWCVSS 2.1v6.0v7.02012-10-16
CVE-2012-3160 [LOW] CVE-2012-3160: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.65 and earlier, and 5.5.
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.65 and earlier, and 5.5.27 and earlier, allows local users to affect confidentiality via unknown vectors related to Server Installation.
nvd
CVE-2016-0592P4LOWCVSS 2.1v8.0v9.02016-01-21
CVE-2016-0592 [LOW] CVE-2016-0592: Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox
Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 4.3.36 and before 5.0.14 allows local users to affect availability via unknown vectors related to Core.
nvd
CVE-2015-0418P4LOWCVSS 2.1v7.02015-01-21
CVE-2015-0418 [LOW] CVE-2015-0418: Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox
Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox prior to 3.2.26, 4.0.28, 4.1.36, and 4.2.28 allows local users to affect availability via unknown vectors related to Core, a different vulnerability than CVE-2015-0377.
nvd
CVE-2001-0235P4LOWCVSS 2.1v2.22001-03-26
CVE-2001-0235 [LOW] CVE-2001-0235: Vulnerability in crontab allows local users to read crontab files of other users by replacing the te
Vulnerability in crontab allows local users to read crontab files of other users by replacing the temporary file that is being edited while crontab is running.
nvd
CVE-1999-0743P4LOWCVSS 2.1v4.01999-08-20
CVE-1999-0743 [LOW] CVE-1999-0743: Trn allows local users to overwrite other users' files via symlinks.
Trn allows local users to overwrite other users' files via symlinks.
nvd
← Previous498 / 498