Debian Linux vulnerabilities
9,953 known vulnerabilities affecting debian/debian_linux.
Total CVEs
9,953
CISA KEV
121
actively exploited
Public exploits
460
Exploited in wild
210
Severity breakdown
CRITICAL1133HIGH4150MEDIUM4312LOW358
Vulnerabilities
Page 57 of 498
CVE-2017-14176P3HIGHCVSS 8.8v8.0v9.02017-11-27
CVE-2017-14176 [HIGH] CVE-2017-14176: Bazaar through 2.7.0, when Subprocess SSH is used, allows remote attackers to execute arbitrary comm
Bazaar through 2.7.0, when Subprocess SSH is used, allows remote attackers to execute arbitrary commands via a bzr+ssh URL with an initial dash character in the hostname, a related issue to CVE-2017-9800, CVE-2017-12836, CVE-2017-12976, CVE-2017-16228, CVE-2017-1000116, and CVE-2017-1000117.
nvd
CVE-2017-5946P3CRITICALCVSS 9.8v8.0v9.02017-02-27
CVE-2017-5946 [CRITICAL] CWE-22 CVE-2017-5946: The Zip::File component in the rubyzip gem before 1.2.1 for Ruby has a directory traversal vulnerabi
The Zip::File component in the rubyzip gem before 1.2.1 for Ruby has a directory traversal vulnerability. If a site allows uploading of .zip files, an attacker can upload a malicious file that uses "../" pathname substrings to write arbitrary files to the filesystem.
nvd
CVE-2018-0487P3CRITICALCVSS 9.8v8.0v9.02018-02-13
CVE-2018-0487 [CRITICAL] CWE-119 CVE-2018-0487: ARM mbed TLS before 1.3.22, before 2.1.10, and before 2.7.0 allows remote attackers to execute arbit
ARM mbed TLS before 1.3.22, before 2.1.10, and before 2.7.0 allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via a crafted certificate chain that is mishandled during RSASSA-PSS signature verification within a TLS or DTLS session.
nvd
CVE-2022-44793P3MEDIUMCVSS 6.5v10.02022-11-07
CVE-2022-44793 [MEDIUM] CWE-476 CVE-2022-44793: handle_ipv6IpForwarding in agent/mibgroup/ip-mib/ip_scalars.c in Net-SNMP 5.4.3 through 5.9.3 has a
handle_ipv6IpForwarding in agent/mibgroup/ip-mib/ip_scalars.c in Net-SNMP 5.4.3 through 5.9.3 has a NULL Pointer Exception bug that can be used by a remote attacker to cause the instance to crash via a crafted UDP packet, resulting in Denial of Service.
nvd
CVE-2018-12386P3HIGHCVSS 8.1v9.02018-10-18
CVE-2018-12386 [HIGH] CWE-704 CVE-2018-12386: A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arb
A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and write. This leads to remote code execution inside the sandboxed content process when triggered. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.
nvd
CVE-2021-40393P3CRITICALCVSS 9.8v9.0v10.0+1 more2021-12-22
CVE-2021-40393 [CRITICAL] CWE-119 CVE-2021-40393: An out-of-bounds write vulnerability exists in the RS-274X aperture macro variables handling functio
An out-of-bounds write vulnerability exists in the RS-274X aperture macro variables handling functionality of Gerbv 2.7.0 and dev (commit b5f1eacd) and the forked version of Gerbv (commit 71493260). A specially-crafted gerber file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
nvd
CVE-2021-40394P3CRITICALCVSS 9.8v9.0v10.0+1 more2021-12-22
CVE-2021-40394 [CRITICAL] CWE-787 CVE-2021-40394: An out-of-bounds write vulnerability exists in the RS-274X aperture macro variables handling functio
An out-of-bounds write vulnerability exists in the RS-274X aperture macro variables handling functionality of Gerbv 2.7.0 and dev (commit b5f1eacd) and the forked version of Gerbv (commit 71493260). A specially-crafted gerber file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
nvd
CVE-2021-40391P3CRITICALCVSS 9.8v9.02021-11-19
CVE-2021-40391 [CRITICAL] CWE-390 CVE-2021-40391: An out-of-bounds write vulnerability exists in the drill format T-code tool number functionality of
An out-of-bounds write vulnerability exists in the drill format T-code tool number functionality of Gerbv 2.7.0, dev (commit b5f1eacd), and the forked version of Gerbv (commit 71493260). A specially-crafted drill file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
nvd
CVE-2020-35628P3CRITICALCVSS 9.8v9.0v10.02021-03-04
CVE-2020-35628 [CRITICAL] CWE-129 CVE-2020-35628: A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser::read_sloop() slh->incident_sface. An attacker can provide malicious input to trigger this vulnerability.
nvd
CVE-2020-28601P3CRITICALCVSS 9.8v9.0v10.02021-03-04
CVE-2020-28601 [CRITICAL] CWE-129 CVE-2020-28601: A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_2/PM_io_parser.h PM_io_parser::read_vertex() Face_of[] OOB read. An attacker can provide malicious input to trigger this vulnerability.
nvd
CVE-2020-28636P3CRITICALCVSS 9.8v9.0v10.02021-03-04
CVE-2020-28636 [CRITICAL] CWE-129 CVE-2020-28636: A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser::read_sloop() slh->twin() An attacker can provide malicious input to trigger this vulnerability.
nvd
CVE-2016-5420P3HIGHCVSS 7.5v8.02016-08-10
CVE-2016-5420 [HIGH] CWE-285 CVE-2016-5420: curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection
curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.
nvd
CVE-2010-2963P4MEDIUMCVSS 6.2PoCv5.02010-11-26
CVE-2010-2963 [MEDIUM] CWE-20 CVE-2010-2963: drivers/media/video/v4l2-compat-ioctl32.c in the Video4Linux (V4L) implementation in the Linux kerne
drivers/media/video/v4l2-compat-ioctl32.c in the Video4Linux (V4L) implementation in the Linux kernel before 2.6.36 on 64-bit platforms does not validate the destination of a memory copy operation, which allows local users to write to arbitrary kernel memory locations, and consequently gain privileges, via a VIDIOCSTUNER ioctl call on a /dev/video devi
nvd
CVE-2016-6354P3CRITICALCVSS 9.8v8.02016-09-21
CVE-2016-6354 [CRITICAL] CWE-119 CVE-2016-6354: Heap-based buffer overflow in the yy_get_next_buffer function in Flex before 2.6.1 might allow conte
Heap-based buffer overflow in the yy_get_next_buffer function in Flex before 2.6.1 might allow context-dependent attackers to cause a denial of service or possibly execute arbitrary code via vectors involving num_to_read.
nvd
CVE-2019-15604P3HIGHCVSS 7.5v10.02020-02-07
CVE-2019-15604 [HIGH] CWE-295 CVE-2019-15604: Improper Certificate Validation in Node.js 10, 12, and 13 causes the process to abort when sending a
Improper Certificate Validation in Node.js 10, 12, and 13 causes the process to abort when sending a crafted X.509 certificate
nvd
CVE-2018-8012P3HIGHCVSS 7.5v8.0v9.02018-05-21
CVE-2018-8012 [HIGH] CWE-862 CVE-2018-8012: No authentication/authorization is enforced when a server attempts to join a quorum in Apache ZooKee
No authentication/authorization is enforced when a server attempts to join a quorum in Apache ZooKeeper before 3.4.10, and 3.5.0-alpha through 3.5.3-beta. As a result an arbitrary end point could join the cluster and begin propagating counterfeit changes to the leader.
nvd
CVE-2017-10285P3CRITICALCVSS 9.6v7.0v8.0+1 more2017-10-19
CVE-2017-10285 [CRITICAL] CVE-2017-10285: Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI). Supp
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful
nvd
CVE-2019-20330P3CRITICALCVSS 9.8v8.02020-01-03
CVE-2019-20330 [CRITICAL] CWE-502 CVE-2019-20330: FasterXML jackson-databind 2.x before 2.9.10.2 lacks certain net.sf.ehcache blocking.
FasterXML jackson-databind 2.x before 2.9.10.2 lacks certain net.sf.ehcache blocking.
nvd
CVE-2021-3693P3CRITICALCVSS 9.6v10.0v11.02021-08-23
CVE-2021-3693 [CRITICAL] CWE-79 CVE-2021-3693: LedgerSMB does not check the origin of HTML fragments merged into the browser's DOM. By sending a sp
LedgerSMB does not check the origin of HTML fragments merged into the browser's DOM. By sending a specially crafted URL to an authenticated user, this flaw can be abused for remote code execution and information disclosure.
nvd
CVE-2018-5733P3HIGHCVSS 7.5v7.0v8.0+1 more2019-01-16
CVE-2018-5733 [HIGH] CWE-190 CVE-2018-5733: A malicious client which is allowed to send very large amounts of traffic (billions of packets) to a
A malicious client which is allowed to send very large amounts of traffic (billions of packets) to a DHCP server can eventually overflow a 32-bit reference counter, potentially causing dhcpd to crash. Affects ISC DHCP 4.1.0 -> 4.1-ESV-R15, 4.2.0 -> 4.2.8, 4.3.0 -> 4.3.6, 4.4.0.
nvd