VendorsDebiandebian_linux10.0
Vulnerabilities

Debian Debian Linux 10.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3432CVEs
CVE-2022-31625
Freeing unallocated memory in php_pgsql_free_params()
Published 2022-06-16 · Modified
8.1EPSS 0.038
CVE-2019-13616
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.
Published 2019-07-16 · Modified
8.1EPSS 0.037
CVE-2020-10650
A deserialization flaw was discovered in jackson-databind through 2.9.10.4. It could allow an unauthenticated user to perform code execution via ignite-jta or quartz-core: org.apache.ignite.cache.jta.jndi.CacheJndiTmLookup, org.apache.ignite.cache.jta.jndi.CacheJndiTmFactory, and org.quartz.utils.JNDIConnectionProvider.
Published 2022-12-26 · Analyzed
8.1EPSS 0.033
CVE-2021-40153
squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.
Published 2021-08-27 · Modified
8.1EPSS 0.025
CVE-2022-31163
TZInfo relative path traversal vulnerability allows loading of arbitrary files
Published 2022-07-21 · Modified
8.1EPSS 0.024
CVE-2021-41072
squashfs_opendir in unsquash-2.c in Squashfs-Tools 4.5 allows Directory Traversal, a different vulnerability than CVE-2021-40153. A squashfs filesystem that has been crafted to include a symbolic link and then contents under the same filename in a filesystem can cause unsquashfs to first create the symbolic link pointing outside the expected directory, and then the subsequent write operation will cause the unsquashfs process to write through the symbolic link elsewhere in the filesystem.
Published 2021-09-14 · Modified
8.1EPSS 0.023
CVE-2020-12693
Slurm 19.05.x before 19.05.7 and 20.02.x before 20.02.3, in the rare case where Message Aggregation is enabled, allows Authentication Bypass via an Alternate Path or Channel. A race condition allows a user to launch a process as an arbitrary user.
Published 2020-05-21 · Modified
8.1EPSS 0.023
CVE-2022-40674
libexpat before 2.4.9 has a use-after-free in the doContent function in xmlparse.c.
Published 2022-09-14 · Modified
8.1EPSS 0.022
CVE-2022-22576
An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).
Published 2022-05-26 · Modified
8.1EPSS 0.022
CVE-2019-11007
In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the ReadMNGImage function of coders/png.c, which allows attackers to cause a denial of service or information disclosure via an image colormap.
Published 2019-04-08 · Modified
8.1EPSS 0.020
CVE-2021-38161
Not validating origin TLS certificate
Published 2021-11-03 · Modified
8.1EPSS 0.020
CVE-2020-18771
Exiv2 0.27.99.0 has a global buffer over-read in Exiv2::Internal::Nikon1MakerNote::print0x0088 in nikonmn_int.cpp which can result in an information leak.
Published 2021-08-23 · Modified
8.1EPSS 0.018
CVE-2023-50447
Pillow through 10.1.0 allows PIL.ImageMath.eval Arbitrary Code Execution via the environment parameter, a different vulnerability than CVE-2022-22817 (which was about the expression parameter).
Published 2024-01-19 · Modified
8.1EPSS 0.017
CVE-2021-20305
A flaw was found in Nettle in versions before 3.7.2, where several Nettle signature verification functions (GOST DSA, EDDSA & ECDSA) result in the Elliptic Curve Cryptography point (ECC) multiply function being called with out-of-range scalers, possibly resulting in incorrect results. This flaw allows an attacker to force an invalid signature, causing an assertion failure or possible validation. The highest threat to this vulnerability is to confidentiality, integrity, as well as system availability.
Published 2021-04-05 · Modified
8.1EPSS 0.017
CVE-2021-21172
Insufficient policy enforcement in File System API in Google Chrome on Windows prior to 89.0.4389.72 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page.
Published 2021-03-09 · Modified
8.1EPSS 0.017
CVE-2021-44759
Improper authentication vulnerability in TLS origin verification
Published 2022-03-23 · Modified
8.1EPSS 0.016
CVE-2021-42387
Heap out-of-bounds read in Clickhouse's LZ4 compression codec when parsing a malicious query. As part of the LZ4::decompressImpl() loop, a 16-bit unsigned user-supplied value ('offset') is read from the compressed data. The offset is later used in the length of a copy operation, without checking the upper bounds of the source of the copy operation.
Published 2022-03-14 · Modified
8.1EPSS 0.016
CVE-2021-42388
Heap out-of-bounds read in Clickhouse's LZ4 compression codec when parsing a malicious query. As part of the LZ4::decompressImpl() loop, a 16-bit unsigned user-supplied value ('offset') is read from the compressed data. The offset is later used in the length of a copy operation, without checking the lower bounds of the source of the copy operation.
Published 2022-03-14 · Modified
8.1EPSS 0.016
CVE-2022-2469
GNU SASL libgsasl server-side read-out-of-bounds with malicious authenticated GSS-API client
Published 2022-07-19 · Modified
8.1EPSS 0.015
CVE-2021-21205
Insufficient policy enforcement in navigation in Google Chrome on iOS prior to 90.0.4430.72 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
Published 2021-04-26 · Modified
8.1EPSS 0.015
CVE-2024-32004
Git vulnerable to Remote Code Execution while cloning special-crafted local repositories
Published 2024-05-14 · Analyzed
8.1EPSS 0.014
CVE-2024-33599
nscd: Stack-based buffer overflow in netgroup cache
Published 2024-05-06 · Modified
8.1EPSS 0.013
CVE-2023-41915
OpenPMIx PMIx before 4.2.6 and 5.0.x before 5.0.1 allows attackers to obtain ownership of arbitrary files via a race condition during execution of library code with UID 0.
Published 2023-09-09 · Modified
8.1EPSS 0.012
CVE-2023-43804
`Cookie` HTTP header isn't stripped on cross-origin redirects
Published 2023-10-04 · Modified
8.1EPSS 0.012
CVE-2024-2607
Return registers were overwritten which could have allowed an attacker to execute arbitrary code. *Note:* This issue only affected Armv7-A systems. Other operating systems are unaffected. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.
Published 2024-03-19 · Analyzed
8.1EPSS 0.011
CVE-2023-52434
smb: client: fix potential OOBs in smb2_parse_contexts()
Published 2024-02-20 · Modified
8.1EPSS 0.010
CVE-2023-4431
Out of bounds memory access in Fonts in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium)
Published 2023-08-22 · Modified
8.1EPSS 0.009
CVE-2006-4245
archivemail 0.6.2 uses temporary files insecurely leading to a possible race condition.
Published 2019-11-06 · Modified
8.1EPSS 0.009
CVE-2024-1553
Memory safety bugs present in Firefox 122, Firefox ESR 115.7, and Thunderbird 115.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 123, Firefox ESR < 115.8, and Thunderbird < 115.8.
Published 2024-02-20 · Analyzed
8.1EPSS 0.009
CVE-2024-3864
Memory safety bug present in Firefox 124, Firefox ESR 115.9, and Thunderbird 115.9. This bug showed evidence of memory corruption and we presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10.
Published 2024-04-16 · Analyzed
8.1EPSS 0.009
CVE-2021-37789
stb_image.h 2.27 has a heap-based buffer over in stbi__jpeg_load, leading to Information Disclosure or Denial of Service.
Published 2022-11-02 · Modified
8.1EPSS 0.008
CVE-2022-48655
firmware: arm_scmi: Harden accesses to the reset domains
Published 2024-04-28 · Analyzed
8.1EPSS 0.007
CVE-2024-26736
afs: Increase buffer size in afs_update_volume_status()
Published 2024-04-03 · Modified
8.1EPSS 0.007
CVE-2024-5629
Out-of-bounds read in bson module of PyMongo
Published 2024-06-05 · Modified
8.1EPSS 0.007
CVE-2020-36658
In Apache::Session::LDAP before 0.5, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the default configuration of the Net::LDAPS module for Perl is used. NOTE: this can, for example, be fixed in conjunction with the CVE-2020-16093 fix.
Published 2023-01-27 · Modified
8.1EPSS 0.004
CVE-2020-36659
In Apache::Session::Browseable before 1.3.6, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the default configuration of the Net::LDAPS module for Perl is used. NOTE: this can, for example, be fixed in conjunction with the CVE-2020-16093 fix.
Published 2023-01-27 · Modified
8.1EPSS 0.004
CVE-2022-21661
SQL injection in WordPress
Published 2022-01-06 · Analyzed
8.01 PoCEPSS 0.978
CVE-2021-21300
malicious repositories can execute remote code while cloning
Published 2021-03-09 · Modified
8.0EPSS 0.885
CVE-2022-30287
Horde Groupware Webmail Edition through 5.2.22 allows a reflection injection attack through which an attacker can instantiate a driver class. This then leads to arbitrary deserialization of PHP objects.
Published 2022-07-28 · Modified
8.0EPSS 0.707
CVE-2022-21662
Stored XSS in WordPress
Published 2022-01-06 · Modified
8.0EPSS 0.645
← Prev24 / 86Next →