VendorsDebiandebian_linux10.0
Vulnerabilities

Debian Debian Linux 10.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3432CVEs
CVE-2019-14438
A heap-based buffer over-read in xiph_PackHeaders() in modules/demux/xiph.h in VideoLAN VLC media player 3.0.7.1 allows remote attackers to trigger a heap-based buffer over-read via a crafted .ogg file.
Published 2019-08-29 · Modified
7.8EPSS 0.018
CVE-2020-16303
A use-after-free vulnerability in xps_finish_image_path() in devices/vector/gdevxps.c of Artifex Software GhostScript v9.50 allows a remote attacker to escalate privileges via a crafted PDF file. This is fixed in v9.51.
Published 2020-08-13 · Modified
7.8EPSS 0.018
CVE-2021-41073
loop_rw_iter in fs/io_uring.c in the Linux kernel 5.10 through 5.14.6 allows local users to gain privileges by using IORING_OP_PROVIDE_BUFFERS to trigger a free of a kernel buffer, as demonstrated by using /proc/<pid>/maps for exploitation.
Published 2021-09-19 · Modified
7.8EPSS 0.018
CVE-2021-3498
GStreamer before 1.18.4 might cause heap corruption when parsing certain malformed Matroska files.
Published 2021-04-19 · Modified
7.8EPSS 0.018
CVE-2022-23946
A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon GCodeNumber parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-02-04 · Modified
7.8EPSS 0.017
CVE-2021-4192
Use After Free in vim/vim
Published 2021-12-31 · Modified
7.8EPSS 0.017
CVE-2021-3927
Heap-based Buffer Overflow in vim/vim
Published 2021-11-05 · Modified
7.8EPSS 0.017
CVE-2022-0261
Heap-based Buffer Overflow in vim/vim
Published 2022-01-18 · Modified
7.8EPSS 0.017
CVE-2022-23804
A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadIJCoord coordinate parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-02-16 · Modified
7.8EPSS 0.016
CVE-2022-23803
A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadXYCoord coordinate parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-02-16 · Modified
7.8EPSS 0.016
CVE-2022-1851
Out-of-bounds Read in vim/vim
Published 2022-05-25 · Modified
7.8EPSS 0.016
CVE-2022-1942
Heap-based Buffer Overflow in vim/vim
Published 2022-05-31 · Modified
7.8EPSS 0.016
CVE-2022-2000
Out-of-bounds Write in vim/vim
Published 2022-06-07 · Modified
7.8EPSS 0.016
CVE-2022-28463
ImageMagick 7.1.0-27 is vulnerable to Buffer Overflow.
Published 2022-05-08 · Analyzed
7.8EPSS 0.016
CVE-2020-6510
Heap buffer overflow in background fetch in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Published 2020-07-22 · Modified
7.8EPSS 0.016
CVE-2023-6377
Xorg-x11-server: out-of-bounds memory reads/writes in xkb button actions
Published 2023-12-13 · Modified
7.8EPSS 0.016
CVE-2021-3984
Heap-based Buffer Overflow in vim/vim
Published 2021-12-01 · Modified
7.8EPSS 0.016
CVE-2024-4453
GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution Vulnerability
Published 2024-05-22 · Analyzed
7.8EPSS 0.016
CVE-2019-13217
A heap buffer overflow in the start_decoder function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or execute arbitrary code by opening a crafted Ogg Vorbis file.
Published 2019-08-15 · Modified
7.8EPSS 0.015
CVE-2022-1897
Out-of-bounds Write in vim/vim
Published 2022-05-27 · Modified
7.8EPSS 0.015
CVE-2022-0368
Out-of-bounds Read in vim/vim
Published 2022-01-26 · Modified
7.8EPSS 0.015
CVE-2019-14498
A divide-by-zero error exists in the Control function of demux/caf.c in VideoLAN VLC media player 3.0.7.1. As a result, an FPE can be triggered via a crafted CAF file.
Published 2019-08-29 · Modified
7.8EPSS 0.015
CVE-2022-0392
Heap-based Buffer Overflow in vim/vim
Published 2022-01-28 · Modified
7.8EPSS 0.015
CVE-2019-14437
The xiph_SplitHeaders function in modules/demux/xiph.h in VideoLAN VLC media player 3.0.7.1 does not check array bounds properly. As a result, a heap-based buffer over-read can be triggered via a crafted .ogg file.
Published 2019-08-29 · Modified
7.8EPSS 0.015
CVE-2022-2304
Stack-based Buffer Overflow in vim/vim
Published 2022-07-05 · Modified
7.8EPSS 0.015
CVE-2019-14535
A divide-by-zero error exists in the SeekIndex function of demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1. As a result, an FPE can be triggered via a crafted WMV file.
Published 2019-08-29 · Modified
7.8EPSS 0.015
CVE-2019-14776
A heap-based buffer over-read exists in DemuxInit() in demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1 via a crafted .mkv file.
Published 2019-08-29 · Modified
7.8EPSS 0.015
CVE-2020-26664
A vulnerability in EbmlTypeDispatcher::send in VideoLAN VLC media player 3.0.11 allows attackers to trigger a heap-based buffer overflow via a crafted .mkv file.
Published 2021-01-08 · Modified
7.8EPSS 0.015
CVE-2019-13221
A stack buffer overflow in the compute_codewords function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or execute arbitrary code by opening a crafted Ogg Vorbis file.
Published 2019-08-15 · Modified
7.8EPSS 0.015
CVE-2020-17367
Firejail through 0.9.62 does not honor the -- end-of-options indicator after the --output option, which may lead to command injection.
Published 2020-08-11 · Modified
7.8EPSS 0.015
CVE-2022-1898
Use After Free in vim/vim
Published 2022-05-27 · Modified
7.8EPSS 0.015
CVE-2022-1154
Use after free in utf_ptr2char in vim/vim
Published 2022-03-30 · Modified
7.8EPSS 0.015
CVE-2022-23947
A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon DCodeNumber parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-02-04 · Modified
7.8EPSS 0.015
CVE-2019-14533
The Control function of demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1 has a use-after-free.
Published 2019-08-29 · Modified
7.8EPSS 0.015
CVE-2019-14777
The Control function of demux/mkv/mkv.cpp in VideoLAN VLC media player 3.0.7.1 has a use-after-free.
Published 2019-08-29 · Modified
7.8EPSS 0.015
CVE-2019-14778
The mkv::virtual_segment_c::seek method of demux/mkv/virtual_segment.cpp in VideoLAN VLC media player 3.0.7.1 has a use-after-free.
Published 2019-08-29 · Modified
7.8EPSS 0.015
CVE-2021-28021
Buffer overflow vulnerability in function stbi__extend_receive in stb_image.h in stb 2.26 via a crafted JPEG file.
Published 2021-10-15 · Modified
7.8EPSS 0.014
CVE-2021-21703
PHP-FPM memory access in root process leading to privilege escalation
Published 2021-10-25 · Modified
7.8EPSS 0.014
CVE-2020-27918
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14.2, iCloud for Windows 11.5, Safari 14.0.1, tvOS 14.2, iTunes 12.11 for Windows. Processing maliciously crafted web content may lead to arbitrary code execution.
Published 2020-12-08 · Modified
7.8EPSS 0.014
CVE-2022-2285
Integer Overflow or Wraparound in vim/vim
Published 2022-07-02 · Modified
7.8EPSS 0.014
← Prev27 / 86Next →