VendorsDebiandebian_linux10.0
Vulnerabilities

Debian Debian Linux 10.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3432CVEs
CVE-2022-0135
An out-of-bounds write issue was found in the VirGL virtual OpenGL renderer (virglrenderer). This flaw allows a malicious guest to create a specially crafted virgil resource and then issue a VIRTGPU_EXECBUFFER ioctl, leading to a denial of service or possible code execution.
Published 2022-08-25 · Modified
7.8EPSS 0.004
CVE-2021-26720
avahi-daemon-check-dns.sh in the Debian avahi package through 0.8-4 is executed as root via /etc/network/if-up.d/avahi-daemon, and allows a local attacker to cause a denial of service or create arbitrary empty files via a symlink attack on files under /run/avahi-daemon. NOTE: this only affects the packaging for Debian GNU/Linux (used indirectly by SUSE), not the upstream Avahi product.
Published 2021-02-17 · Modified
7.8EPSS 0.004
CVE-2021-38160
In drivers/char/virtio_console.c in the Linux kernel before 5.13.4, data corruption or loss can be triggered by an untrusted device that supplies a buf->len value exceeding the buffer size. NOTE: the vendor indicates that the cited data corruption is not a vulnerability in any existing use case; the length validation was added solely for robustness in the face of anomalous host OS behavior
Published 2021-08-07 · Analyzed
7.8EPSS 0.004
CVE-2022-31214
A Privilege Context Switching issue was discovered in join.c in Firejail 0.9.68. By crafting a bogus Firejail container that is accepted by the Firejail setuid-root program as a join target, a local attacker can enter an environment in which the Linux user namespace is still the initial user namespace, the NO_NEW_PRIVS prctl is not activated, and the entered mount namespace is under the attacker's control. In this way, the filesystem layout can be adjusted to gain root privileges through execution of available setuid-root binaries such as su or sudo.
Published 2022-06-09 · Modified
7.8EPSS 0.004
CVE-2019-5819
Insufficient data validation in developer tools in Google Chrome on OS X prior to 74.0.3729.108 allowed a local attacker to execute arbitrary code via a crafted string copied to clipboard.
Published 2019-06-27 · Modified
7.8EPSS 0.004
CVE-2021-23177
An improper link resolution flaw while extracting an archive can lead to changing the access control list (ACL) of the target of the link. An attacker may provide a malicious archive to a victim user, who would trigger this flaw when trying to extract the archive. A local attacker may use this flaw to change the ACL of a file on the system and gain more privileges.
Published 2022-08-23 · Modified
7.8EPSS 0.004
CVE-2021-31566
An improper link resolution flaw can occur while extracting an archive leading to changing modes, times, access control lists, and flags of a file outside of the archive. An attacker may provide a malicious archive to a victim user, who would trigger this flaw when trying to extract the archive. A local attacker may use this flaw to gain more privileges in a system.
Published 2022-08-23 · Modified
7.8EPSS 0.004
CVE-2022-47655
Libde265 1.0.9 is vulnerable to Buffer Overflow in function void put_qpel_fallback<unsigned short>
Published 2023-01-05 · Modified
7.8EPSS 0.004
CVE-2020-25595
An issue was discovered in Xen through 4.14.x. The PCI passthrough code improperly uses register data. Code paths in Xen's MSI handling have been identified that act on unsanitized values read back from device hardware registers. While devices strictly compliant with PCI specifications shouldn't be able to affect these registers, experience shows that it's very common for devices to have out-of-spec "backdoor" operations that can affect the result of these reads. A not fully trusted guest may be able to crash Xen, leading to a Denial of Service (DoS) for the entire system. Privilege escalation and information leaks cannot be excluded. All versions of Xen supporting PCI passthrough are affected. Only x86 systems are vulnerable. Arm systems are not vulnerable. Only guests with passed through PCI devices may be able to leverage the vulnerability. Only systems passing through devices with out-of-spec ("backdoor") functionality can cause issues. Experience shows that such out-of-spec functionality is common; unless you have reason to believe that your device does not have such functionality, it's better to assume that it does.
Published 2020-09-23 · Modified
7.8EPSS 0.004
CVE-2011-1070
v86d before 0.1.10 do not verify if received netlink messages are sent by the kernel. This could allow unprivileged users to manipulate the video mode and potentially other consequences.
Published 2019-11-14 · Modified
7.8EPSS 0.004
CVE-2023-6932
Use-after-free in Linux kernel's ipv4: igmp component
Published 2023-12-19 · Modified
7.8EPSS 0.004
CVE-2022-28390
ems_usb_start_xmit in drivers/net/can/usb/ems_usb.c in the Linux kernel through 5.17.1 has a double free.
Published 2022-04-03 · Analyzed
7.8EPSS 0.004
CVE-2021-27379
An issue was discovered in Xen through 4.11.x, allowing x86 Intel HVM guest OS users to achieve unintended read/write DMA access, and possibly cause a denial of service (host OS crash) or gain privileges. This occurs because a backport missed a flush, and thus IOMMU updates were not always correct. NOTE: this issue exists because of an incomplete fix for CVE-2020-15565.
Published 2021-02-18 · Modified
7.8EPSS 0.004
CVE-2020-35511
A global buffer overflow was discovered in pngcheck function in pngcheck-2.4.0(5 patches applied) via a crafted png file.
Published 2022-08-23 · Modified
7.8EPSS 0.004
CVE-2020-6574
Insufficient policy enforcement in installer in Google Chrome on OS X prior to 85.0.4183.102 allowed a local attacker to potentially achieve privilege escalation via a crafted binary.
Published 2020-09-21 · Modified
7.8EPSS 0.004
CVE-2019-16729
pam-python before 1.0.7-1 has an issue in regard to the default environment variable handling of Python, which could allow for local root escalation in certain PAM setups.
Published 2019-09-24 · Modified
7.8EPSS 0.004
CVE-2019-17347
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privileges because a guest can manipulate its virtualised %cr4 in a way that is incompatible with Linux (and possibly other guest kernels).
Published 2019-10-08 · Modified
7.8EPSS 0.004
CVE-2023-5197
Use-after-free in Linux kernel's netfilter: nf_tables component
Published 2023-09-26 · Analyzed
7.8EPSS 0.004
CVE-2022-40284
A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.
Published 2022-11-06 · Modified
7.8EPSS 0.003
CVE-2020-27671
An issue was discovered in Xen through 4.14.x allowing x86 HVM and PVH guest OS users to cause a denial of service (data corruption), cause a data leak, or possibly gain privileges because coalescing of per-page IOMMU TLB flushes is mishandled.
Published 2020-10-22 · Modified
7.8EPSS 0.003
CVE-2022-3625
Linux Kernel IPsec devlink.c devlink_param_get use after free
Published 2022-10-21 · Modified
7.8EPSS 0.003
CVE-2022-47521
An issue was discovered in the Linux kernel before 6.0.11. Missing validation of IEEE80211_P2P_ATTR_CHANNEL_LIST in drivers/net/wireless/microchip/wilc1000/cfg80211.c in the WILC1000 wireless driver can trigger a heap-based buffer overflow when parsing the operating channel attribute from Wi-Fi management frames.
Published 2022-12-18 · Modified
7.8EPSS 0.003
CVE-2023-25221
Libde265 v1.0.10 was discovered to contain a heap-buffer-overflow vulnerability in the derive_spatial_luma_vector_prediction function in motion.cc.
Published 2023-03-01 · Modified
7.8EPSS 0.003
CVE-2024-27075
media: dvb-frontends: avoid stack overflow warnings with clang
Published 2024-05-01 · Analyzed
7.8EPSS 0.003
CVE-2022-47518
An issue was discovered in the Linux kernel before 6.0.11. Missing validation of the number of channels in drivers/net/wireless/microchip/wilc1000/cfg80211.c in the WILC1000 wireless driver can trigger a heap-based buffer overflow when copying the list of operating channels from Wi-Fi management frames.
Published 2022-12-18 · Modified
7.8EPSS 0.003
CVE-2024-27000
serial: mxs-auart: add spinlock around changing cts state
Published 2024-05-01 · Analyzed
7.8EPSS 0.003
CVE-2023-33204
sysstat through 12.7.2 allows a multiplication integer overflow in check_overflow in common.c. NOTE: this issue exists because of an incomplete fix for CVE-2022-39377.
Published 2023-05-18 · Modified
7.8EPSS 0.003
CVE-2024-26922
drm/amdgpu: validate the parameters of bo mapping operations more clearly
Published 2024-04-23 · Modified
7.8EPSS 0.003
CVE-2021-4037
Kernel: security regression for cve-2018-13405
Published 2022-08-24 · Modified
7.8EPSS 0.003
CVE-2024-27024
net/rds: fix WARNING in rds_conn_connect_if_down
Published 2024-05-01 · Modified
7.8EPSS 0.003
CVE-2024-26773
ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found()
Published 2024-04-03 · Modified
7.8EPSS 0.003
CVE-2023-6040
An out-of-bounds access vulnerability involving netfilter was reported and fixed as: f1082dd31fe4 (netfilter: nf_tables: Reject tables of unsupported family)
Published 2024-01-12 · Analyzed
7.8EPSS 0.003
CVE-2024-36883
net: fix out-of-bounds access in ops_init
Published 2024-05-30 · Modified
7.8EPSS 0.003
CVE-2023-52656
io_uring: drop any code related to SCM_RIGHTS
Published 2024-05-13 · Modified
7.8EPSS 0.003
CVE-2023-1872
Use-after-free in Linux kernel's io_uring subsystem
Published 2023-04-12 · Modified
7.8EPSS 0.003
CVE-2022-1419
The root cause of this vulnerability is that the ioctl$DRM_IOCTL_MODE_DESTROY_DUMB can decrease refcount of *drm_vgem_gem_object *(created in *vgem_gem_dumb_create*) concurrently, and *vgem_gem_dumb_create *will access the freed drm_vgem_gem_object.
Published 2022-05-31 · Modified
7.8EPSS 0.003
CVE-2023-0950
Array Index UnderFlow in Calc Formula Parsing
Published 2023-05-25 · Modified
7.8EPSS 0.003
CVE-2024-27052
wifi: rtl8xxxu: add cancel_work_sync() for c2hcmd_work
Published 2024-05-01 · Modified
7.8EPSS 0.003
CVE-2023-23559
In rndis_query_oid in drivers/net/wireless/rndis_wlan.c in the Linux kernel through 6.1.5, there is an integer overflow in an addition.
Published 2023-01-13 · Modified
7.8EPSS 0.003
CVE-2022-3176
Use-after-free in io_uring in Linux Kernel
Published 2022-09-16 · Modified
7.8EPSS 0.003
← Prev32 / 86Next →