VendorsDebiandebian_linuxall versions
Vulnerabilities

Debian Debian Linux

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10063CVEs
CVE-2019-14462
An issue was discovered in libmodbus before 3.0.7 and 3.1.x before 3.1.5. There is an out-of-bounds read for the MODBUS_FC_WRITE_MULTIPLE_COILS case, aka VD-1302.
Published 2019-07-31 · Modified
9.1EPSS 0.020
CVE-2018-7556
LimeSurvey 2.6.x before 2.6.7, 2.7x.x before 2.73.1, and 3.x before 3.4.2 mishandles application/controller/InstallerController.php after installation, which allows remote attackers to access the configuration file.
Published 2018-02-28 · Modified
9.1EPSS 0.020
CVE-2022-23959
In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cache Plus) 4.1.x before 4.1.11r6 and 6.0.x before 6.0.9r4, request smuggling can occur for HTTP/1 connections.
Published 2022-01-26 · Modified
9.1EPSS 0.020
CVE-2019-14463
An issue was discovered in libmodbus before 3.0.7 and 3.1.x before 3.1.5. There is an out-of-bounds read for the MODBUS_FC_WRITE_MULTIPLE_REGISTERS case, aka VD-1301.
Published 2019-07-31 · Modified
9.1EPSS 0.019
CVE-2022-35255
A weak randomness in WebCrypto keygen vulnerability exists in Node.js 18 due to a change with EntropySource() in SecretKeyGenTraits::DoKeyGen() in src/crypto/crypto_keygen.cc. There are two problems with this: 1) It does not check the return value, it assumes EntropySource() always succeeds, but it can (and sometimes will) fail. 2) The random data returned byEntropySource() may not be cryptographically strong and therefore not suitable as keying material.
Published 2022-12-05 · Modified
9.1EPSS 0.019
CVE-2024-37371
In MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can cause invalid memory reads during GSS message token handling by sending message tokens with invalid length fields.
Published 2024-06-28 · Modified
9.1EPSS 0.019
CVE-2023-39356
Missing offset validation leading to Out-of-Bounds Read in FreeRDP
Published 2023-08-31 · Modified
9.1EPSS 0.018
CVE-2017-14122
unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a stack-based buffer over-read in unrarlib.c, related to ExtrFile and stricomp.
Published 2017-09-03 · Modified
9.1EPSS 0.018
CVE-2023-44981
Apache ZooKeeper: Authorization bypass in SASL Quorum Peer Authentication
Published 2023-10-11 · Modified
9.1EPSS 0.017
CVE-2023-40181
Integer-Underflow leading to Out-Of-Bound Read in FreeRDP
Published 2023-08-31 · Modified
9.1EPSS 0.017
CVE-2021-43400
An issue was discovered in gatt-database.c in BlueZ 5.61. A use-after-free can occur when a client disconnects during D-Bus processing of a WriteValue call.
Published 2021-11-04 · Modified
9.1EPSS 0.017
CVE-2024-27053
wifi: wilc1000: fix RCU usage in connect path
Published 2024-05-01 · Modified
9.1EPSS 0.016
CVE-2012-2239
Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 allows remote attackers to read arbitrary files or create TCP connections via an XML external entity (XXE) injection attack, as demonstrated by reading config.php.
Published 2012-11-24 · Modified
9.1EPSS 0.016
CVE-2020-15472
In nDPI through 3.2, the H.323 dissector is vulnerable to a heap-based buffer over-read in ndpi_search_h323 in lib/protocols/h323.c, as demonstrated by a payload packet length that is too short.
Published 2020-07-01 · Modified
9.1EPSS 0.015
CVE-2023-40188
Out-Of-Bounds Read in FreeRDP
Published 2023-08-31 · Modified
9.1EPSS 0.015
CVE-2023-39353
Missing offset validation leading to Out Of Bound Read in FreeRDP
Published 2023-08-31 · Modified
9.1EPSS 0.015
CVE-2022-41649
A heap out of bounds read vulnerability exists in the handling of IPTC data while parsing TIFF images in OpenImageIO v2.3.19.0. A specially-crafted TIFF file can cause a read of adjacent heap memory, which can leak sensitive process information. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-12-23 · Modified
9.1EPSS 0.015
CVE-2009-5042
python-docutils allows insecure usage of temporary files
Published 2019-10-31 · Modified
9.1EPSS 0.014
CVE-2024-35960
net/mlx5: Properly link new fs rules into the tree
Published 2024-05-20 · Modified
9.1EPSS 0.014
CVE-2024-47685
netfilter: nf_reject_ipv6: fix nf_reject_ip6_tcphdr_put()
Published 2024-10-21 · Modified
9.1EPSS 0.014
CVE-2024-35845
wifi: iwlwifi: dbg-tlv: ensure NUL termination
Published 2024-05-17 · Modified
9.1EPSS 0.012
CVE-2023-41360
An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c can read the initial byte of the ORF header in an ahead-of-stream situation.
Published 2023-08-29 · Modified
9.1EPSS 0.012
CVE-2022-23493
Out of Bound Read in xrdp
Published 2022-12-09 · Modified
9.1EPSS 0.009
CVE-2022-23483
Out-of-Bound Read in libxrdp
Published 2022-12-09 · Modified
9.1EPSS 0.009
CVE-2024-5197
Integer overflow in libvpx
Published 2024-06-03 · Analyzed
9.1EPSS 0.008
CVE-2022-23481
Out-of-Bound Read in xrdp
Published 2022-12-09 · Modified
9.1EPSS 0.008
CVE-2022-23482
Out-of-Bound Read in xrdp
Published 2022-12-09 · Modified
9.1EPSS 0.008
CVE-2024-26665
tunnels: fix out of bounds access when building IPv6 PMTU error
Published 2024-04-02 · Modified
9.1EPSS 0.007
CVE-2025-38728
smb3: fix for slab out of bounds on mount to ksmbd
Published 2025-09-04 · Modified
9.1EPSS 0.003
CVE-2025-38365
btrfs: fix a race between renames and directory logging
Published 2025-07-25 · Modified
9.1EPSS 0.003
CVE-2021-40438
mod_proxy SSRF
Published 2021-09-16 · Analyzed
9.0KEVEPSS 1.000
CVE-2021-45046
Apache Log4j2 Thread Context Message Pattern and Context Lookup Pattern vulnerable to a denial of service attack
Published 2021-12-14 · Analyzed
9.0KEVEPSS 1.000
CVE-2017-11610
The XML-RPC server in supervisor before 3.0.1, 3.1.x before 3.1.4, 3.2.x before 3.2.4, and 3.3.x before 3.3.3 allows remote authenticated users to execute arbitrary commands via a crafted XML-RPC request, related to nested supervisord namespace lookups.
Published 2017-08-23 · Modified
9.01 PoCEPSS 0.874
CVE-2019-0193
In Apache Solr, the DataImportHandler, an optional but popular module to pull in data from databases and other sources, has a feature in which the whole DIH configuration can come from a request's "dataConfig" parameter. The debug mode of the DIH admin screen uses this to allow convenient debugging / development of a DIH config. Since a DIH config can contain scripts, this parameter is a security risk. Starting with version 8.2.0 of Solr, use of this parameter requires setting the Java System property "enable.dih.dataConfigParam" to true.
Published 2019-08-01 · Analyzed
9.0KEVEPSS 0.835
CVE-2021-44142
The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and interoperability with a Netatalk 3 AFP fileserver." Samba versions prior to 4.13.17, 4.14.12 and 4.15.5 with vfs_fruit configured allow out-of-bounds heap read and write via specially crafted extended file attributes. A remote attacker with write access to extended file attributes can execute arbitrary code with the privileges of smbd, typically root.
Published 2022-02-21 · Modified
9.0EPSS 0.734
CVE-2019-14287
In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and session PAM modules, and can cause incorrect logging, by invoking sudo with a crafted user ID. For example, this allows bypass of !root configuration, and USER= logging, for a "sudo -u \#$((0xffffffff))" command.
Published 2019-10-17 · Modified
9.01 PoCEPSS 0.638
CVE-2019-18610
An issue was discovered in manager.c in Sangoma Asterisk through 13.x, 16.x, 17.x and Certified Asterisk 13.21 through 13.21-cert4. A remote authenticated Asterisk Manager Interface (AMI) user without system authorization could use a specially crafted Originate AMI request to execute arbitrary system commands.
Published 2019-11-22 · Modified
9.0EPSS 0.501
CVE-2021-27928
A remote code execution issue was discovered in MariaDB 10.2 before 10.2.37, 10.3 before 10.3.28, 10.4 before 10.4.18, and 10.5 before 10.5.9; Percona Server through 2021-03-03; and the wsrep patch through 2021-03-03 for MySQL. An untrusted search path leads to eval injection, in which a database SUPER user can execute OS commands after modifying wsrep_provider and wsrep_notify_cmd. NOTE: this does not affect an Oracle product.
Published 2021-03-19 · Modified
9.01 PoCEPSS 0.384
CVE-2017-14867
Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x before 2.13.6, and 2.14.x before 2.14.2 uses unsafe Perl scripts to support subcommands such as cvsserver, which allows attackers to execute arbitrary OS commands via shell metacharacters in a module name. The vulnerable code is reachable via git-shell even without CVS support.
Published 2017-09-28 · Modified
9.0EPSS 0.360
CVE-2020-13936
Velocity Sandbox Bypass
Published 2021-03-10 · Modified
9.0EPSS 0.227
← Prev33 / 252Next →