VendorsDebiandebian_linux12.0
Vulnerabilities

Debian Debian Linux 12.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

292CVEs
CVE-2023-4015
Use-after-free in Linux kernel's netfilter: nf_tables component
Published 2023-09-06 · Modified
7.8EPSS 0.003
CVE-2023-3611
Out-of-bounds write in Linux kernel's net/sched: sch_qfq component
Published 2023-07-21 · Modified
7.8EPSS 0.003
CVE-2023-37208
When opening Diagcab files, Firefox did not warn the user that these files may contain malicious code. This vulnerability affects Firefox < 115, Firefox ESR < 102.13, and Thunderbird < 102.13.
Published 2023-07-05 · Modified
7.8EPSS 0.002
CVE-2023-6478
Xorg-x11-server: out-of-bounds memory read in rrchangeoutputproperty and rrchangeproviderproperty
Published 2023-12-13 · Modified
7.6EPSS 0.016
CVE-2023-44487
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
Published 2023-10-10 · Analyzed
7.5KEV1 PoCEPSS 1.000
CVE-2023-34966
Samba: infinite loop in mdssvc rpc service for spotlight
Published 2023-07-20 · Modified
7.5EPSS 0.624
CVE-2023-28709
Apache Tomcat: Fix for CVE-2023-24998 is incomplete
Published 2023-05-22 · Modified
7.5EPSS 0.480
CVE-2023-45363
An issue was discovered in ApiPageSet.php in MediaWiki before 1.35.12, 1.36.x through 1.39.x before 1.39.5, and 1.40.x before 1.40.1. It allows attackers to cause a denial of service (unbounded loop and RequestTimeoutException) when querying pages redirected to other variants with redirects and converttitles set.
Published 2023-10-09 · Modified
7.5EPSS 0.227
CVE-2023-4050
In some cases, an untrusted input stream was copied to a stack buffer without checking its size. This resulted in a potentially exploitable crash which could have led to a sandbox escape. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1.
Published 2023-08-01 · Modified
7.5EPSS 0.126
CVE-2023-1992
RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
Published 2023-04-12 · Modified
7.5EPSS 0.046
CVE-2023-2828
named's configured cache size limit can be significantly exceeded
Published 2023-06-21 · Modified
7.5EPSS 0.038
CVE-2023-36478
HTTP/2 HPACK integer overflow and buffer allocation
Published 2023-10-10 · Modified
7.5EPSS 0.038
CVE-2023-5363
Incorrect cipher key & IV length processing
Published 2023-10-24 · Modified
7.5EPSS 0.033
CVE-2023-36053
In Django 3.2 before 3.2.20, 4 before 4.1.10, and 4.2 before 4.2.3, EmailValidator and URLValidator are subject to a potential ReDoS (regular expression denial of service) attack via a very large number of domain name labels of emails and URLs.
Published 2023-07-03 · Modified
7.5EPSS 0.030
CVE-2023-36661
Shibboleth XMLTooling before 3.2.4, as used in OpenSAML and Shibboleth Service Provider, allows SSRF via a crafted KeyInfo element. (This is fixed in, for example, Shibboleth Service Provider 3.4.1.3 on Windows.)
Published 2023-06-25 · Modified
7.5EPSS 0.029
CVE-2023-2911
Exceeding the recursive-clients quota may cause named to terminate unexpectedly when stale-answer-client-timeout is set to 0
Published 2023-06-21 · Modified
7.5EPSS 0.025
CVE-2023-31490
An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_attr_psid_sub() function.
Published 2023-05-09 · Modified
7.5EPSS 0.022
CVE-2023-30631
Apache Traffic Server: Configuration option to block the PUSH method in ATS didn't work
Published 2023-06-14 · Modified
7.5EPSS 0.020
CVE-2023-44488
VP9 in libvpx before 1.13.1 mishandles widths, leading to a crash related to encoding.
Published 2023-09-30 · Modified
7.5EPSS 0.019
CVE-2023-38802
FRRouting FRR 7.5.1 through 9.0 and Pica8 PICOS 4.3.3.2 allow a remote attacker to cause a denial of service via a crafted BGP update with a corrupted attribute 23 (Tunnel Encapsulation).
Published 2023-08-29 · Modified
7.5EPSS 0.018
CVE-2022-36440
A reachable assertion was found in Frrouting frr-bgpd 8.3.0 in the peek_for_as4_capability function. Attackers can maliciously construct BGP open packets and send them to BGP peers running frr-bgpd, resulting in DoS.
Published 2023-04-03 · Modified
7.5EPSS 0.016
CVE-2023-2879
GDSDB infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file
Published 2023-05-26 · Modified
7.5EPSS 0.016
CVE-2022-47184
Apache Traffic Server: The TRACE method can be use to disclose network information
Published 2023-06-14 · Modified
7.5EPSS 0.015
CVE-2023-20900
A malicious actor that has been granted Guest Operation Privileges https://docs.vmware.com/en/VMware-vSphere/8.0/vsphere-security/GUID-6A952214-0E5E-4CCF-9D2A-90948FF643EC.html  in a target virtual machine may be able to elevate their privileges if that target virtual machine has been assigned a more privileged Guest Alias https://vdc-download.vmware.com/vmwb-repository/dcr-public/d1902b0e-d479-46bf-8ac9-cee0e31e8ec0/07ce8dbd-db48-4261-9b8f-c6d3ad8ba472/vim.vm.guest.AliasManager.html .
Published 2023-08-31 · Modified
7.5EPSS 0.013
CVE-2023-41358
An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c processes NLRIs if the attribute length is zero.
Published 2023-08-29 · Modified
7.5EPSS 0.013
CVE-2023-46849
Using the --fragment option in certain configuration setups OpenVPN version 2.6.0 to 2.6.6 allows an attacker to trigger a divide by zero behaviour which could cause an application crash, leading to a denial of service.
Published 2023-11-11 · Modified
7.5EPSS 0.012
CVE-2023-39534
Malformed GAP submessage triggers assertion failure
Published 2023-08-11 · Modified
7.5EPSS 0.010
CVE-2023-39949
Improper validation of sequence numbers leading to remotely reachable assertion failure
Published 2023-08-11 · Modified
7.5EPSS 0.010
CVE-2023-39948
Uncaught fastcdr exception (Unexpected CDR type received) crashing fastdds
Published 2023-08-11 · Modified
7.5EPSS 0.010
CVE-2023-4048
An out-of-bounds read could have led to an exploitable crash when parsing HTML with DOMParser in low memory situations. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1.
Published 2023-08-01 · Modified
7.5EPSS 0.009
CVE-2023-4055
When the number of cookies per domain was exceeded in `document.cookie`, the actual cookie jar sent to the host was no longer consistent with expected cookie jar state. This could have caused requests to be sent with some cookies missing. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1.
Published 2023-08-01 · Modified
7.5EPSS 0.007
CVE-2023-34058
VMware Tools contains a SAML token signature bypass vulnerability. A malicious actor that has been granted Guest Operation Privileges https://docs.vmware.com/en/VMware-vSphere/8.0/vsphere-security/GUID-6A952214-0E5E-4CCF-9D2A-90948FF643EC.html  in a target virtual machine may be able to elevate their privileges if that target virtual machine has been assigned a more privileged Guest Alias https://vdc-download.vmware.com/vmwb-repository/dcr-public/d1902b0e-d479-46bf-8ac9-cee0e31e8ec0/07ce8dbd-db48-4261-9b8f-c6d3ad8ba472/vim.vm.guest.AliasManager.html .
Published 2023-10-27 · Modified
7.5EPSS 0.007
CVE-2023-3417
File Extension Spoofing using the Text Direction Override Character
Published 2023-07-24 · Modified
7.5EPSS 0.007
CVE-2025-62603
FastDDS has Out-of-memory while parsing GenericMessage when DDS Security is enabled
Published 2026-02-03 · Analyzed
7.5EPSS 0.005
CVE-2025-62602
FastDDS has heap buffer overflow in readData via Manipulated DATA Submessage when DDS Security is enabled
Published 2026-02-03 · Analyzed
7.5EPSS 0.005
CVE-2023-46234
browserify-sign vulnerable via an upper bound check issue in `dsaVerify` that leads to a signature forgery attack
Published 2023-10-26 · Analyzed
7.5EPSS 0.005
CVE-2026-1940
Gstreamer: incomplete fix of cve-2026-1940
Published 2026-03-23 · Analyzed
7.5EPSS 0.002
CVE-2023-21930
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 8u361, 8u361-perf, 11.0.18, 17.0.6, 20; Oracle GraalVM Enterprise Edition: 20.3.9, 21.3.5 and 22.3.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data as well as unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 7.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N).
Published 2023-04-18 · Modified
7.4EPSS 0.013
CVE-2023-34059
open-vm-tools contains a file descriptor hijack vulnerability in the vmware-user-suid-wrapper. A malicious actor with non-root privileges may be able to hijack the /dev/uinput file descriptor allowing them to simulate user inputs.
Published 2023-10-27 · Modified
7.4EPSS 0.004
CVE-2022-41804
Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2023-08-11 · Modified
7.2EPSS 0.003
← Prev4 / 8Next →