VendorsDebiandebian_linuxall versions
Vulnerabilities

Debian Debian Linux

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10063CVEs
CVE-2025-39848
ax25: properly unshare skbs in ax25_kiss_rcv()
Published 2025-09-19 · Modified
8.8EPSS 0.002
CVE-2025-39806
HID: multitouch: fix slab out-of-bounds access in mt_report_fixup()
Published 2025-09-16 · Modified
8.8EPSS 0.002
CVE-2025-39864
wifi: cfg80211: fix use-after-free in cmp_bss()
Published 2025-09-19 · Modified
8.8EPSS 0.002
CVE-2025-38512
wifi: prevent A-MSDU attacks in mesh networks
Published 2025-08-16 · Modified
8.8EPSS 0.002
CVE-2025-39849
wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result()
Published 2025-09-19 · Modified
8.8EPSS 0.002
CVE-2025-39827
net: rose: include node references in rose_neigh refcount
Published 2025-09-16 · Modified
8.8EPSS 0.002
CVE-2025-39826
net: rose: convert 'use' field to refcount_t
Published 2025-09-16 · Modified
8.8EPSS 0.002
CVE-2025-38074
vhost-scsi: protect vq->log_used with vq->mutex
Published 2025-06-18 · Modified
8.8EPSS 0.002
CVE-2024-52301
Laravel allows environment manipulation via query string
Published 2024-11-12 · Analyzed
8.7EPSS 0.448
CVE-2020-11026
Specially crafted filenames in WordPress leading to XSS
Published 2020-04-30 · Modified
8.7EPSS 0.021
CVE-2020-26237
Prototype Pollution in highlight.js
Published 2020-11-24 · Modified
8.7EPSS 0.013
CVE-2021-22543
Improper memory handling in Linux KVM
Published 2021-05-26 · Modified
8.7EPSS 0.007
CVE-2025-37936
perf/x86/intel: KVM: Mask PEBS_ENABLE loaded for guest with vCPU's value.
Published 2025-05-20 · Modified
8.7EPSS 0.002
CVE-2016-1286
named in ISC BIND 9.x before 9.9.8-P4 and 9.10.x before 9.10.3-P4 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted signature record for a DNAME record, related to db.c and resolver.c.
Published 2016-03-09 · Modified
8.6EPSS 0.621
CVE-2021-21349
A Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local host
Published 2021-03-22 · Analyzed
8.6EPSS 0.468
CVE-2021-3517
There is a flaw in the xml entity encoding functionality of libxml2 in versions before 2.9.11. An attacker who is able to supply a crafted file to be processed by an application linked with the affected functionality of libxml2 could trigger an out-of-bounds read. The most likely impact of this flaw is to application availability, with some potential impact to confidentiality and integrity if an attacker is able to use memory information to further exploit the application.
Published 2021-05-19 · Modified
8.6EPSS 0.170
CVE-2018-18284
Artifex Ghostscript 9.25 and earlier allows attackers to bypass a sandbox protection mechanism via vectors involving the 1Policy operator.
Published 2018-10-19 · Modified
8.6EPSS 0.163
CVE-2020-8616
BIND does not sufficiently limit the number of fetches performed when processing referrals
Published 2020-05-19 · Modified
8.6EPSS 0.106
CVE-2018-17961
Artifex Ghostscript 9.25 and earlier allows attackers to bypass a sandbox protection mechanism via vectors involving errorhandler setup. NOTE: this issue exists because of an incomplete fix for CVE-2018-17183.
Published 2018-10-15 · Modified
8.61 PoCEPSS 0.100
CVE-2020-25097
An issue was discovered in Squid through 4.13 and 5.x through 5.0.4. Due to improper input validation, it allows a trusted client to perform HTTP Request Smuggling and access services otherwise forbidden by the security controls. This occurs for certain uri_whitespace configuration settings.
Published 2021-03-19 · Modified
8.6EPSS 0.073
CVE-2022-20770
ClamAV CHM File Parsing Denial of Service Vulnerability Affecting Cisco Products: April 2022
Published 2022-05-04 · Modified
8.6EPSS 0.071
CVE-2015-1779
The VNC websocket frame decoder in QEMU allows remote attackers to cause a denial of service (memory and CPU consumption) via a large (1) websocket payload or (2) HTTP headers section.
Published 2016-01-12 · Modified
8.6EPSS 0.066
CVE-2020-24606
Squid before 4.13 and 5.x before 5.0.4 allows a trusted peer to perform Denial of Service by consuming all available CPU cycles during handling of a crafted Cache Digest response message. This only occurs when cache_peer is used with the cache digests feature. The problem exists because peerDigestHandleReply() livelocking in peer_digest.cc mishandles EOF.
Published 2020-08-24 · Modified
8.6EPSS 0.050
CVE-2016-4001
Buffer overflow in the stellaris_enet_receive function in hw/net/stellaris_enet.c in QEMU, when the Stellaris ethernet controller is configured to accept large packets, allows remote attackers to cause a denial of service (QEMU crash) via a large packet.
Published 2016-05-23 · Modified
8.6EPSS 0.049
CVE-2020-27153
In BlueZ before 5.55, a double free was found in the gatttool disconnect_cb() routine from shared/att.c. A remote attacker could potentially cause a denial of service or code execution, during service discovery, due to a redundant disconnect MGMT event.
Published 2020-10-15 · Modified
8.6EPSS 0.043
CVE-2019-10185
It was found that icedtea-web up to and including 1.7.2 and 1.8.2 was vulnerable to a zip-slip attack during auto-extraction of a JAR file. An attacker could use this flaw to write files to arbitrary locations. This could also be used to replace the main running application and, possibly, break out of the sandbox.
Published 2019-07-31 · Modified
8.6EPSS 0.040
CVE-2017-9066
In WordPress before 4.7.5, there is insufficient redirect validation in the HTTP class, leading to SSRF.
Published 2017-05-18 · Modified
8.6EPSS 0.037
CVE-2016-4029
WordPress before 4.5 does not consider octal and hexadecimal IP address formats when determining an intranet address, which allows remote attackers to bypass an intended SSRF protection mechanism via a crafted address.
Published 2016-08-07 · Modified
8.6EPSS 0.035
CVE-2020-8161
A directory traversal vulnerability exists in rack < 2.2.0 that allows an attacker perform directory traversal vulnerability in the Rack::Directory app that is bundled with Rack which could result in information disclosure.
Published 2020-07-02 · Modified
8.6EPSS 0.034
CVE-2017-15119
The Network Block Device (NBD) server in Quick Emulator (QEMU) before 2.11 is vulnerable to a denial of service issue. It could occur if a client sent large option requests, making the server waste CPU time on reading up to 4GB per request. A client could use this flaw to keep the NBD server from serving other requests, resulting in DoS.
Published 2018-07-27 · Modified
8.6EPSS 0.033
CVE-2021-37701
Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning using symbolic links
Published 2021-08-31 · Modified
8.6EPSS 0.033
CVE-2018-5129
A lack of parameter validation on IPC messages results in a potential out-of-bounds write through malformed IPC messages. This can potentially allow for sandbox escape through memory corruption in the parent process. This vulnerability affects Thunderbird < 52.7, Firefox ESR < 52.7, and Firefox < 59.
Published 2018-06-11 · Modified
8.6EPSS 0.030
CVE-2015-8702
The DNS::GetResult function in dns.cpp in InspIRCd before 2.0.19 allows remote DNS servers to cause a denial of service (netsplit) via an invalid character in a PTR response, as demonstrated by a "\032" (whitespace) character in a hostname.
Published 2016-04-12 · Modified
8.6EPSS 0.023
CVE-2022-2132
A permissive list of allowed inputs flaw was found in DPDK. This issue allows a remote attacker to cause a denial of service triggered by sending a crafted Vhost header to DPDK.
Published 2022-08-31 · Modified
8.6EPSS 0.022
CVE-2021-28706
guests may exceed their designated memory limit When a guest is permitted to have close to 16TiB of memory, it may be able to issue hypercalls to increase its memory allocation beyond the administrator established limit. This is a result of a calculation done with 32-bit precision, which may overflow. It would then only be the overflowed (and hence small) number which gets compared against the established upper bound.
Published 2021-11-24 · Modified
8.6EPSS 0.022
CVE-2017-5448
An out-of-bounds write in "ClearKeyDecryptor" while decrypting some Clearkey-encrypted media content. The "ClearKeyDecryptor" code runs within the Gecko Media Plugin (GMP) sandbox. If a second mechanism is found to escape the sandbox, this vulnerability allows for the writing of arbitrary data within memory, resulting in a potentially exploitable crash. This vulnerability affects Firefox ESR < 45.9, Firefox ESR < 52.1, and Firefox < 53.
Published 2018-06-11 · Modified
8.6EPSS 0.021
CVE-2017-5660
There is a vulnerability in Apache Traffic Server (ATS) 6.2.0 and prior and 7.0.0 and prior with the Host header and line folding. This can have issues when interacting with upstream proxies and the wrong host being used.
Published 2018-02-27 · Modified
8.6EPSS 0.019
CVE-2021-23434
Prototype Pollution
Published 2021-08-27 · Modified
8.6EPSS 0.019
CVE-2021-37712
Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning using symbolic links
Published 2021-08-31 · Modified
8.6EPSS 0.019
CVE-2017-9062
In WordPress before 4.7.5, there is improper handling of post meta data values in the XML-RPC API.
Published 2017-05-18 · Modified
8.6EPSS 0.018
← Prev59 / 252Next →