← Back

Debian Linux

debian_linux

Vendor: Debian • 10,000 CVEs

CVEs (10,000)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
3Debian
ExmhMandrakesoft
4Debian Linux
ExmhMandrake Linux+1 more
Apr 16, 2026
Mar 12, 2001
N/A· v4
N/A· v3
1.2 LOW· v2
exmh 2.2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the exmhErrorMsg temporary file.
2Debian
Sam Lantinga
2Debian Linux
Splitvt
Apr 16, 2026
Mar 12, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
Multiple buffer overflows in splitvt before 1.6.5 allow local users to execute arbitrary commands.
2Debian
Sam Lantinga
2Debian Linux
Splitvt
Apr 16, 2026
Mar 12, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
Format string vulnerability in splitvt before 1.6.5 allows local users to execute arbitrary commands via the -rcfile command line argument.
5Debian
DigitalNetbsd+2 more
5Debian Linux
LinuxNetbsd+2 more
Apr 16, 2026
Mar 12, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
traceroute in NetBSD 1.3.3 and Linux systems allows local unprivileged users to modify the source address of the packets, which could be used in spoofing attacks.
5Debian
DigitalNetbsd+2 more
5Debian Linux
LinuxNetbsd+2 more
Apr 16, 2026
Mar 12, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
traceroute in NetBSD 1.3.3 and Linux systems allows local users to flood other systems by providing traceroute with a large waittime (-w) option, which is not parsed properly and sets the time delay for sending packets t...Show more
traceroute in NetBSD 1.3.3 and Linux systems allows local users to flood other systems by providing traceroute with a large waittime (-w) option, which is not parsed properly and sets the time delay for sending packets to zero.Show less
1Debian
1Debian Linux
Apr 16, 2026
Feb 12, 2001
N/A· v4
N/A· v3
2.1 LOW· v2
dialog before 0.9a-20000118-3bis in Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink attack.
1Debian
1Debian Linux
Apr 16, 2026
Jan 9, 2001
N/A· v4
N/A· v3
4.6 MEDIUM· v2
fshd (fsh daemon) in Debian GNU/Linux allows local users to overwrite files of other users via a symlink attack.
2Debian
Isc
2Bind
Debian Linux
Apr 16, 2026
Dec 19, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by sending an SRV record to the server, aka the "srv bug."
5Debian
MandrakesoftRedhat+2 more
5Debian Linux
LinuxMandrake Linux+2 more
Apr 16, 2026
Nov 14, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages.
13Caldera
ConectivaDebian+10 more
16Aix
Debian LinuxImmunix+13 more
Apr 16, 2026
Nov 14, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
5Conectiva
DebianRedhat+2 more
5Debian Linux
LinuxLinux+2 more
Apr 16, 2026
Jul 16, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote attackers to gain root privileges.
2Debian
Freebsd
2Debian Linux
Freebsd
Apr 16, 2026
Jul 2, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in Canna input system allows remote attackers to execute arbitrary commands via an SR_INIT command with a long user name or group name.
3Debian
MandrakesoftRedhat
3Debian Linux
LinuxMandrake Linux
Apr 16, 2026
Jun 21, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in fld program in Kanji on Console (KON) package on Linux may allow local users to gain root privileges via an input file containing long CHARSET_REGISTRY or CHARSET_ENCODING settings.
3Debian
MandrakesoftRedhat
3Debian Linux
LinuxMandrake Linux
Apr 16, 2026
Jun 21, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in kon program in Kanji on Console (KON) package on Linux may allow local users to gain root privileges via a long -StartupMessage parameter.
1Debian
1Debian Linux
Apr 16, 2026
Jun 21, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
CUPS (Common Unix Printing System) 1.04 and earlier allows remote attackers to cause a denial of service by authenticating with a user name that does not exist or does not have a shadow password.
1Debian
1Debian Linux
Apr 16, 2026
Jun 21, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
CUPS (Common Unix Printing System) 1.04 and earlier allows remote attackers to cause a denial of service via a CGI POST request.
1Debian
1Debian Linux
Apr 16, 2026
Jun 21, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
CUPS (Common Unix Printing System) 1.04 and earlier allows remote attackers to cause a denial of service via a malformed IPP request.
1Debian
1Debian Linux
Apr 16, 2026
Jun 16, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
CUPS (Common Unix Printing System) 1.04 and earlier does not properly delete request files, which allows a remote attacker to cause a denial of service.
3Debian
LinuxRedhat
3Debian Linux
LinuxLinux Kernel
Apr 16, 2026
Mar 27, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
IP masquerading in Linux 2.2.x allows remote attackers to route UDP packets through the internal interface by modifying the external source IP address and port number to match those of an established connection.
4Alessandro Rubini
DebianRedhat+1 more
4Debian Linux
GpmLinux+1 more
Apr 16, 2026
Mar 22, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
gpm-root in the gpm package does not properly drop privileges, which allows local users to gain privileges by starting a utility from gpm-root.