← Back

Linux

linux

Vendor: Gentoo • 136 CVEs

CVEs (136)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
3Debian
GentooMantis
3Debian Linux
LinuxMantis
Apr 16, 2026
Sep 28, 2005
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in view_all_set.php in Mantis 0.19.0a1 through 1.0.0a3 allows remote attackers to inject arbitrary web script or HTML via the dir parameter, as identified by bug#0005959, and a di...Show more
Cross-site scripting (XSS) vulnerability in view_all_set.php in Mantis 0.19.0a1 through 1.0.0a3 allows remote attackers to inject arbitrary web script or HTML via the dir parameter, as identified by bug#0005959, and a different vulnerability than CVE-2005-3090.Show less
5Gentoo
LblMandrakesoft+2 more
5Fedora Core
LinuxMandrake Linux+2 more
Apr 16, 2026
Jun 10, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The bgp_update_print function in tcpdump 3.x does not properly handle a -1 return value from the decode_prefix4 function, which allows remote attackers to cause a denial of service (infinite loop) via a crafted BGP packe...Show more
The bgp_update_print function in tcpdump 3.x does not properly handle a -1 return value from the decode_prefix4 function, which allows remote attackers to cause a denial of service (infinite loop) via a crafted BGP packet.Show less
2Gentoo
Igor Khasilev
2Linux
Oops Proxy Server
Apr 16, 2026
May 2, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Format string vulnerability in the my_xlog function in lib.c for Oops! Proxy Server 1.5.23 and earlier, as called by the auth functions in the passwd_mysql and passwd_pgsql modules, may allow attackers to execute arbitra...Show more
Format string vulnerability in the my_xlog function in lib.c for Oops! Proxy Server 1.5.23 and earlier, as called by the auth functions in the passwd_mysql and passwd_pgsql modules, may allow attackers to execute arbitrary code via a URL.Show less
7Freebsd
GentooGnu+4 more
13Enterprise Linux
Enterprise Linux DesktopFreebsd+10 more
Apr 16, 2026
May 2, 2005
N/A· v4
N/A· v3
3.7 LOW· v2
Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a gzipped file, allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose perm...Show more
Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a gzipped file, allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by gzip after the decompression is complete.Show less
4Debian
GentooRedhat+1 more
5Debian Linux
Enterprise LinuxEnterprise Linux Desktop+2 more
Apr 16, 2026
May 2, 2005
N/A· v4
N/A· v3
2.1 LOW· v2
The DBI library (libdbi-perl) for Perl allows local users to overwrite arbitrary files via a symlink attack on a temporary PID file.
6Debian
GentooGraphicsmagick+3 more
6Debian Linux
GraphicsmagickImagemagick+3 more
Apr 16, 2026
May 2, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Heap-based buffer overflow in psd.c for ImageMagick 6.1.0, 6.1.7, and possibly earlier versions allows remote attackers to execute arbitrary code via a .PSD image file with a large number of layers.
15Ascii
CstexDebian+12 more
22Advanced Linux Environment
CstetexCups+19 more
Apr 16, 2026
Apr 27, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
The patch for integer overflow vulnerabilities in Xpdf 2.0 and 3.0 (CVE-2004-0888) is incomplete for 64-bit architectures on certain Linux distributions such as Red Hat, which could leave Xpdf users exposed to the origin...Show more
The patch for integer overflow vulnerabilities in Xpdf 2.0 and 3.0 (CVE-2004-0888) is incomplete for 64-bit architectures on certain Linux distributions such as Red Hat, which could leave Xpdf users exposed to the original vulnerabilities.Show less
5Conectiva
GentooKde+2 more
6Fedora Core
KdeLinux+3 more
Apr 16, 2026
Apr 22, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Kommander in KDE 3.2 through KDE 3.4.0 executes data files without confirmation from the user, which allows remote attackers to execute arbitrary code.
6Debian
GentooMidnight Commander+3 more
8Debian Linux
Enterprise LinuxLinux+5 more
Apr 16, 2026
Apr 14, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer underflow in extfs.c in Midnight Commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code.
6Debian
GentooMidnight Commander+3 more
8Debian Linux
Enterprise LinuxLinux+5 more
Apr 16, 2026
Apr 14, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
fish.c in midnight commander allows remote attackers to execute arbitrary programs via "insecure filename quoting," possibly using shell metacharacters.
6Debian
GentooMidnight Commander+3 more
8Debian Linux
Enterprise LinuxLinux+5 more
Apr 16, 2026
Apr 14, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
direntry.c in Midnight Commander (mc) 4.5.55 and earlier allows attackers to cause a denial of service by "manipulating non-existing file handles."
6Debian
GentooMidnight Commander+3 more
8Debian Linux
Enterprise LinuxLinux+5 more
Apr 16, 2026
Apr 14, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service via "use of already freed memory."
6Debian
GentooMidnight Commander+3 more
8Debian Linux
Enterprise LinuxLinux+5 more
Apr 16, 2026
Apr 14, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service by causing mc to free unallocated memory.
6Debian
GentooMidnight Commander+3 more
8Debian Linux
Enterprise LinuxLinux+5 more
Apr 16, 2026
Apr 14, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service by triggering a null dereference.
6Debian
GentooMidnight Commander+3 more
8Debian Linux
Enterprise LinuxLinux+5 more
Apr 16, 2026
Apr 14, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service via "a corrupt section header."
6Debian
GentooMidnight Commander+3 more
8Debian Linux
Enterprise LinuxLinux+5 more
Apr 16, 2026
Apr 14, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service (infinite loop) via unknown attack vectors.
6Debian
GentooMidnight Commander+3 more
8Debian Linux
Enterprise LinuxLinux+5 more
Apr 16, 2026
Apr 14, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple buffer overflows in Midnight Commander (mc) 4.5.55 and earlier allow remote attackers to have an unknown impact.
6Debian
GentooMidnight Commander+3 more
8Debian Linux
Enterprise LinuxLinux+5 more
Apr 16, 2026
Apr 14, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple format string vulnerabilities in Midnight Commander (mc) 4.5.55 and earlier allow remote attackers to have an unknown impact.
3Gentoo
SuseWpa Supplicant
3Linux
Suse LinuxWpa Supplicant
Apr 16, 2026
Mar 14, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in wpa_supplicant before 0.2.7 allows remote attackers to cause a denial of service (segmentation fault) via invalid EAPOL-Key packet data.
5Altlinux
GentooRedhat+2 more
7Alt Linux
Enterprise LinuxFedora Core+4 more
Apr 16, 2026
Mar 7, 2005
N/A· v4
N/A· v3
5.1 MEDIUM· v2
Buffer overflow in Sylpheed before 1.0.3 and other versions before 1.9.5 allows remote attackers to execute arbitrary code via an e-mail message with certain headers containing non-ASCII characters that are not properly...Show more
Buffer overflow in Sylpheed before 1.0.3 and other versions before 1.9.5 allows remote attackers to execute arbitrary code via an e-mail message with certain headers containing non-ASCII characters that are not properly handled when the user replies to the message.Show less