← Back

Debian

debian

10,145 CVEs • 112 products

Products (112)

Click to collapse
Toggle
Dpkg
dpkg
Shadow
shadow
Lintian
lintian
Apt
apt
Reportbug
reportbug
Horde
horde
Devscripts
devscripts
Mime Support
mime-support
Fsp
fsp
Netkit
netkit
Qpopper
qpopper
Apt Cacher
apt-cacher
Aptlinex
aptlinex
Python Dns
python-dns
Xsabre
xsabre
Cifs Utils
cifs-utils
Dpkg Dev
dpkg-dev
Python Apt
python-apt
Yubiserver
yubiserver
Elvis Tiny
elvis_tiny
Sgml Tools
sgml-tools
Netstd
netstd
Bsdmainutils
bsdmainutils
Tetex Bin
tetex-bin
Debmake
debmake
Bsmtpd
bsmtpd
Sympa
sympa
Ppxp
ppxp
Apt Setup
apt-setup
Backupninja
backupninja
Amaya
amaya
Base Config
base-config
Apache
apache
Gfax
gfax
Reprepro
reprepro
Debian Goodies
debian-goodies
Guilt
guilt
Unp
unp
Tss
tss
Projectl
projectl
Turba
turba
Honeyd Common
honeyd_common
Citadel Server
citadel_server
Feta
feta
Dpkg Cross
dpkg-cross
Myspell
myspell
Newsgate
newsgate
Os Prober
os-prober
Mailscanner
mailscanner
Ltp
ltp
Horde Imp
horde_imp
Nss Ldap
nss-ldap
Libdbd Pg Perl
libdbd-pg-perl
Pyftpd
pyftpd
Mono Debugger
mono-debugger
Tex Common
tex-common
Php5 Common
php5-common
Logol
logol
Devotee
devotee
Apache2
apache2
Cfingerd
cfingerd
Latd
latd
Phpbb3
phpbb3
Txt2man
txt2man
Adequate
adequate
Localepurge
localepurge
Syncevolution
syncevolution
Axiom
axiom
Ppthtml
ppthtml
Xbuffy
xbuffy
Strongswan
strongswan
Kde4libs
kde4libs
Python Imaging
python-imaging
Hivex
hivex
Dbd Firebird
dbd-firebird
Fuse
fuse
Tor
tor
Ftpsync
ftpsync
Most
most
Tin
tin
Crossroads
crossroads
Tmpreaper
tmpreaper
Cron
cron
Overkill
overkill
Duplicity
duplicity

CVEs (10,145)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Debian
Webdav
3Cadaver
Debian LinuxNeon
Apr 16, 2026
Jul 7, 2004
N/A· v4
N/A· v3
7.5 HIGH· v2
Heap-based buffer overflow in the ne_rfc1036_parse date parsing function for the neon library (libneon) 0.24.5 and earlier, as used by cadaver before 0.22, allows remote WebDAV servers to execute arbitrary code on the cl...Show more
Heap-based buffer overflow in the ne_rfc1036_parse date parsing function for the neon library (libneon) 0.24.5 and earlier, as used by cadaver before 0.22, allows remote WebDAV servers to execute arbitrary code on the client.Show less
2Debian
Webdav
2Debian Linux
Neon
Apr 16, 2026
Jun 1, 2004
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that use neon including (2) Cadaver, (3) Subversion, and (4) OpenOffice, allow remote malicious WebDAV servers to execute arbitrar...Show more
Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that use neon including (2) Cadaver, (3) Subversion, and (4) OpenOffice, allow remote malicious WebDAV servers to execute arbitrary code.Show less
2Debian
Fte
2Debian Linux
Fte Text Editor
Apr 16, 2026
May 4, 2004
N/A· v4
N/A· v3
10.0 HIGH· v2
Multiple buffer overflows in vfte, based on FTE, before 0.50, allow local users to execute arbitrary code.
2Debian
Perl
2Debian Linux
Suidperl
Apr 16, 2026
May 4, 2004
N/A· v4
N/A· v3
2.1 LOW· v2
Multiple vulnerabilities in suidperl 5.6.1 and earlier allow a local user to obtain sensitive information about files for which the user does not have appropriate permissions.
3Debian
MandrakesoftSun
5Debian Linux
Mandrake LinuxMandrake Linux Corporate Server+2 more
Apr 16, 2026
Feb 16, 2004
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unknown vulnerability in the rwho daemon (rwhod) before 0.17, on little endian architectures, allows remote attackers to cause a denial of service (application crash).
1Debian
1Fsp
Apr 16, 2026
Jan 20, 2004
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in fsp before 2.81.b18 allows remote users to execute arbitrary code.
1Debian
1Fsp
Apr 16, 2026
Jan 20, 2004
N/A· v4
N/A· v3
7.5 HIGH· v2
Directory traversal vulnerability in fsp before 2.81.b18 allows remote users to access files outside the FSP root directory.
1Debian
1Lintian
Apr 16, 2026
Jan 10, 2004
N/A· v4
N/A· v3
2.1 LOW· v2
lintian 1.23 and earlier removes the working directory even if it was not created by lintian, which may allow local users to delete arbitrary files or directories via a symlink attack.
3Cgi.pm
DebianOpenpkg
3Cgi.pm
Debian LinuxOpenpkg
Apr 16, 2026
Aug 27, 2003
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in start_form() of CGI.pm allows remote attackers to insert web script via a URL that is fed into the form's action parameter.
2Debian
Semi
2Debian Linux
Semi
Apr 16, 2026
Aug 18, 2003
N/A· v4
N/A· v3
4.6 MEDIUM· v2
The (1) semi MIME library 1.14.5 and earlier, and (2) wemi 1.14.0 and possibly other versions, allows local users to overwrite arbitrary files via a symlink attack on temporary files.
1Debian
1Debian Linux
Apr 16, 2026
Jul 2, 2003
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in xaos 3.0-23 and earlier, when running setuid, allows local users to gain root privileges via a long -language option.
2Debian
Michael Jennings
2Debian Linux
Eterm
Apr 16, 2026
Jul 2, 2003
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Buffer overflow in Eterm 0.9.2 allows local users to gain privileges via a long ETERMPATH environment variable.
2Debian
Gnu
2Debian Linux
Gzip
Apr 16, 2026
Jul 2, 2003
N/A· v4
N/A· v3
2.1 LOW· v2
znew in the gzip package allows local users to overwrite arbitrary files via a symlink attack on temporary files.
1Debian
1Debian Linux
Apr 16, 2026
Jun 9, 2003
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in gPS before 0.10.2 may allow local users to cause a denial of service (SIGSEGV) in rgpsp via long command lines.
1Debian
1Debian Linux
Apr 16, 2026
Jun 9, 2003
N/A· v4
N/A· v3
7.5 HIGH· v2
gPS before 1.1.0 does not properly follow the rgpsp connection source acceptation policy as specified in the rgpsp.conf file, which could allow unauthorized remote attackers to connect to rgpsp.
1Debian
1Debian Linux
Apr 16, 2026
Jun 9, 2003
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple buffer overflows in gPS before 1.0.0 allow attackers to cause a denial of service and possibly execute arbitrary code.
3Debian
Falconseye ProjectNethack
3Debian Linux
FalconseyeNethack
Apr 16, 2026
Jun 9, 2003
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Buffer overflow in (1) nethack 3.4.0 and earlier, and (2) falconseye 1.9.3 and earlier, which is based on nethack, allows local users to gain privileges via a long -s command line option.
2Debian
Sendmail
2Debian Linux
Sendmail
Apr 16, 2026
May 15, 2003
N/A· v4
N/A· v3
7.2 HIGH· v2
The Sendmail 8.12.3 package in Debian GNU/Linux 3.0 does not securely create temporary files, which could allow local users to gain additional privileges via (1) expn, (2) checksendmail, or (3) doublebounce.pl.
1Debian
1Mime Support
Apr 16, 2026
May 12, 2003
N/A· v4
N/A· v3
4.6 MEDIUM· v2
run-mailcap in mime-support 3.22 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files.
2Apcupsd
Debian
2Apcupsd
Debian Linux
Apr 16, 2026
Mar 3, 2003
N/A· v4
N/A· v3
10.0 HIGH· v2
Unknown vulnerability in apcupsd before 3.8.6, and 3.10.x before 3.10.5, allows remote attackers to gain root privileges, possibly via format strings in a request to a slave server.