Debian
debian
10,145 CVEs • 112 products
Products (112)
Click to collapseToggle
Products (112)
Click to collapse
CVEs (10,145)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
LogLine function in klogd in sysklogd 1.3 in various Linux distributions allows an attacker to cause a denial of service (hang) by causing null bytes to be placed in log messages. |
4Conectiva DebianRedhat+1 more4Debian Linux EximLinux+1 moreApr 16, 2026 Sep 20, 2001 N/A· v4 N/A· v3 7.5 HIGH· v2 Format string vulnerability in exim (3.22-10 in Red Hat, 3.12 in Debian and 3.16 in Conectiva) in batched SMTP mode allows a remote attacker to execute arbitrary code via format strings in SMTP mail headers. |
9Debian FreebsdIbm+6 more11Aix Debian LinuxFreebsd+8 moreApr 16, 2026 Aug 14, 2001 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by t...Show more |
4Debian MandrakesoftOpenldap+1 more6Debian Linux LinuxMandrake Linux+3 moreApr 16, 2026 Jul 16, 2001 N/A· v4 N/A· v3 5.0 MEDIUM· v2 slapd in OpenLDAP 1.x before 1.2.12, and 2.x before 2.0.8, allows remote attackers to cause a denial of service (crash) via an invalid Basic Encoding Rules (BER) length field. |
Vulnerability in exuberant-ctags before 3.2.4-0.1 insecurely creates temporary files. |
4Debian MandrakesoftRalf S. Engelschall+1 more4Debian Linux EperlMandrake Linux+1 moreApr 16, 2026 Jun 27, 2001 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple buffer overflows in ePerl before 2.2.14-0.7 allow local and remote attackers to execute arbitrary commands. |
man2html before 1.5-22 allows remote attackers to cause a denial of service (memory exhaustion). |
postinst installation script for Proftpd in Debian 2.2 does not properly change the "run as uid/gid root" configuration when the user enables anonymous access, which causes the server to run at a higher privilege than in...Show more |
3Debian MandrakesoftRedhat4Debian Linux LinuxMandrake Linux+1 moreApr 16, 2026 Jun 27, 2001 N/A· v4 N/A· v3 7.5 HIGH· v2 Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 0.9.7.0 allows remote attackers to execute arbitrary commands via a long message header. |
3Debian ImmunixMandrakesoft3Immunix Mandrake LinuxSgml ToolsApr 16, 2026 Jun 27, 2001 N/A· v4 N/A· v3 2.1 LOW· v2 sgml-tools (aka sgmltools) before 1.0.9-15 creates temporary files with insecure permissions, which allows other users to read files that are being processed by sgml-tools. |
mandb in the man-db package before 2.3.16-3 allows local users to overwrite arbitrary files via the command line options (1) -u or (2) -c, which do not drop privileges and follow symlinks. |
2Debian Mandrakesoft3Debian Linux Mandrake LinuxMandrake Linux Corporate ServerApr 16, 2026 May 3, 2001 N/A· v4 N/A· v3 7.2 HIGH· v2 Buffer overflow in sudo earlier than 1.6.3p6 allows local users to gain root privileges. |
Format string vulnerability in man in some Linux distributions allows local users to gain privileges via a malformed -l parameter. |
Vulnerability in crontab allows local users to read crontab files of other users by replacing the temporary file that is being edited while crontab is running. |
3Debian Matthew SmithRedhat3Debian Linux LinuxMicqApr 16, 2026 Mar 26, 2001 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long Description field. |
sash before 3.4-4 in Debian GNU/Linux does not properly clone /etc/shadow, which makes it world-readable and could allow local users to gain privileges via password cracking. |
4Conectiva DebianImmunix+1 more4Debian Linux ImmunixLinux+1 moreApr 16, 2026 Mar 26, 2001 N/A· v4 N/A· v3 2.1 LOW· v2 glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files. |
2Apache Debian2Debian Linux Http ServerApr 16, 2026 Mar 12, 2001 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The default installation of Apache before 1.3.19 allows remote attackers to list directories instead of the multiview index.html file via an HTTP request for a path that contains many / (slash) characters, which causes t...Show more |
5Caldera DebianImmunix+2 more7Debian Linux ImmunixLinux+4 moreApr 16, 2026 Mar 12, 2001 N/A· v4 N/A· v3 1.2 LOW· v2 inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations. |
4Debian ImmunixMandrakesoft+1 more5Debian Linux ImmunixLinux+2 moreApr 16, 2026 Mar 12, 2001 N/A· v4 N/A· v3 1.2 LOW· v2 privatepw program in wu-ftpd before 2.6.1-6 allows local users to overwrite arbitrary files via a symlink attack. |