Debian
debian
10,145 CVEs • 112 products
Products (112)
Click to collapseToggle
Products (112)
Click to collapse
CVEs (10,145)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
CUPS (Common Unix Printing System) 1.04 and earlier allows remote attackers to cause a denial of service via a malformed IPP request. |
CUPS (Common Unix Printing System) 1.04 and earlier does not properly delete request files, which allows a remote attacker to cause a denial of service. |
3Debian LinuxRedhat3Debian Linux LinuxLinux KernelApr 16, 2026 Mar 27, 2000 N/A· v4 N/A· v3 5.0 MEDIUM· v2 IP masquerading in Linux 2.2.x allows remote attackers to route UDP packets through the internal interface by modifying the external source IP address and port number to match those of an established connection. |
4Alessandro Rubini DebianRedhat+1 more4Debian Linux GpmLinux+1 moreApr 16, 2026 Mar 22, 2000 N/A· v4 N/A· v3 7.2 HIGH· v2 gpm-root in the gpm package does not properly drop privileges, which allows local users to gain privileges by starting a utility from gpm-root. |
The libguile.so library file used by gnucash in Debian GNU/Linux is installed with world-writable permissions. |
The default installation of Debian GNU/Linux uses an insecure Master Boot Record (MBR) which allows a local user to boot from a floppy disk during the installation. |
Linux apcd program allows local attackers to modify arbitrary files via a symlink attack. |
3Debian RedhatSgi3Debian Linux IrixLinuxApr 16, 2026 Jan 8, 2000 N/A· v4 N/A· v3 10.0 HIGH· v2 The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reverse-resolved hostname of the local machine to the hostname of the print server as returned by gethos...Show more |
The snprintf function in the db library 1.85.4 ignores the size parameter, which could allow attackers to exploit buffer overflows that would be prevented by a properly implemented snprintf. |
nviboot boot script in the Debian nvi package allows local users to delete files via malformed entries in vi.recover. |
htdig allows remote attackers to execute commands via filenames with shell metacharacters. |
3Debian LinuxRedhat3Debian Linux LinuxLinux KernelApr 16, 2026 Dec 8, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large packets with the -R (record route) option. |
dump in Debian GNU/Linux 2.1 does not properly restore symlinks, which allows a local user to modify the ownership of arbitrary files. |
4Cobalt DebianSun+1 more6Cobalt Raq Cobalt Raq 2Cobalt Raq 3i+3 moreApr 16, 2026 Nov 19, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Denial of service in Linux syslogd via a large number of connections. |
Buffer overflow in NFS server on Linux allows attackers to execute commands via a long pathname. |
Denial of service in Debian IRC Epic/epic4 client via a long string. |
4Caldera DebianPaul Vixie+1 more4Debian Linux LinuxOpenlinux+1 moreApr 16, 2026 Aug 25, 1999 N/A· v4 N/A· v3 7.2 HIGH· v2 Buffer overflow in Vixie cron allows local users to gain root access via a long MAILTO environment variable in a crontab file. |
4Caldera DebianPaul Vixie+1 more4Debian Linux LinuxOpenlinux+1 moreApr 16, 2026 Aug 25, 1999 N/A· v4 N/A· v3 7.2 HIGH· v2 Vixie Cron on Linux systems allows local users to set parameters of sendmail commands via the MAILTO environmental variable. |
2Debian Earl Hood2Debian Linux Man2htmlApr 16, 2026 Aug 20, 1999 N/A· v4 N/A· v3 4.6 MEDIUM· v2 Man2html 2.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file. |
Trn allows local users to overwrite other users' files via symlinks. |