Debian
debian
10,145 CVEs • 112 products
Products (112)
Click to collapseToggle
Products (112)
Click to collapse
CVEs (10,145)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Out-of-bounds Write to API in GitHub repository vim/vim prior to 9.0.0100. |
4Debian FedoraprojectGnu+1 more4Debian Linux Enterprise LinuxFedora+1 moreJun 17, 2026 Aug 1, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in gnutls_pkcs7_verify function. |
4Debian FedoraprojectLibtiff+1 more5Active Iq Unified Manager Debian LinuxFedora+2 moreJun 17, 2026 Jul 29, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A stack overflow was discovered in the _TIFFVGetField function of Tiffsplit v4.4.0. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted TIFF file parsed by the "tiffsplit" or "tiffcrop" u...Show more |
Horde Groupware Webmail Edition through 5.2.22 allows a reflection injection attack through which an attacker can instantiate a driver class. This then leads to arbitrary deserialization of PHP objects. |
3Clusterlabs DebianFedoraproject3Booth Debian LinuxFedoraJun 17, 2026 Jul 28, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 The authfile directive in the booth config file is ignored, preventing use of authentication in communications from node to node. As a result, nodes that do not have the correct authentication key are not prevented from...Show more |
3Debian LinuxNetapp7Active Iq Unified Manager Debian LinuxHci Compute Node+4 moreJun 17, 2026 Jul 27, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 nfqnl_mangle in net/netfilter/nfnetlink_queue.c in the Linux kernel through 5.18.14 allows remote attackers to cause a denial of service (panic) because, in the case of an nf_queue verdict with a one-byte nfta_payload at...Show more |
3Debian LinuxNetapp24A700s Firmware Active Iq Unified ManagerAff 500f Firmware+21 moreJun 17, 2026 Jul 27, 2022 N/A· v4 5.5 MEDIUM· v3 N/A· v2 An issue was discovered in the Linux kernel through 5.18.14. xfrm_expand_policies in net/xfrm/xfrm_policy.c can cause a refcount to be dropped twice. |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Jul 26, 2022 N/A· v4 8.8 HIGH· v3 N/A· v2 insufficient TLB flush for x86 PV guests in shadow mode For migration as well as to work around kernels unaware of L1TF (see XSA-273), PV guests may be run in shadow paging mode. To address XSA-401, code was moved inside...Show more |
2Debian Libreoffice2Debian Linux LibreofficeJun 17, 2026 Jul 25, 2022 N/A· v4 8.8 HIGH· v3 N/A· v2 LibreOffice supports the storage of passwords for web connections in the user’s configuration database. The stored passwords are encrypted with a single master key provided by the user. A flaw in LibreOffice existed wher...Show more |
2Debian Libreoffice2Debian Linux LibreofficeJun 17, 2026 Jul 25, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 LibreOffice supports the storage of passwords for web connections in the user’s configuration database. The stored passwords are encrypted with a single master key provided by the user. A flaw in LibreOffice existed wher...Show more |
3Debian FedoraprojectThenify Project3Debian Linux FedoraThenifyJun 17, 2026 Jul 25, 2022 N/A· v4 9.8 CRITICAL· v3 N/A· v2 This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization. |
3Debian FedoraprojectGnome3Debian Linux FedoraGdk PixbufJun 17, 2026 Jul 24, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 GNOME GdkPixbuf (aka GDK-PixBuf) before 2.42.8 allows a heap-based buffer overflow when compositing or clearing frames in GIF files, as demonstrated by io-gif-animation.c composite_frame. This overflow is controllable an...Show more |
2Debian Tzinfo Project2Debian Linux TzinfoJun 17, 2026 Jul 22, 2022 N/A· v4 8.1 HIGH· v3 N/A· v2 TZInfo is a Ruby library that provides access to time zone data and allows times to be converted using time zone rules. Versions prior to 0.36.1, as well as those prior to 1.2.10 when used with the Ruby data source tzinf...Show more |
5Debian DrupalFedoraproject+2 more10Debian Linux FedoraH300s Firmware+7 moreJun 17, 2026 Jul 20, 2022 N/A· v4 6.1 MEDIUM· v3 N/A· v2 jQuery UI is a curated set of user interface interactions, effects, widgets, and themes built on top of jQuery. Versions prior to 1.13.2 are potentially vulnerable to cross-site scripting. Initializing a checkboxradio wi...Show more |
2Debian Libtirpc Project2Debian Linux LibtirpcJun 17, 2026 Jul 20, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 In libtirpc before 1.3.3rc1, remote attackers could exhaust the file descriptors of a process that uses libtirpc because idle TCP connections are mishandled. This can, in turn, lead to an svc_run infinite loop without ac...Show more |
5Azul DebianFedoraproject+2 more147 Mode Transition Tool Active Iq Unified ManagerCloud Insights Acquisition Unit+11 moreJun 17, 2026 Jul 19, 2022 N/A· v4 5.3 MEDIUM· v3 N/A· v2 Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 17.0.3.1; Oracle GraalVM Enterprise Editio...Show more |
5Azul DebianFedoraproject+2 more157 Mode Transition Tool Active Iq Unified ManagerCloud Insights Acquisition Unit+12 moreJun 17, 2026 Jul 19, 2022 N/A· v4 5.9 MEDIUM· v3 N/A· v2 Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1;...Show more |
5Azul DebianFedoraproject+2 more157 Mode Transition Tool Active Iq Unified ManagerCloud Insights Acquisition Unit+12 moreJun 17, 2026 Jul 19, 2022 N/A· v4 5.3 MEDIUM· v3 N/A· v2 Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1;...Show more |
3Debian GstreamerGstreamer Project3Debian Linux GstreamerGstreamerJun 17, 2026 Jul 19, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 DOS / potential heap overwrite in qtdemux using zlib decompression. Integer overflow in qtdemux element in qtdemux_inflate function which causes a segfault, or could cause a heap overwrite, depending on libc and OS. Depe...Show more |
3Debian GstreamerGstreamer Project3Debian Linux GstreamerGstreamerJun 17, 2026 Jul 19, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 DOS / potential heap overwrite in mkv demuxing using HEADERSTRIP decompression. Integer overflow in matroskaparse element in gst_matroska_decompress_data function which causes a heap overflow. Due to restrictions on chun...Show more |