Debian
debian
10,146 CVEs • 112 products
Products (112)
Click to collapseToggle
Products (112)
Click to collapse
CVEs (10,146)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
SPIP before 3.2.14 and 4.x before 4.0.5 allows remote authenticated editors to execute arbitrary code. |
2Debian Tryton3Debian Linux ProteusTrytondJun 17, 2026 Mar 10, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An XML Entity Expansion (XEE) issue was discovered in Tryton Application Platform (Server) 5.x through 5.0.45, 6.x through 6.0.15, and 6.1.x and 6.2.x through 6.2.5, and Tryton Application Platform (Command Line Client (...Show more |
2Debian Tryton3Debian Linux ProteusTrytondJun 17, 2026 Mar 10, 2022 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 An XXE issue was discovered in Tryton Application Platform (Server) 5.x through 5.0.45, 6.x through 6.0.15, and 6.1.x and 6.2.x through 6.2.5, and Tryton Application Platform (Command Line Client (proteus)) 5.x through 5...Show more |
2Debian Postgresql2Debian Linux Postgresql Jdbc DriverJun 17, 2026 Mar 10, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 In pgjdbc before 42.3.3, an attacker (who controls the jdbc URL or properties) can call java.util.logging.FileHandler to write to arbitrary files through the loggerFile and loggerLevel connection properties. An example s...Show more |
4Debian FedoraprojectLibtiff+1 more4Active Iq Unified Manager Debian LinuxFedora+1 moreJun 17, 2026 Mar 10, 2022 N/A· v4 7.1 HIGH· v3 5.8 MEDIUM· v2 A heap buffer overflow in ExtractImageSection function in tiffcrop.c in libtiff library Version 4.3.0 allows attacker to trigger unsafe or out of bounds memory access via crafted TIFF image file which could result into a...Show more |
4Debian FedoraprojectLibtiff+1 more4Active Iq Unified Manager Debian LinuxFedora+1 moreJun 17, 2026 Mar 10, 2022 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Reachable Assertion in tiffcp in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 5e180045. |
5Debian FedoraprojectLinux+2 more23Codeready Linux Builder Debian LinuxEnterprise Linux+20 moreJun 17, 2026 Mar 10, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 A vulnerability was found in kvm_s390_guest_sida_op in the arch/s390/kvm/kvm-s390.c function in KVM for s390 in the Linux kernel. This flaw allows a local attacker with a normal user privilege to obtain unauthorized memo...Show more |
3Bluez DebianFedoraproject3Bluez Debian LinuxFedoraJun 17, 2026 Mar 10, 2022 N/A· v4 8.8 HIGH· v3 5.8 MEDIUM· v2 A heap overflow vulnerability was found in bluez in versions prior to 5.63. An attacker with local network access could pass specially crafted files causing an application to halt or crash, leading to a denial of service...Show more |
2Debian Libpano13 Project2Debian Linux Libpano13Jun 17, 2026 Mar 10, 2022 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 Panorama Tools libpano13 v2.9.20 was discovered to contain an out-of-bounds read in the function panoParserFindOLine() in parser.c. |
3Abcm2ps Project DebianFedoraproject3Abcm2ps Debian LinuxFedoraJun 17, 2026 Mar 10, 2022 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 An out-of-bounds read in the function write_title() in subs.c of abcm2ps v8.14.11 allows remote attackers to cause a Denial of Service (DoS) via unspecified vectors. |
3Abcm2ps Project DebianFedoraproject3Abcm2ps Debian LinuxFedoraJun 17, 2026 Mar 10, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 Stack-based buffer overflow in the function get_key in parse.c of abcm2ps v8.14.11 allows remote attackers to cause a Denial of Service (DoS) via unspecified vectors. |
3Abcm2ps Project DebianFedoraproject3Abcm2ps Debian LinuxFedoraJun 17, 2026 Mar 10, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 abcm2ps v8.14.11 was discovered to contain an out-of-bounds read in the function calculate_beam at draw.c. |
3Debian FedoraprojectZabbix3Debian Linux FedoraFrontendJun 17, 2026 Mar 9, 2022 N/A· v4 4.4 MEDIUM· v3 2.1 LOW· v2 An authenticated user can create a link with reflected Javascript code inside it for graphs’ page and send it to other users. The payload can be executed only with a known CSRF token value of the victim, which is changed...Show more |
3Debian FedoraprojectZabbix3Debian Linux FedoraFrontendJun 17, 2026 Mar 9, 2022 N/A· v4 4.4 MEDIUM· v3 2.1 LOW· v2 An authenticated user can create a link with reflected Javascript code inside it for services’ page and send it to other users. The payload can be executed only with a known CSRF token value of the victim, which is chang...Show more |
3Debian FedoraprojectZabbix3Debian Linux FedoraFrontendJun 17, 2026 Mar 9, 2022 N/A· v4 4.4 MEDIUM· v3 2.1 LOW· v2 An authenticated user can create a link with reflected XSS payload for actions’ pages, and send it to other users. Malicious code has access to all the same objects as the rest of the web page and can make arbitrary modi...Show more |
3Debian FedoraprojectRust Lang3Debian Linux FedoraRegexJun 17, 2026 Mar 8, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 regex is an implementation of regular expressions for the Rust language. The regex crate features built-in mitigations to prevent denial of service attacks caused by untrusted regexes, or untrusted input matched by trust...Show more |
2Debian Readymedia Project2Debian Linux ReadymediaJun 17, 2026 Mar 6, 2022 N/A· v4 7.4 HIGH· v3 4.3 MEDIUM· v2 A DNS rebinding issue in ReadyMedia (formerly MiniDLNA) before 1.3.1 allows a remote web server to exfiltrate media files. |
3Debian FedoraprojectNetwork Block Device Project3Debian Linux FedoraNetwork Block DeviceJun 17, 2026 Mar 6, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 In nbd-server in nbd before 3.24, there is a stack-based buffer overflow. An attacker can cause a buffer overflow in the parsing of the name field by sending a crafted NBD_OPT_INFO or NBD_OPT_GO message with an large val...Show more |
3Debian FedoraprojectNetwork Block Device Project3Debian Linux FedoraNetwork Block DeviceJun 17, 2026 Mar 6, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 In nbd-server in nbd before 3.24, there is an integer overflow with a resultant heap-based buffer overflow. A value of 0xffffffff in the name length field will cause a zero-sized buffer to be allocated for the name, resu...Show more |
4Debian FedoraprojectLinux+1 more11Debian Linux FedoraH300e Firmware+8 moreJun 17, 2026 Mar 6, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 st21nfca_connectivity_event_received in drivers/nfc/st21nfca/se.c in the Linux kernel through 5.16.12 has EVT_TRANSACTION buffer overflows because of untrusted length parameters. |