Debian
debian
10,146 CVEs • 112 products
Products (112)
Click to collapseToggle
Products (112)
Click to collapse
CVEs (10,146)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
4Debian NetappOracle+1 more4Clustered Data Ontap Communications Diameter Signaling RouterDebian Linux+1 moreJun 17, 2026 Feb 15, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In PHP versions 7.3.x below 7.3.27, 7.4.x below 7.4.15 and 8.0.x below 8.0.2, when using SOAP extension to connect to a SOAP server, a malicious SOAP server could return malformed XML data as a response that would cause...Show more |
3Debian NetappPhp3Clustered Data Ontap Debian LinuxPhpJun 17, 2026 Feb 15, 2021 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 In PHP versions 7.3.x below 7.3.26, 7.4.x below 7.4.14 and 8.0.0, when validating URL with functions like filter_var($url, FILTER_VALIDATE_URL), PHP will accept an URL with invalid password as valid URL. This may lead to...Show more |
2Debian Horde2Debian Linux GroupwareJun 17, 2026 Feb 14, 2021 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 An XSS issue was discovered in Horde Groupware Webmail Edition through 5.2.22 (where the Horde_Text_Filter library before 2.3.7 is used). The attacker can send a plain text e-mail message, with JavaScript encoded as a li...Show more |
2Debian Openldap2Debian Linux OpenldapJun 17, 2026 Feb 14, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In OpenLDAP through 2.4.57 and 2.5.x through 2.5.1alpha, an assertion failure in slapd can occur in the issuerAndThisUpdateCheck function via a crafted packet, resulting in a denial of service (daemon exit) via a short t...Show more |
2Adminer Debian2Adminer Debian LinuxJun 17, 2026 Feb 11, 2021 N/A· v4 7.2 HIGH· v3 6.4 MEDIUM· v2 Adminer is an open-source database management in a single PHP file. In adminer from version 4.0.0 and before 4.7.9 there is a server-side request forgery vulnerability. Users of Adminer versions bundling all drivers (e.g...Show more |
3Debian FedoraprojectOpenvswitch3Debian Linux FedoraOpenvswitchJun 17, 2026 Feb 11, 2021 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 A vulnerability was found in openvswitch. A limitation in the implementation of userspace packet parsing can allow a malicious user to send a specially crafted packet causing the resulting megaflow in the kernel to be to...Show more |
3Debian FedoraprojectGoogle3Android Debian LinuxFedoraJun 17, 2026 Feb 10, 2021 N/A· v4 7.5 HIGH· v3 7.9 HIGH· v2 In p2p_copy_client_info of p2p.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution if the target device is performing a Wi-Fi Direct search, with no addition...Show more |
3Debian FedoraprojectInvisible Island3Debian Linux FedoraXtermJun 17, 2026 Feb 10, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 xterm before Patch #366 allows remote attackers to execute arbitrary code or cause a denial of service (segmentation fault) via a crafted UTF-8 combining character sequence. |
2Debian Genivi2Debian Linux Diagnostic Log And TraceJun 17, 2026 Feb 10, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The daemon in GENIVI diagnostic log and trace (DLT), is vulnerable to a heap-based buffer overflow that could allow an attacker to remotely execute arbitrary code on the DLT-Daemon (versions prior to 2.18.6). |
3Debian FedoraprojectGnu3Debian Linux FedoraScreenJun 17, 2026 Feb 9, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence. |
3Debian IntelOpensuse3Connman Debian LinuxLeapJun 17, 2026 Feb 9, 2021 N/A· v4 6.5 MEDIUM· v3 3.3 LOW· v2 gdhcp in ConnMan before 1.39 could be used by network-adjacent attackers to leak sensitive stack information, allowing further exploitation of bugs in gdhcp. |
3Debian IntelOpensuse3Connman Debian LinuxLeapJun 17, 2026 Feb 9, 2021 N/A· v4 8.8 HIGH· v3 5.8 MEDIUM· v2 A stack-based buffer overflow in dnsproxy in ConnMan before 1.39 could be used by network adjacent attackers to execute code. |
3Debian FedoraprojectGoogle3Chrome Debian LinuxFedoraJun 17, 2026 Feb 9, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Heap buffer overflow in V8 in Google Chrome prior to 88.0.4324.150 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
2Debian Firejail Project2Debian Linux FirejailJun 17, 2026 Feb 8, 2021 N/A· v4 7.0 HIGH· v3 6.9 MEDIUM· v2 Firejail before 0.9.64.4 allows attackers to bypass intended access restrictions because there is a TOCTOU race condition between a stat operation and an OverlayFS mount operation. |
5Debian NetappNetty+2 more13Active Iq Unified Manager Banking Corporate Lending Process ManagementBanking Credit Facilities Process Management+10 moreJun 17, 2026 Feb 8, 2021 N/A· v4 5.5 MEDIUM· v3 1.9 LOW· v2 Netty is an open-source, asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients. In Netty before version 4.1.59.Final there is a vulnerab...Show more |
2Debian Imagemagick2Debian Linux ImagemagickJun 17, 2026 Feb 6, 2021 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A divide-by-zero flaw was found in ImageMagick 6.9.11-57 and 7.0.10-57 in gem.c. This flaw allows an attacker who submits a crafted file that is processed by ImageMagick to trigger undefined behavior through a division b...Show more |
3Debian FedoraprojectMechanize Project3Debian Linux FedoraMechanizeJun 17, 2026 Feb 2, 2021 N/A· v4 8.3 HIGH· v3 7.6 HIGH· v2 Mechanize is an open-source ruby library that makes automated web interaction easy. In Mechanize from version 2.0.0 and before version 2.7.7 there is a command injection vulnerability. Affected versions of mechanize allo...Show more |
3Debian DockerNetapp3Debian Linux DockerE Series Santricity Os ControllerJun 17, 2026 Feb 2, 2021 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 In Docker before versions 9.03.15, 20.10.3 there is a vulnerability in which pulling an intentionally malformed Docker image manifest crashes the dockerd daemon. Versions 20.10.3 and 19.03.15 contain patches that prevent...Show more |
3Debian DockerNetapp3Debian Linux DockerE Series Santricity Os ControllerJun 17, 2026 Feb 2, 2021 N/A· v4 6.8 MEDIUM· v3 2.7 LOW· v2 In Docker before versions 9.03.15, 20.10.3 there is a vulnerability involving the --userns-remap option in which access to remapped root allows privilege escalation to real root. When using "--userns-remap", if the root...Show more |
2Debian Linux2Debian Linux Linux KernelJun 17, 2026 Feb 1, 2021 N/A· v4 7.0 HIGH· v3 4.4 MEDIUM· v2 nbd_add_socket in drivers/block/nbd.c in the Linux kernel through 5.10.12 has an ndb_queue_rq use-after-free that could be triggered by local attackers (with access to the nbd device) via an I/O request at a certain poin...Show more |