Debian
debian
10,147 CVEs • 112 products
Products (112)
Click to collapseToggle
Products (112)
Click to collapse
CVEs (10,147)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
5Canonical DebianIntel+2 more157265 Firmware Ac 3165 FirmwareAc 3168 Firmware+12 moreJun 17, 2026 Nov 23, 2020 N/A· v4 5.7 MEDIUM· v3 2.7 LOW· v2 Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access. |
2Debian Tianocore2Debian Linux Edk2Jun 17, 2026 Nov 23, 2020 N/A· v4 6.5 MEDIUM· v3 3.3 LOW· v2 Logic issue EDK II may allow an unauthenticated user to potentially enable denial of service via adjacent access. |
2Debian Tianocore2Debian Linux Edk2Jun 17, 2026 Nov 23, 2020 N/A· v4 8.0 HIGH· v3 5.2 MEDIUM· v2 Use after free vulnerability in EDK II may allow an authenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via adjacent access. |
2Debian Tianocore2Debian Linux Edk2Jun 17, 2026 Nov 23, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Logic issue in DxeImageVerificationHandler() for EDK II may allow an authenticated user to potentially enable escalation of privilege via local access. |
2Debian Tianocore2Debian Linux Edk2Jun 17, 2026 Nov 23, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Integer truncation in EDK II may allow an authenticated user to potentially enable escalation of privilege via local access. |
2Debian Tianocore2Debian Linux Edk2Jun 17, 2026 Nov 23, 2020 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Integer overflow in DxeImageVerificationHandler() EDK II may allow an authenticated user to potentially enable denial of service via local access. |
3Debian FedoraprojectPdfresurrect Project3Debian Linux FedoraPdfresurrectJun 17, 2026 Nov 20, 2020 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 PDFResurrect before 0.20 lack of header validation checks causes heap-buffer-overflow in pdf_get_version(). |
3Debian FedoraprojectLibvips3Debian Linux FedoraLibvipsJun 17, 2026 Nov 20, 2020 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 im_vips2dz in /libvips/libvips/deprecated/im_vips2dz.c in libvips before 8.8.2 has an uninitialized variable which may cause the leakage of remote server path or stack address. |
2Debian Linux2Debian Linux Linux KernelJun 17, 2026 Nov 20, 2020 N/A· v4 5.0 MEDIUM· v3 6.1 MEDIUM· v2 A slab-out-of-bounds read in fbcon in the Linux kernel before 5.9.7 could be used by local attackers to read privileged information or potentially crash the kernel, aka CID-3c4e0dff2095. This occurs because KD_FONT_OP_CO...Show more |
2Debian Imagemagick2Debian Linux ImagemagickJun 17, 2026 Nov 20, 2020 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Stack-based buffer overflow and unconditional jump in ReadXPMImage in coders/xpm.c in ImageMagick 7.0.10-7. |
4Debian DrupalFedoraproject+1 more4Archive Tar Debian LinuxDrupal+1 moreJun 17, 2026 Nov 19, 2020 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Archive_Tar through 1.4.10 has :// filename sanitization only to address phar attacks, and thus any other stream-wrapper attack (such as file:// to overwrite files) can still succeed. |
4Debian DrupalFedoraproject+1 more4Archive Tar Debian LinuxDrupal+1 moreJun 17, 2026 Nov 19, 2020 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Archive_Tar through 1.4.10 allows an unserialization attack because phar: is blocked but PHAR: is not blocked. |
3Debian FedoraprojectLinux3Debian Linux FedoraLinux KernelJun 17, 2026 Nov 19, 2020 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 An issue was discovered in drivers/accessibility/speakup/spk_ttyio.c in the Linux kernel through 5.9.9. Local attackers on systems with the speakup driver could cause a local denial of service attack, aka CID-d4122754442...Show more |
2Debian Influxdata2Debian Linux InfluxdbJun 17, 2026 Nov 19, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 InfluxDB before 1.7.6 has an authentication bypass vulnerability in the authenticate function in services/httpd/handler.go because a JWT token may have an empty SharedSecret (aka shared secret). |
2Debian Jupyter2Debian Linux NotebookJun 17, 2026 Nov 18, 2020 N/A· v4 6.1 MEDIUM· v3 5.8 MEDIUM· v2 Jupyter Notebook before version 6.1.5 has an Open redirect vulnerability. A maliciously crafted link to a notebook server could redirect the browser to a different website. All notebook servers are technically affected,...Show more |
5Apache DebianNetapp+2 more15Activemq Banking Cash ManagementBanking Corporate Lending Process Management+12 moreJun 17, 2026 Nov 16, 2020 N/A· v4 8.8 HIGH· v3 9.3 HIGH· v2 XStream before version 1.4.14 is vulnerable to Remote Code Execution.The vulnerability may allow a remote attacker to run arbitrary shell commands only by manipulating the processed input stream. Only users who rely on b...Show more |
2Debian Postgresql2Debian Linux PostgresqlJun 17, 2026 Nov 16, 2020 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 A flaw was found in PostgreSQL versions before 13.1, before 12.5, before 11.10, before 10.15, before 9.6.20 and before 9.5.24. An attacker having permission to create non-temporary objects in at least one schema can exec...Show more |
2Debian Postgresql2Debian Linux PostgresqlJun 17, 2026 Nov 16, 2020 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 A flaw was found in PostgreSQL versions before 13.1, before 12.5, before 11.10, before 10.15, before 9.6.20 and before 9.5.24. If a client application that creates additional database connections only reuses the basic co...Show more |
5Debian FedoraprojectIntel+2 more17Clustered Data Ontap Debian LinuxFedora+14 moreJun 17, 2026 Nov 12, 2020 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. |
4Debian FedoraprojectIntel+1 more7Clustered Data Ontap Debian LinuxFedora+4 moreJun 17, 2026 Nov 12, 2020 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Improper removal of sensitive information before storage or transfer in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. |