Debian
debian
10,147 CVEs • 112 products
Products (112)
Click to collapseToggle
Products (112)
Click to collapse
CVEs (10,147)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Artifex CanonicalDebian3Debian Linux GhostscriptUbuntu LinuxJun 17, 2026 Aug 13, 2020 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A buffer overflow vulnerability in contrib/gdevdj9.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. |
3Artifex CanonicalDebian3Debian Linux GhostscriptUbuntu LinuxJun 17, 2026 Aug 13, 2020 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A buffer overflow vulnerability in jetp3852_print_page() in devices/gdev3852.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. |
3Artifex CanonicalDebian3Debian Linux GhostscriptUbuntu LinuxJun 17, 2026 Aug 13, 2020 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A buffer overflow vulnerability in cif_print_page() in devices/gdevcif.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. |
3Artifex CanonicalDebian3Debian Linux GhostscriptUbuntu LinuxJun 17, 2026 Aug 13, 2020 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A buffer overflow vulnerability in pj_common_print_page() in devices/gdevpjet.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. |
3Artifex CanonicalDebian3Debian Linux GhostscriptUbuntu LinuxJun 17, 2026 Aug 13, 2020 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A buffer overflow vulnerability in lprn_is_black() in contrib/lips4/gdevlprn.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. |
3Debian FedoraprojectQt3Debian Linux FedoraQtJun 17, 2026 Aug 12, 2020 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 An issue was discovered in Qt through 5.12.9, and 5.13.x through 5.15.x before 5.15.1. read_xbm_body in gui/image/qxbmhandler.cpp has a buffer over-read. |
2Debian Magic2Asyncpg Debian LinuxJun 17, 2026 Aug 12, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array dat...Show more |
4Canonical DebianDovecot+1 more4Debian Linux DovecotFedora+1 moreJun 17, 2026 Aug 12, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In Dovecot before 2.3.11.3, sending a specially formatted RPA request will crash the auth service because a length of zero is mishandled. |
4Canonical DebianDovecot+1 more4Debian Linux DovecotFedora+1 moreJun 17, 2026 Aug 12, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In Dovecot before 2.3.11.3, sending a specially formatted NTLM request will crash the auth service because of an out-of-bounds read. |
4Canonical DebianDovecot+1 more4Debian Linux DovecotFedora+1 moreJun 17, 2026 Aug 12, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In Dovecot before 2.3.11.3, uncontrolled recursion in submission, lmtp, and lda allows remote attackers to cause a denial of service (resource consumption) via a crafted e-mail message with deeply nested MIME parts. |
4Canonical DebianGnome+1 more4Debian Linux Gnome ShellLeap+1 moreJun 17, 2026 Aug 11, 2020 N/A· v4 4.3 MEDIUM· v3 1.9 LOW· v2 An issue was discovered in certain configurations of GNOME gnome-shell through 3.36.4. When logging out of an account, the password box from the login dialog reappears with the password still visible. If the user had dec...Show more |
2Debian Google2Android Debian LinuxJun 17, 2026 Aug 11, 2020 N/A· v4 6.8 MEDIUM· v3 7.2 HIGH· v2 In LoadPartitionTable of gpt.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege when inserting a malicious USB device, with no additional execution...Show more |
4Debian FedoraprojectFirejail Project+1 more4Debian Linux FedoraFirejail+1 moreJun 17, 2026 Aug 11, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Firejail through 0.9.62 mishandles shell metacharacters during use of the --output or --output-stderr option, which may lead to command injection. |
4Debian FedoraprojectFirejail Project+1 more4Debian Linux FedoraFirejail+1 moreJun 17, 2026 Aug 11, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Firejail through 0.9.62 does not honor the -- end-of-options indicator after the --output option, which may lead to command injection. |
4Canonical DebianOpensuse+1 more4Debian Linux LeapQemu+1 moreJun 17, 2026 Aug 11, 2020 N/A· v4 3.8 LOW· v3 2.1 LOW· v2 In QEMU through 5.0.0, an assertion failure can occur in the network packet processing. This issue affects the e1000e and vmxnet3 network devices. A malicious guest user/process could use this flaw to abort the QEMU proc...Show more |
7Apache CanonicalDebian+4 more25Communications Element Manager Communications Session Report ManagerCommunications Session Route Manager+22 moreJun 17, 2026 Aug 7, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Apache HTTP Server versions 2.4.20 to 2.4.43. A specially crafted value for the 'Cache-Digest' header in a HTTP/2 request would result in a crash when the server actually tries to HTTP/2 PUSH a resource afterwards. Confi...Show more |
7Apache CanonicalDebian+4 more13Clustered Data Ontap Communications Element ManagerCommunications Session Report Manager+10 moreJun 17, 2026 Aug 7, 2020 N/A· v4 7.5 HIGH· v3 4.3 MEDIUM· v2 Apache HTTP Server versions 2.4.20 to 2.4.43 When trace/debug was enabled for the HTTP/2 module and on certain traffic edge patterns, logging statements were made on the wrong connection, causing concurrent use of memory...Show more |
7Apache CanonicalDebian+4 more13Clustered Data Ontap Communications Element ManagerCommunications Session Report Manager+10 moreJun 17, 2026 Aug 7, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Apache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure and possible RCE |
4Debian FedoraprojectGolang+1 more4Debian Linux FedoraGo+1 moreJun 17, 2026 Aug 6, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Go before 1.13.15 and 14.x before 1.14.7 can have an infinite read loop in ReadUvarint and ReadVarint in encoding/binary via invalid inputs. |
4Debian FedoraprojectLilypond+1 more5Backports Sle Debian LinuxFedora+2 moreJun 17, 2026 Aug 5, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 scm/define-stencil-commands.scm in LilyPond through 2.20.0, and 2.21.x through 2.21.4, when -dsafe is used, lacks restrictions on embedded-ps and embedded-svg, as demonstrated by including dangerous PostScript code. |