Debian
debian
10,146 CVEs • 112 products
Products (112)
Click to collapseToggle
Products (112)
Click to collapse
CVEs (10,146)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Debian Sound Exchange Project2Debian Linux Sound ExchangeMay 13, 2026 Jul 31, 2017 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 The wavwritehdr function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted snd file, during conversion to a wav file. |
2Debian Sound Exchange Project2Debian Linux Sound ExchangeMay 13, 2026 Jul 31, 2017 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 The read_samples function in hcom.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted hcom file. |
2Debian Sound Exchange Project2Debian Linux Sound ExchangeMay 13, 2026 Jul 31, 2017 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 The startread function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted wav file. |
2Debian Libming2Debian Linux MingMay 13, 2026 Jul 29, 2017 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A null pointer dereference vulnerability was found in the function stackswap (called from decompileSTACKSWAP) in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file. |
2Debian Libming2Debian Linux MingMay 13, 2026 Jul 29, 2017 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A heap-based buffer overflow vulnerability was found in the function dcputs (called from decompileIMPLEMENTS) in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file. |
2Artifex Debian2Debian Linux GhostscriptMay 13, 2026 Jul 28, 2017 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 psi/ztoken.c in Artifex Ghostscript 9.21 mishandles references to the scanner state structure, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via...Show more |
4Apache DebianNetapp+1 more11Clustered Data Ontap Debian LinuxEnterprise Linux Desktop+8 moreMay 13, 2026 Jul 27, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Apache HTTP Server, in all releases prior to 2.2.32 and 2.4.25, was liberal in the whitespace accepted from requests and sent in response lines and headers. Accepting these different behaviors represented a security conc...Show more |
3Canonical DebianExiv23Debian Linux Exiv2Ubuntu LinuxMay 13, 2026 Jul 27, 2017 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 There is a reachable assertion in the Internal::TiffReader::visitDirectory function in tiffvisitor.cpp of Exiv2 0.26 that will lead to a remote denial of service attack via crafted input. |
2Artifex Debian2Debian Linux GhostscriptMay 13, 2026 Jul 26, 2017 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 The gs_alloc_ref_array function in psi/ialloc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impac...Show more |
2Artifex Debian2Debian Linux Ghostscript GhostxpsMay 13, 2026 Jul 26, 2017 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 The Ins_JMPR function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other im...Show more |
2Artifex Debian2Debian Linux Ghostscript GhostxpsMay 13, 2026 Jul 26, 2017 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 The gx_ttfReader__Read function in base/gxttfb.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified...Show more |
2Artifex Debian2Debian Linux Ghostscript GhostxpsMay 13, 2026 Jul 26, 2017 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 The Ins_MDRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other im...Show more |
2Artifex Debian2Debian Linux Ghostscript GhostxpsMay 13, 2026 Jul 26, 2017 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 The Ins_IP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly have unspecified other impact via a craf...Show more |
2Artifex Debian2Debian Linux GhostscriptMay 13, 2026 Jul 26, 2017 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 The Ins_MIRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other im...Show more |
3Debian Libexpat ProjectPython3Debian Linux LibexpatPythonMay 13, 2026 Jul 25, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 XML External Entity vulnerability in libexpat 2.2.0 and earlier (Expat XML Parser Library) allows attackers to put the parser in an infinite loop using a malformed external entity definition from an external DTD. |
The dhcp_decode function in slirp/bootp.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (out-of-bounds read and QEMU process crash) via a crafted DHCP options string. |
4Canonical DebianQemu+1 more11Debian Linux Enterprise Linux DesktopEnterprise Linux Server+8 moreMay 13, 2026 Jul 25, 2017 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Heap-based buffer overflow in Cirrus CLGD 54xx VGA Emulator in Quick Emulator (Qemu) 2.8 and earlier allows local guest OS users to execute arbitrary code or cause a denial of service (crash) via vectors related to a VNC...Show more |
5Debian NetappNtp+2 more13Clustered Data Ontap Data OntapDebian Linux+10 moreMay 13, 2026 Jul 24, 2017 N/A· v4 7.5 HIGH· v3 4.3 MEDIUM· v2 The "pidfile" or "driftfile" directives in NTP ntpd 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77, when ntpd is configured to allow remote configuration, allows remote attackers with an IP address that is allowed to send...Show more |
3Canonical DebianExiv23Debian Linux Exiv2Ubuntu LinuxMay 13, 2026 Jul 24, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 There is a Floating point exception in the Exiv2::ValueType function in Exiv2 0.26 that will lead to a remote denial of service attack via crafted input. |
debian/tor.init in the Debian tor_0.2.9.11-1~deb9u1 package for Tor was designed to execute aa-exec from the standard system pathname if the apparmor package is installed, but implements this incorrectly (with a wrong as...Show more |