debian
10,149 tracked vulnerabilities.
CVE-2021-3497
HIGH
GStreamer < 1.18.4 - Use-After-Free in Matroska File Demuxing
Apr 19, 2021
CVSS 7.8
EPSS 0.01
CVE-2021-29458
MEDIUM
exiv2 < 0.27.4 - Out-of-bounds Read via Crafted Image File Metadata Write
Apr 19, 2021
CVSS 5.5
EPSS 0.02
CVE-2021-29457
HIGH
Exiv2 < 0.27.4 - Heap-based Buffer Overflow via Crafted Image File Metadata Write
Apr 19, 2021
CVSS 7.8
EPSS 0.02
CVE-2021-31348
MEDIUM
ezxml 0.8.6 - Out-of-bounds Read in ezxml_parse_str
Apr 16, 2021
CVSS 6.5
EPSS 0.01
CVE-2021-31347
MEDIUM
libezxml.a <0.8.6 - Memory Corruption
Apr 16, 2021
CVSS 6.5
EPSS 0.01
CVE-2021-29450
MEDIUM
WordPress 4.7-5.7 - Authenticated Exposure of Sensitive Information via Editor Block
Apr 15, 2021
CVSS 6.5
EPSS 0.02
CVE-2021-29447
HIGH
WordPress 5.6.0-5.7.0 - Authenticated XML External Entity Injection via Media Library File Upload
Apr 15, 2021
CVSS 7.1
EPSS 0.86
CVE-2021-31229
MEDIUM
ezxml 0.8.6 - Out-of-bounds Write in ezxml_internal_dtd
Apr 15, 2021
CVSS 6.5
EPSS 0.01
CVE-2021-20288
HIGH
Ceph < 14.2.20 - Authentication Bypass via Key Reuse
Apr 15, 2021
CVSS 7.2
EPSS 0.02
CVE-2021-29338
MEDIUM
OpenJPEG 2.4.0 - Denial of Service via Integer Overflow in -ImgDir Option
Apr 14, 2021
CVSS 5.5
EPSS 0.02
CVE-2021-29425
MEDIUM
Apache Commons IO - Path Traversal via FileNameUtils.normalize
Apr 13, 2021
CVSS 4.8
EPSS 0.11
CVE-2021-30485
MEDIUM
libezxml.a <0.8.6 - Memory Corruption
Apr 11, 2021
CVSS 6.5
EPSS 0.01
CVE-2021-30159
MEDIUM
MediaWiki < 1.31.12 and 1.32.x-1.35.x < 1.35.2 - Unintended Page Deletion via Fast Double Move
Apr 09, 2021
CVSS 4.3
EPSS 0.02
CVE-2021-30155
MEDIUM
MediaWiki <1.35.2 - Privilege Escalation
Apr 09, 2021
CVSS 4.3
EPSS 0.01
CVE-2021-30152
MEDIUM
MediaWiki <1.31.13, 1.32-1.35.1 - Privilege Escalation
Apr 09, 2021
CVSS 4.3
EPSS 0.01
CVE-2021-3482
MEDIUM
exiv2 <= 0.27.4-RC1 - Heap-Based Buffer Overflow via JPG EXIF Data
Apr 08, 2021
CVSS 6.5
EPSS 0.02
CVE-2021-29154
HIGH
Linux Kernel < 5.11.12 - Remote Code Execution via BPF JIT Branch Displacement
Apr 08, 2021
CVSS 7.8
EPSS 0.01
CVE-2021-1405
HIGH
ClamAV < 0.103.1 - Unauthenticated Denial of Service via Email Parsing
Apr 08, 2021
CVSS 7.5
EPSS 0.03
CVE-2021-28688
MEDIUM
Linux Kernel 3.11-5.10.18 - Improper Initialization in XSA-365 Fix
Apr 06, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-30130
HIGH
phpseclib <2.0.31, <3.0.7 - Code Injection
Apr 06, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-28658
MEDIUM
Django 2.2-2.2.19, 3.0-3.0.13, 3.1-3.1.7 - Path Traversal via Multipart File Upload
Apr 06, 2021
CVSS 5.3
EPSS 0.04
CVE-2021-30164
CRITICAL
Redmine <4.0.8, <4.1.2 - Auth Bypass
Apr 06, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-30163
HIGH
Redmine <4.0.8, <4.1.2 - Info Disclosure
Apr 06, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-30158
MEDIUM
MediaWiki <1.35.2 - Info Disclosure
Apr 06, 2021
CVSS 5.3
EPSS 0.02
CVE-2021-30157
MEDIUM
MediaWiki < 1.31.12 and 1.32.x-1.35.x < 1.35.2 - Stored Cross-Site Scripting in ChangesList Filter Labels
Apr 06, 2021
CVSS 6.1
EPSS 0.01
Products
debian_linux 9,999
advanced_package_tool 21
dpkg 14
shadow 8
lintian 6
apt 5
devscripts 3
horde 3
reportbug 3
apt-cacher 2
aptlinex 2
cifs-utils 2
debusine 2
dpkg-dev 2
fsp 2
horde_groupware 2
mime-support 2
netkit 2
python-apt 2
python-dns 2
qpopper 2
xsabre 2
yubiserver 2
FreedomBox 1
adequate 1
amaya 1
apache 1
apache2 1
apt-listchanges 1
apt-setup 1
Quick Filters