debian
10,149 tracked vulnerabilities.
CVE-2021-23973
MEDIUM
Firefox < 86.0, Firefox ESR < 78.8, Thunderbird < 78.8 - Information Disclosure via Cross-Origin Media Decoding Error
Feb 26, 2021
CVSS 6.5
EPSS 0.01
CVE-2021-23969
MEDIUM
Firefox < 86.0, Firefox ESR < 78.8, Thunderbird < 78.8 - Information Disclosure via CSP Redirect Handling
Feb 26, 2021
CVSS 4.3
EPSS 0.01
CVE-2021-23968
MEDIUM
Firefox < 86.0, Firefox ESR < 78.8, Thunderbird < 78.8 - Information Disclosure via CSP Violation Report
Feb 26, 2021
CVSS 4.3
EPSS 0.01
CVE-2021-20203
LOW
QEMU < 5.2.0 - Denial of Service via vmxnet3 NIC Parameter Integer Overflow
Feb 25, 2021
CVSS 3.2
EPSS 0.01
CVE-2021-27645
LOW
GNU C Library <2.34 - Use After Free
Feb 24, 2021
CVSS 2.5
EPSS 0.00
CVE-2021-3410
HIGH
libcaca v0.99.beta19 - Buffer Overflow in caca_resize Function
Feb 23, 2021
CVSS 7.8
EPSS 0.01
CVE-2021-3407
MEDIUM
MuPDF 1.18.0 - Double Free during Linearization
Feb 23, 2021
CVSS 5.5
EPSS 0.50
CVE-2021-3405
MEDIUM
libebml < 1.4.2 - Heap Overflow in EbmlString and EbmlUnicodeString ReadData
Feb 23, 2021
CVSS 6.5
EPSS 0.02
CVE-2021-20247
HIGH
mbsync < 1.3.5 - Path Traversal via IMAP Mailbox Name
Feb 23, 2021
CVSS 7.4
EPSS 0.02
CVE-2021-26120
CRITICAL
Smarty < 3.1.39 - Code Injection via Unexpected Function Name
Feb 22, 2021
CVSS 9.8
EPSS 0.82
CVE-2021-26119
HIGH
Smarty < 3.1.39 - Sandbox Escape via $smarty.template_object Access
Feb 22, 2021
CVSS 7.5
EPSS 0.09
CVE-2021-27379
HIGH
Xen 3.2.0-4.11.x - Unintended DMA Access via IOMMU Update Mismanagement
Feb 18, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-26720
HIGH
avahi < 0.8-4 - Denial of Service and Arbitrary File Creation via Symlink Attack
Feb 17, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-26933
MEDIUM
Xen 4.9-4.14.x - Information Exposure via Cache Bypass Timing
Feb 17, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-26932
MEDIUM
Linux kernel <5.10.16 - Privilege Escalation
Feb 17, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-26931
MEDIUM
Linux Kernel 2.6.39-5.10.16 - Denial of Service via Xen Block/Net/SCSI Backend Error Handling
Feb 17, 2021
CVSS 5.5
EPSS 0.01
CVE-2021-26930
HIGH
Linux kernel <5.10.16 - Info Disclosure
Feb 17, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-23841
MEDIUM
OpenSSL 1.0.2-1.0.2x and 1.1.1-1.1.1i - Denial of Service via X509_issuer_and_serial_hash NULL Pointer Dereference
Feb 16, 2021
CVSS 5.9
EPSS 0.07
CVE-2021-23840
HIGH
OpenSSL 1.0.2-1.0.2x and 1.1.1-1.1.1i - Integer Overflow in EVP_CipherUpdate
Feb 16, 2021
CVSS 7.5
EPSS 0.51
CVE-2021-27229
HIGH
Mumble < 1.3.4 - Remote Code Execution via Crafted Server List URL
Feb 16, 2021
CVSS 8.8
EPSS 0.03
CVE-2021-27219
HIGH
GNOME GLib <2.66.6, <2.67.3 - Memory Corruption
Feb 15, 2021
CVSS 7.5
EPSS 0.03
CVE-2021-27218
HIGH
GNOME GLib <2.66.7 & <2.67.4 - Info Disclosure
Feb 15, 2021
CVSS 7.5
EPSS 0.04
CVE-2021-23336
MEDIUM
Python/cpython <3.6.13, <3.7.10, <3.8.8, <3.9.2 - Web Cache Poisoning
Feb 15, 2021
CVSS 5.9
EPSS 0.36
CVE-2021-21702
MEDIUM
PHP 7.3.0-7.3.26 - Denial of Service via SOAP Extension Null Pointer Dereference
Feb 15, 2021
CVSS 5.3
EPSS 0.03
CVE-2021-26929
MEDIUM
Horde Groupware Webmail < 5.2.22 - Cross-Site Scripting via Text2html.php PreProcess
Feb 14, 2021
CVSS 6.1
EPSS 0.05
Products
debian_linux 9,999
advanced_package_tool 21
dpkg 14
shadow 8
lintian 6
apt 5
devscripts 3
horde 3
reportbug 3
apt-cacher 2
aptlinex 2
cifs-utils 2
debusine 2
dpkg-dev 2
fsp 2
horde_groupware 2
mime-support 2
netkit 2
python-apt 2
python-dns 2
qpopper 2
xsabre 2
yubiserver 2
FreedomBox 1
adequate 1
amaya 1
apache 1
apache2 1
apt-listchanges 1
apt-setup 1
Quick Filters