debian
10,149 tracked vulnerabilities.
CVE-2020-25285
MEDIUM
Linux Kernel < 5.8.8 - Race Condition in hugetlb sysctl Handlers
Sep 13, 2020
CVSS 6.4
EPSS 0.00
CVE-2020-25284
MEDIUM
Linux Kernel < 5.8.9 - Incorrect Authorization in rbd Block Device Driver
Sep 13, 2020
CVSS 4.1
EPSS 0.00
CVE-2020-14332
MEDIUM
Ansible Engine 2.8.0-2.8.13 - Sensitive Information Exposure in Module Args via Check Mode
Sep 11, 2020
CVSS 5.5
EPSS 0.00
CVE-2020-14330
MEDIUM
Ansible Engine < 2.9.12 and Ansible < 2.10.0 - Sensitive Information Exposure in URI Module Logs
Sep 11, 2020
CVSS 5.0
EPSS 0.01
CVE-2020-15169
MEDIUM
Action View < 5.2.4.4 - Cross-Site Scripting in Translation Helpers
Sep 11, 2020
CVSS 5.4
EPSS 0.02
CVE-2020-15166
HIGH
libzmq < 4.3.3 - Denial of Service via TCP Transport Endpoint
Sep 11, 2020
CVSS 7.5
EPSS 0.03
CVE-2020-25269
MEDIUM
InspIRCd 2.0-2.0.28 and 3.0-3.5.0 - Use-After-Free in pgsql Module
Sep 11, 2020
CVSS 6.5
EPSS 0.03
CVE-2020-13920
MEDIUM
Apache ActiveMQ < 5.15.12 - Unauthenticated JMX RMI Registry Manipulation
Sep 10, 2020
CVSS 5.9
EPSS 0.05
CVE-2020-6097
HIGH
atftp <0.7.git20120829-3.1+b1 - DoS
Sep 10, 2020
CVSS 7.5
EPSS 0.02
CVE-2020-25219
HIGH
libproxy 0.4.0-0.4.15 - Denial of Service via Infinite HTTP Response Stream
Sep 09, 2020
CVSS 7.5
EPSS 0.04
CVE-2020-24916
CRITICAL
Yaws 1.81-2.0.7 - OS Command Injection via CGI Implementation
Sep 09, 2020
CVSS 9.8
EPSS 0.17
CVE-2020-24379
CRITICAL
Yaws 1.81-2.0.7 - XML External Entity Injection via WebDAV Implementation
Sep 09, 2020
CVSS 9.8
EPSS 0.03
CVE-2020-7068
MEDIUM
PHP 7.2.0-7.2.32, 7.3.0-7.3.20, 7.4.0-7.4.8 - Use-After-Free in PHAR File Processing
Sep 09, 2020
CVSS 4.8
EPSS 0.02
CVE-2020-25212
HIGH
Linux Kernel < 5.8.3 - Time-of-check Time-of-use Race Condition in NFS Client
Sep 09, 2020
CVSS 7.0
EPSS 0.00
CVE-2020-25211
MEDIUM
Linux Kernel < 5.8.7 - Buffer Overflow in ctnetlink_parse_tuple_filter
Sep 09, 2020
CVSS 6.0
EPSS 0.01
CVE-2020-1968
LOW
OpenSSL 1.0.2-1.0.2v - Pre-Master Secret Disclosure via Raccoon Attack
Sep 09, 2020
CVSS 3.7
EPSS 0.05
CVE-2020-3702
MEDIUM
Snapdragon Auto et al - Info Disclosure
Sep 08, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-24977
MEDIUM
libxml2 2.9.10 - Out-of-bounds Read in xmlEncodeEntitiesInternal
Sep 04, 2020
CVSS 6.5
EPSS 0.04
CVE-2020-7729
HIGH
grunt < 1.3.0 - Arbitrary Code Execution via Insecure YAML Deserialization
Sep 03, 2020
CVSS 7.1
EPSS 0.02
CVE-2020-24654
LOW
KDE Ark < 20.08.1 - Arbitrary File Write via Symlink in TAR Archive
Sep 02, 2020
CVSS 3.3
EPSS 0.01
CVE-2020-15811
MEDIUM
Squid <4.13-5.0.4 - HTTP Request Splitting
Sep 02, 2020
CVSS 6.5
EPSS 0.04
CVE-2020-15810
MEDIUM
Squid < 4.13 and 5.x < 5.0.4 - HTTP Request Smuggling via Relaxed Header Parsing
Sep 02, 2020
CVSS 6.5
EPSS 0.03
CVE-2020-16150
MEDIUM
Mbed TLS < 2.7.17 - Timing Side-Channel Attack via CBC Mode Padding
Sep 02, 2020
CVSS 5.5
EPSS 0.00
CVE-2020-25073
MEDIUM
FreedomBox < 20.13 - Unauthenticated Sensitive Information Exposure via Apache /server-status
Sep 02, 2020
CVSS 5.3
EPSS 0.02
CVE-2020-14364
MEDIUM
QEMU < 5.2.0 - Out-of-bounds Read/Write in USB Emulator
Aug 31, 2020
CVSS 5.0
EPSS 0.05
Products
debian_linux 9,999
advanced_package_tool 21
dpkg 14
shadow 8
lintian 6
apt 5
devscripts 3
horde 3
reportbug 3
apt-cacher 2
aptlinex 2
cifs-utils 2
debusine 2
dpkg-dev 2
fsp 2
horde_groupware 2
mime-support 2
netkit 2
python-apt 2
python-dns 2
qpopper 2
xsabre 2
yubiserver 2
FreedomBox 1
adequate 1
amaya 1
apache 1
apache2 1
apt-listchanges 1
apt-setup 1
Quick Filters