debian
10,149 tracked vulnerabilities.
CVE-2020-14401
MEDIUM
libvncserver < 0.9.13 - Integer Overflow in Pixel Value Calculation
Jun 17, 2020
CVSS 6.5
EPSS 0.02
CVE-2020-14400
HIGH
LibVNCServer <0.9.13 - Info Disclosure
Jun 17, 2020
CVSS 7.5
EPSS 0.03
CVE-2020-14399
HIGH
LibVNCServer <0.9.13 - Buffer Overflow
Jun 17, 2020
CVSS 7.5
EPSS 0.03
CVE-2020-14398
HIGH
LibVNCServer < 0.9.13 - Denial of Service via Infinite Loop in TCP Connection Handling
Jun 17, 2020
CVSS 7.5
EPSS 0.03
CVE-2020-14397
HIGH
LibVNCServer < 0.9.13 - NULL Pointer Dereference in rfbregion.c
Jun 17, 2020
CVSS 7.5
EPSS 0.03
CVE-2020-14396
HIGH
LibVNCServer < 0.9.13 - NULL Pointer Dereference in TLS OpenSSL Handler
Jun 17, 2020
CVSS 7.5
EPSS 0.03
CVE-2020-14195
HIGH
jackson-databind 2.9.0-2.9.10.4 - Deserialization of Untrusted Data via org.jsecurity.realm.jndi.JndiRealmFactory
Jun 16, 2020
CVSS 8.1
EPSS 0.05
CVE-2020-4051
LOW
Dijit < 1.11.11, 1.12.0-1.12.8, 1.13.0-1.13.7, 1.14.0-1.14.6, 1.15.0-1.15.3, 1.16.0-1.16.2 - XSS in Editor LinkDialog
Jun 15, 2020
CVSS 3.7
EPSS 0.01
CVE-2020-14148
HIGH
ngIRCd < 26~rc2 - Out-of-bounds Read in Server-Server Protocol
Jun 15, 2020
CVSS 7.5
EPSS 0.03
CVE-2020-14147
HIGH
Redis < 6.0.3 - Denial of Service via Integer Overflow in getnum Function
Jun 15, 2020
CVSS 7.7
EPSS 0.03
CVE-2020-14152
HIGH
libjpeg < 9d - Uncontrolled Resource Consumption in jpeg_mem_available
Jun 15, 2020
CVSS 7.1
EPSS 0.01
CVE-2020-14093
MEDIUM
mutt < 1.14.3 - Cleartext Transmission of Sensitive Information via IMAP PREAUTH Response
Jun 15, 2020
CVSS 5.9
EPSS 0.02
CVE-2020-14062
HIGH
FasterXML jackson-databind 2.9.0-2.9.10.4 - Deserialization of Untrusted Data via xalan2 JNDIConnectionPool
Jun 14, 2020
CVSS 8.1
EPSS 0.08
CVE-2020-14061
HIGH
jackson-databind 2.9.0-2.9.10.4 - Deserialization of Untrusted Data via Oracle AQjms Gadgets
Jun 14, 2020
CVSS 8.1
EPSS 0.04
CVE-2020-4050
LOW
WordPress 3.7-5.4.1 - Arbitrary User Meta Field Injection via set-screen-option Filter Misuse
Jun 12, 2020
CVSS 3.5
EPSS 0.02
CVE-2020-4049
LOW
WordPress 3.7-5.4.1 - Stored Cross-Site Scripting via Theme Folder Name
Jun 12, 2020
CVSS 2.4
EPSS 0.03
CVE-2020-4048
MEDIUM
WordPress 3.7-3.7.33 - Open Redirect via URL Sanitization Issue
Jun 12, 2020
CVSS 5.7
EPSS 0.02
CVE-2020-4047
MEDIUM
WordPress 3.7-5.4.1 - Authenticated Stored Cross-Site Scripting via Media File Attachment
Jun 12, 2020
CVSS 6.8
EPSS 0.03
CVE-2020-4046
MEDIUM
WordPress 3.7-5.4.1 - Authenticated Stored Cross-Site Scripting via Embed Block
Jun 12, 2020
CVSS 5.4
EPSS 0.02
CVE-2020-0198
HIGH
Android - Integer Overflow in exif_data_load_data_content
Jun 11, 2020
CVSS 7.5
EPSS 0.04
CVE-2020-0182
MEDIUM
Android - Out-of-bounds Read in exif_entry_get_value
Jun 11, 2020
CVSS 6.5
EPSS 0.01
CVE-2020-10757
HIGH
Linux Kernel >4.5-rc1 - Privilege Escalation
Jun 09, 2020
CVSS 7.8
EPSS 0.01
CVE-2020-13974
HIGH
Linux Kernel 4.4-5.7.1 - Integer Overflow in VT Keyboard Driver
Jun 09, 2020
CVSS 7.8
EPSS 0.01
CVE-2020-13965
MEDIUM
KEV
Roundcube Webmail < 1.3.12 and 1.4.x < 1.4.5 - Stored Cross-Site Scripting via XML Attachment Preview
Jun 09, 2020
CVSS 6.1
EPSS 0.77
CVE-2020-13964
MEDIUM
Roundcube Webmail < 1.3.12 and 1.4.x < 1.4.5 - Cross-Site Scripting via Username Template Object
Jun 09, 2020
CVSS 6.1
EPSS 0.01
Products
debian_linux 9,999
advanced_package_tool 21
dpkg 14
shadow 8
lintian 6
apt 5
devscripts 3
horde 3
reportbug 3
apt-cacher 2
aptlinex 2
cifs-utils 2
debusine 2
dpkg-dev 2
fsp 2
horde_groupware 2
mime-support 2
netkit 2
python-apt 2
python-dns 2
qpopper 2
xsabre 2
yubiserver 2
FreedomBox 1
adequate 1
amaya 1
apache 1
apache2 1
apt-listchanges 1
apt-setup 1
Quick Filters