debian
10,149 tracked vulnerabilities.
CVE-2020-11651
CRITICAL
KEV
SaltStack Salt <2019.2.4,3000.2 - RCE
Apr 30, 2020
CVSS 9.8
EPSS 0.96
CVE-2020-11022
MEDIUM
jQuery 1.12.0-3.4.1 - Cross-Site Scripting via DOM Manipulation Methods
Apr 29, 2020
CVSS 6.9
EPSS 0.99
CVE-2020-11023
MEDIUM
KEV
jQuery <3.5.0 - XSS
Apr 29, 2020
CVSS 6.9
EPSS 0.84
CVE-2020-11884
HIGH
Linux Kernel 4.19-5.6.7 on s390 - Race Condition in Page Table Handling
Apr 29, 2020
CVSS 7.0
EPSS 0.00
CVE-2020-10663
HIGH
JSON gem < 2.2.0 - Unsafe Object Creation via JSON Parsing
Apr 28, 2020
CVSS 7.5
EPSS 0.07
CVE-2020-12243
HIGH
OpenLDAP < 2.4.50 - Denial of Service via Nested Boolean Search Filter
Apr 28, 2020
CVSS 7.5
EPSS 0.04
CVE-2020-1774
MEDIUM
OTRS 5.0.0-5.0.42 and 7.0.0-7.0.16 - Private Key Exposure via PGP/SMIME Key Export
Apr 28, 2020
CVSS 4.5
EPSS 0.01
CVE-2020-12284
CRITICAL
FFmpeg 4.1 and 4.2.2 - Heap-Based Buffer Overflow in cbs_jpeg_split_fragment
Apr 28, 2020
CVSS 9.8
EPSS 0.04
CVE-2020-9481
HIGH
Apache Traffic Server 6.0.0-6.2.3, 7.0.0-7.1.9, 8.0.0-8.0.6 - Resource Consumption via HTTP/2 Slow Read
Apr 27, 2020
CVSS 7.5
EPSS 0.02
CVE-2020-7067
HIGH
PHP <7.2.30, <7.3.17, <7.4.5 - Memory Corruption
Apr 27, 2020
CVSS 7.5
EPSS 0.04
CVE-2020-12279
CRITICAL
libgit2 < 0.28.4 and 0.9x < 0.99.0 - Remote Code Execution via NTFS Short Name Mishandling
Apr 27, 2020
CVSS 9.8
EPSS 0.05
CVE-2020-12278
CRITICAL
libgit2 < 0.28.4 and 0.9x < 0.99.0 - Remote Code Execution via NTFS Alternate Data Stream Path Handling
Apr 27, 2020
CVSS 9.8
EPSS 0.05
CVE-2020-9488
LOW
Apache Log4j 2.0-2.12.2, 2.13.0 - Improper Certificate Validation in SMTP Appender
Apr 27, 2020
CVSS 3.7
EPSS 0.08
CVE-2020-11810
LOW
OpenVPN 2.4.0-2.4.8 - Denial of Service via Early P_DATA_V2 Packet Injection
Apr 27, 2020
CVSS 3.7
EPSS 0.02
CVE-2020-12268
CRITICAL
Artifex jbig2dec < 0.18 - Heap-Based Buffer Overflow in jbig2_image_compose
Apr 27, 2020
CVSS 9.8
EPSS 0.03
CVE-2020-12137
MEDIUM
GNU Mailman 2.0-2.1.29 - Cross-Site Scripting via Scrubbed MIME Part
Apr 24, 2020
CVSS 6.1
EPSS 0.02
CVE-2020-1760
MEDIUM
Ceph < 14.2.21 - Cross-Site Scripting via Anonymous S3 Request Handling
Apr 23, 2020
CVSS 5.8
EPSS 0.02
CVE-2020-11945
CRITICAL
Squid 3.0-3.5.27 - Integer Overflow in Digest Authentication Nonce Counter
Apr 23, 2020
CVSS 9.8
EPSS 0.27
CVE-2020-1983
HIGH
libslirp < 4.2.0 - Use-After-Free in ip_reass()
Apr 22, 2020
CVSS 7.5
EPSS 0.02
CVE-2020-12066
HIGH
Teeworlds 0.7.0-0.7.4 - Denial of Service via CServer::SendMsg
Apr 22, 2020
CVSS 7.5
EPSS 0.03
CVE-2020-11008
MEDIUM
Git < 2.17.5 - Credential Leak via Malicious URL Pattern
Apr 21, 2020
CVSS 4.0
EPSS 0.04
CVE-2020-1967
HIGH
OpenSSL 1.1.1d-1.1.1f - Denial of Service via Invalid Signature Algorithm in TLS 1.3 Handshake
Apr 21, 2020
CVSS 7.5
EPSS 0.53
CVE-2020-11868
HIGH
ntp < 4.2.8p14 and 4.3.x < 4.3.100 - Unauthenticated Denial of Service via Spoofed Server Mode Packet
Apr 17, 2020
CVSS 7.5
EPSS 0.02
CVE-2020-11729
CRITICAL
DAViCal AWL <0.60 - Info Disclosure
Apr 15, 2020
CVSS 9.8
EPSS 0.02
CVE-2020-11728
HIGH
DAViCal AWL <0.60 - Info Disclosure
Apr 15, 2020
CVSS 7.5
EPSS 0.02
Products
debian_linux 9,999
advanced_package_tool 21
dpkg 14
shadow 8
lintian 6
apt 5
devscripts 3
horde 3
reportbug 3
apt-cacher 2
aptlinex 2
cifs-utils 2
debusine 2
dpkg-dev 2
fsp 2
horde_groupware 2
mime-support 2
netkit 2
python-apt 2
python-dns 2
qpopper 2
xsabre 2
yubiserver 2
FreedomBox 1
adequate 1
amaya 1
apache 1
apache2 1
apt-listchanges 1
apt-setup 1
Quick Filters