debian
10,149 tracked vulnerabilities.
CVE-2020-6433
MEDIUM
Google Chrome < 81.0.4044.92 - Insufficient Policy Enforcement in Extensions
Apr 13, 2020
CVSS 4.3
EPSS 0.02
CVE-2020-6432
MEDIUM
Google Chrome <81.0.4044.92 - Auth Bypass
Apr 13, 2020
CVSS 4.3
EPSS 0.02
CVE-2020-6431
MEDIUM
Google Chrome < 81.0.4044.92 - Security UI Spoofing via Full Screen Policy Enforcement
Apr 13, 2020
CVSS 4.3
EPSS 0.02
CVE-2020-6430
HIGH
Google Chrome < 81.0.4044.92 - Type Confusion in V8 via Crafted HTML Page
Apr 13, 2020
CVSS 8.8
EPSS 0.02
CVE-2020-6423
HIGH
Google Chrome <81.0.4044.92 - Use After Free
Apr 13, 2020
CVSS 8.8
EPSS 0.02
CVE-2020-11724
HIGH
OpenResty < 1.15.8.4 - HTTP Request Smuggling via ngx.location.capture API
Apr 12, 2020
CVSS 7.5
EPSS 0.03
CVE-2020-11647
HIGH
Wireshark <3.2.2,<3.0.9,<2.6.15 - DoS
Apr 10, 2020
CVSS 7.5
EPSS 0.03
CVE-2020-11655
HIGH
SQLite < 3.31.1 - Denial of Service via Malformed Window-Function Query
Apr 09, 2020
CVSS 7.5
EPSS 0.04
CVE-2020-11653
HIGH
Varnish Cache 6.0.0-6.0.5, 6.1.0-6.2.2, 6.3.0-6.3.1 - Reachable Assertion via PROXY v2 TLS Termination
Apr 08, 2020
CVSS 7.5
EPSS 0.02
CVE-2020-11620
HIGH
jackson-databind 2.9.0-2.9.10.3 - Deserialization of Untrusted Data via commons-jelly Gadget
Apr 07, 2020
CVSS 8.1
EPSS 0.06
CVE-2020-11619
HIGH
jackson-databind 2.9.0-2.9.10.3 - Deserialization of Untrusted Data via spring-aop MethodLocatingFactoryBean
Apr 07, 2020
CVSS 8.1
EPSS 0.04
CVE-2020-11612
HIGH
Netty 4.1.0-4.1.45 - Unbounded Memory Allocation in ZlibDecoder
Apr 07, 2020
CVSS 7.5
EPSS 0.09
CVE-2020-11501
HIGH
GnuTLS <3.6.13 - Cryptographic Error
Apr 03, 2020
CVSS 7.4
EPSS 0.03
CVE-2020-11494
MEDIUM
Linux Kernel 3.16-5.6.2 - Information Disclosure via Uninitialized can_frame Data in slc_bump
Apr 02, 2020
CVSS 4.4
EPSS 0.01
CVE-2020-11100
HIGH
HAProxy 1.8-2.x - Out-of-Bounds Write in HPACK Decoder via Crafted HTTP/2 Request
Apr 02, 2020
CVSS 8.8
EPSS 0.61
CVE-2020-1927
MEDIUM
Apache HTTP Server 2.4.0-2.4.41 - URL Redirection to Untrusted Site via Encoded Newlines
Apr 02, 2020
CVSS 6.1
EPSS 0.57
CVE-2020-6096
HIGH
GNU glibc 2.30.9000 - Memory Corruption
Apr 01, 2020
CVSS 8.1
EPSS 0.05
CVE-2020-1934
MEDIUM
Apache HTTP Server 2.4.0-2.4.41 - Use of Uninitialized Resource in mod_proxy_ftp
Apr 01, 2020
CVSS 5.3
EPSS 0.52
CVE-2020-7066
MEDIUM
PHP <7.2.29-7.3.16-7.4.4 - Info Disclosure
Apr 01, 2020
CVSS 5.3
EPSS 0.03
CVE-2020-7065
HIGH
PHP 7.3.0-7.3.15 - Stack-based Buffer Overflow in mb_strtolower() with UTF-32LE Encoding
Apr 01, 2020
CVSS 7.4
EPSS 0.05
CVE-2020-7064
MEDIUM
PHP 7.2.0-7.2.28 - Out-of-bounds Read in EXIF Data Parsing
Apr 01, 2020
CVSS 6.5
EPSS 0.04
CVE-2020-5291
HIGH
Bubblewrap <0.4.1 - Privilege Escalation
Mar 31, 2020
CVSS 7.2
EPSS 0.01
CVE-2020-1712
HIGH
systemd < 245-rc1 - Use-After-Free via Asynchronous Polkit Queries
Mar 31, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-10595
CRITICAL
pam-krb5 < 4.9 - Buffer Overflow via Kerberos Supplemental Prompt Response
Mar 31, 2020
CVSS 9.8
EPSS 0.05
CVE-2020-11113
HIGH
FasterXML Jackson-Databind <2.9.10.4 - Code Injection
Mar 31, 2020
CVSS 8.8
EPSS 0.06
Products
debian_linux 9,999
advanced_package_tool 21
dpkg 14
shadow 8
lintian 6
apt 5
devscripts 3
horde 3
reportbug 3
apt-cacher 2
aptlinex 2
cifs-utils 2
debusine 2
dpkg-dev 2
fsp 2
horde_groupware 2
mime-support 2
netkit 2
python-apt 2
python-dns 2
qpopper 2
xsabre 2
yubiserver 2
FreedomBox 1
adequate 1
amaya 1
apache 1
apache2 1
apt-listchanges 1
apt-setup 1
Quick Filters