debian

10,127 tracked vulnerabilities.

CVE-2024-54028 HIGH
catdoc 0.95 - Heap-Based Memory Corruption
Jun 02, 2025
CVSS 8.4
EPSS 0.00
CVE-2024-52035 HIGH
catdoc 0.95 - Heap-Based Memory Corruption via OLE Document File Allocation Table Parser
Jun 02, 2025
CVSS 8.4
EPSS 0.00
CVE-2024-47619 HIGH
syslog-ng < 4.8.2 - Improper Certificate Validation in TLS Wildcard Matching
May 07, 2025
CVSS 7.5
EPSS 0.01
CVE-2024-40635 MEDIUM
containerd <1.6.38, <1.7.27, <2.0.4 - Privilege Escalation
Mar 17, 2025
CVSS 4.6
EPSS 0.00
CVE-2024-58054 HIGH
Linux Kernel 5.17-6.1.129, 6.2-6.6.76, 6.7-6.12.13 - Denial of Service via max96712 Module Removal
Mar 06, 2025
CVSS 7.1
EPSS 0.00
CVE-2024-55581 HIGH
Ada Web Server 25.0.0 - Improper Certificate Validation in AWS.Client
Feb 26, 2025
CVSS 7.4
EPSS 0.00
CVE-2024-56374 MEDIUM
Django 4.2-4.2.17 5.0-5.0.10 5.1-5.1.4 - Denial of Service via IPv6 Address Validation
Jan 14, 2025
CVSS 5.8
EPSS 0.00
CVE-2024-52006 HIGH
Git < 2.40.4 - Command Injection via Carriage Return Character
Jan 14, 2025
CVSS 7.5
EPSS 0.01
CVE-2024-50349 MEDIUM
Git < 2.40.4 - Terminal Credential Prompt Spoofing via ANSI Escape Sequences
Jan 14, 2025
CVSS 4.7
EPSS 0.01
CVE-2024-12426 MEDIUM
LibreOffice 24.8.0.1-24.8.3 - Exposure of Sensitive Information via URL Environmental Variable Expansion
Jan 07, 2025
CVSS 6.5
EPSS 0.00
CVE-2024-12425 LOW
LibreOffice 24.8.0.1-24.8.3 - Path Traversal and Arbitrary File Write via Embedded Font Files
Jan 07, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-46981 HIGH
Redis 6.2.0-6.2.16 - Authenticated Remote Code Execution via Lua Script Garbage Collector Manipulation
Jan 06, 2025
CVSS 7.0
EPSS 0.78
CVE-2024-56705 MEDIUM
Linux Kernel 4.12-4.17 - Reachable Assertion in ia_css_3a_statistics_allocate
Dec 28, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-56644 MEDIUM
Linux Kernel 2.6.33.2-2.6.34 - Dst Object Leak in ip6_negative_advice
Dec 27, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-53197 HIGH KEV
Linux Kernel - Out-of-bounds Write in USB Audio Configuration Handling
Dec 27, 2024
CVSS 7.8
EPSS 0.02
CVE-2024-53150 HIGH KEV
Linux Kernel - Out-of-bounds Read in USB Audio Clock Descriptor Validation
Dec 24, 2024
CVSS 7.1
EPSS 0.01
CVE-2024-47606 CRITICAL
GStreamer < 1.24.10 - Integer Underflow via qtdemux_parse_theora_extension
Dec 12, 2024
CVSS 9.8
EPSS 0.01
CVE-2024-46901 LOW
Apache Subversion <1.14.4 - Info Disclosure
Dec 09, 2024
CVSS 3.1
EPSS 0.06
CVE-2024-53566 MEDIUM
Sangoma Asterisk 22.0.0-rc1 22.0.0-rc2 22.0.0-pre1 22.0.0 - Path Traversal via action_listcategories()
Dec 02, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-53104 HIGH KEV
Linux Kernel - Out-of-bounds Write in UVC Video Driver
Dec 02, 2024
CVSS 7.8
EPSS 0.13
CVE-2024-44309 MEDIUM KEV
Debian Linux < 18.1.1 - XSS
Nov 20, 2024
CVSS 6.3
EPSS 0.01
CVE-2024-44308 HIGH KEV
Debian Linux < 18.1.1 - Denial of Service
Nov 20, 2024
CVSS 8.8
EPSS 0.01
CVE-2024-10224 MEDIUM
Modules::ScanDeps < 1.36 - OS Command Injection via Pesky Pipe or eval()
Nov 19, 2024
CVSS 5.3
EPSS 0.01
CVE-2024-50302 MEDIUM KEV
Google Android < 4.19.324 - Use of Uninitialized Resource
Nov 19, 2024
CVSS 5.5
EPSS 0.03
CVE-2024-52316 CRITICAL
Apache Tomcat - Unchecked Error Condition
Nov 18, 2024
CVSS 9.8
EPSS 0.02