debian

10,127 tracked vulnerabilities.

CVE-2024-30203 MEDIUM
Emacs < 29.3 - Unauthenticated Arbitrary Code Execution via Inline MIME Content Handling
Mar 25, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-29944 HIGH
Firefox < 124.0.1 and ESR < 115.9.1 - Arbitrary JavaScript Execution via Privileged Object Event Handler Injection
Mar 22, 2024
CVSS 8.4
EPSS 0.01
CVE-2024-26643 MEDIUM
Linux Kernel < 5.4.274, 5.5.0-6.7.12 - Use-After-Free in nf_tables
Mar 21, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-26642 MEDIUM
Linux Kernel - Unauthenticated Denial of Service via Anonymous Set with Timeout Flag
Mar 21, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-28102 MEDIUM
jwcrypto < 1.5.6 - Denial of Service via Malicious JWE Token
Mar 21, 2024
CVSS 6.8
EPSS 0.00
CVE-2024-2614 HIGH
Firefox < 124 and ESR < 115.9 - Out-of-bounds Write
Mar 19, 2024
CVSS 8.8
EPSS 0.02
CVE-2024-2611 MEDIUM
Firefox < 124 and ESR < 115.9 - Permission Grant Spoofing via Pointer Lock
Mar 19, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-2609 MEDIUM
Firefox <124, Firefox ESR <115.10, Thunderbird <115.10 - CSRF
Mar 19, 2024
CVSS 6.1
EPSS 0.01
CVE-2024-2608 HIGH
Firefox <124, Firefox ESR <115.9, Thunderbird <115.9 - Buffer Overflow
Mar 19, 2024
CVSS 8.4
EPSS 0.00
CVE-2024-2607 HIGH
Firefox < 124 and ESR < 115.9 - Remote Code Execution via Return Register Overwrite
Mar 19, 2024
CVSS 8.1
EPSS 0.01
CVE-2024-2496 MEDIUM
libvirt - Denial of Service via udevConnectListAllInterfaces NULL Pointer Dereference
Mar 18, 2024
CVSS 5.0
EPSS 0.00
CVE-2024-26641 MEDIUM
Linux Kernel 4.7-6.7.4 - Use of Uninitialized Resource in IP6 Tunnel Receiver
Mar 18, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-26640 MEDIUM
Linux Kernel - Denial of Service via TCP rx Zerocopy Page Mapping
Mar 18, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-26636 MEDIUM
Linux Kernel - Denial of Service via LLC Socket Buffer Manipulation
Mar 18, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-26635 MEDIUM
Linux Kernel - Uninitialized Memory Read in LLC Connection Handler via ETH_P_TR_802_2 Packet
Mar 18, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-26633 MEDIUM
Linux Kernel 4.10-4.19.305, 4.20-5.4.267, 5.5-5.10.208 - Uninitialized Memory Read in ip6_tnl_parse_tlv_enc_lim
Mar 18, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-24549 HIGH
Apache Tomcat <11.0.0-M16, <10.1.18, <9.0.85, <=8.5.98 - DoS
Mar 13, 2024
CVSS 7.5
EPSS 0.65
CVE-2024-23672 MEDIUM
Apache Tomcat 8.5.0-8.5.98, 9.0.0-M1-9.0.85, 10.1.0-M1-10.1.18, 11.0.0-M1-M16 DoS via WebSocket Cleanup
Mar 13, 2024
CVSS 6.3
EPSS 0.01
CVE-2024-26614 MEDIUM
Linux Kernel 3.7-5.10.210, 5.11-5.15.149, 5.16-6.1.76, 6.2-6.6.15, 6.7-6.7.3 - Use-After-Free in TCP Accept Queue
Mar 11, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-26625 HIGH
Linux Kernel Use-After-Free in LLC Socket Release
Mar 06, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-1936 HIGH
Thunderbird < 115.8.1 - Insecure Storage of Sensitive Information via Email Subject Cache Contamination
Mar 04, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-27355 HIGH
phpseclib <1.0.23, <2.0.47, <3.0.36 - DoS
Mar 01, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-27354 HIGH
phpseclib <1.0.23, 2.0.47, 3.0.36 - DoS
Mar 01, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-26146 MEDIUM
Rack 0.4-2.0.9.3, 3.0.0-3.0.9.0 - Denial of Service via Header Parsing
Feb 29, 2024
CVSS 5.3
EPSS 0.01
CVE-2024-26141 MEDIUM
Rack 1.3.0-2.2.8.0 and 3.0.0-3.0.9.0 - Denial of Service via Range Header
Feb 29, 2024
CVSS 5.8
EPSS 0.00