debian
10,127 tracked vulnerabilities.
CVE-2024-25126
MEDIUM
Rack 0.4-2.2.8.1 and 3.0.0-3.0.9.1 - Denial of Service via Content-Type Header Parsing
Feb 29, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-27285
MEDIUM
yard < 0.9.36 - Cross-Site Scripting in frames.erb Template
Feb 28, 2024
CVSS 5.4
EPSS 0.03
CVE-2024-25082
MEDIUM
FontForge <20230101 - Command Injection
Feb 26, 2024
CVSS 6.5
EPSS 0.02
CVE-2024-25081
MEDIUM
FontForge <20230101 - Command Injection
Feb 26, 2024
CVSS 4.2
EPSS 0.00
CVE-2024-22201
HIGH
Eclipse Jetty 9.3.0-9.4.53, 10.0.8-10.0.19, 12.0.0-12.0.5 - Denial of Service via HTTP/2 SSL Connection Leak
Feb 26, 2024
CVSS 7.5
EPSS 0.01
CVE-2024-26598
HIGH
Linux Kernel - Use-After-Free in KVM vgic-its LPI Translation Cache
Feb 23, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-1553
HIGH
Firefox < 123 and Firefox ESR < 115.8 - Memory Corruption
Feb 20, 2024
CVSS 8.1
EPSS 0.01
CVE-2024-1552
HIGH
Firefox < 123, Firefox ESR < 115.8, Thunderbird < 115.8 - Code Inje...
Feb 20, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-1551
MEDIUM
Firefox <123, Firefox ESR <115.8, Thunderbird <115.8 - XSS
Feb 20, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-1550
MEDIUM
Firefox < 123 and ESR < 115.8 - UI Spoofing via Fullscreen and Pointer Lock
Feb 20, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-1549
MEDIUM
Firefox < 123 and ESR < 115.8 - Permission Dialog Spoofing via Large Custom Cursor
Feb 20, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-1548
MEDIUM
Firefox <123, Firefox ESR <115.8, Thunderbird <115.8 - Info Disclosure
Feb 20, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-1547
MEDIUM
Firefox < 123 and ESR < 115.8 - Authentication Bypass by Spoofing via Alert Dialog
Feb 20, 2024
CVSS 6.5
EPSS 0.01
CVE-2024-1546
HIGH
Firefox < 123 and ESR < 115.8 - Out-of-bounds Read in Networking Channel Buffer Handling
Feb 20, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-26581
HIGH
Linux Kernel - Use-After-Free in nft_set_rbtree Lazy GC
Feb 20, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-24814
HIGH
mod_auth_openidc 2.0.0-2.4.15.1 - Denial of Service via mod_auth_openidc_session_chunks Cookie
Feb 13, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-1151
MEDIUM
Linux Kernel - Stack-based Buffer Overflow in Open vSwitch
Feb 11, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-25714
CRITICAL
Rhonabwy < 1.1.13 - Timing Side-Channel Attack via HMAC Signature Verification
Feb 11, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-25189
CRITICAL
libjwt <1.15.3 - Auth Bypass
Feb 08, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-24858
MEDIUM
Linux kernel < 3.19.8 and >=v4.0-rc1 <v6.8-rc2 - Denial of Service via Bluetooth Interval Set Race Condition
Feb 05, 2024
CVSS 4.6
EPSS 0.00
CVE-2024-24857
MEDIUM
Linux kernel < 3.19.8 and >=v4.0-rc1 <v6.8-rc2 - Denial of Service via Bluetooth Connection Info Race Condition
Feb 05, 2024
CVSS 4.6
EPSS 0.00
CVE-2024-1086
HIGH
KEV
Linux Kernel 3.15-5.15.149 - Use-After-Free in nf_tables Component
Jan 31, 2024
CVSS 7.8
EPSS 0.85
CVE-2024-0808
CRITICAL
Google Chrome <121.0.6167.85 - Heap Corruption
Jan 24, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-0755
HIGH
Firefox < 122, Firefox ESR < 115.7, Thunderbird < 115.7 - Memory Corruption and Remote Code Execution
Jan 23, 2024
CVSS 8.8
EPSS 0.01
CVE-2024-0753
MEDIUM
Firefox < 122, Firefox ESR < 115.7, Thunderbird < 115.7 - Auth Bypass
Jan 23, 2024
CVSS 6.5
EPSS 0.00
Products
debian_linux 9,979
advanced_package_tool 21
dpkg 14
shadow 8
lintian 6
apt 5
devscripts 3
horde 3
reportbug 3
apt-cacher 2
aptlinex 2
cifs-utils 2
dpkg-dev 2
fsp 2
horde_groupware 2
mime-support 2
netkit 2
python-apt 2
python-dns 2
qpopper 2
xsabre 2
yubiserver 2
FreedomBox 1
adequate 1
amaya 1
apache 1
apache2 1
apt-listchanges 1
apt-setup 1
axiom 1
Quick Filters