debian

10,127 tracked vulnerabilities.

CVE-2023-27635 HIGH
debmany - OS Command Injection via Crafted .deb File
Mar 05, 2023
CVSS 7.8
EPSS 0.00
CVE-2023-27561 HIGH
runc < 1.1.5 - Privilege Escalation via Custom Volume-Mount Configurations
Mar 03, 2023
CVSS 7.0
EPSS 0.00
CVE-2023-26604 HIGH
systemd <247 - Privilege Escalation
Mar 03, 2023
CVSS 7.8
EPSS 0.06
CVE-2023-25221 HIGH
libde265 1.0.10 - Heap-Based Buffer Overflow in derive_spatial_luma_vector_prediction
Mar 01, 2023
CVSS 7.8
EPSS 0.00
CVE-2023-24758 MEDIUM
libde265 1.0.10 - Denial of Service via NULL Pointer Dereference in ff_hevc_put_weighted_pred_avg_8_sse
Mar 01, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-24757 MEDIUM
libde265 v1.0.10 - Denial of Service via NULL Pointer Dereference in put_unweighted_pred_16_fallback
Mar 01, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-24756 MEDIUM
libde265 v1.0.10 - Denial of Service via NULL Pointer Dereference in ff_hevc_put_unweighted_pred_8_sse
Mar 01, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-24755 MEDIUM
libde265 1.0.10 - Denial of Service via NULL Pointer Dereference in put_weighted_pred_8_fallback
Mar 01, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-24754 MEDIUM
libde265 v1.0.10 - Denial of Service via NULL Pointer Dereference in ff_hevc_put_weighted_pred_avg_8_sse
Mar 01, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-24752 MEDIUM
libde265 v1.0.10 - Denial of Service via NULL Pointer Dereference in ff_hevc_put_hevc_epel_pixels_8_sse
Mar 01, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-24751 MEDIUM
libde265 1.0.10 - Denial of Service via NULL Pointer Dereference in mc_chroma
Mar 01, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-27372 CRITICAL NUCLEI
SPIP < 4.2.1 - Remote Code Execution via Form Value Deserialization
Feb 28, 2023
CVSS 9.8
EPSS 0.93
CVE-2023-26545 MEDIUM
Linux kernel <6.1.13 - Use After Free
Feb 25, 2023
CVSS 4.7
EPSS 0.00
CVE-2023-23920 MEDIUM
Node.js <19.6.1-<14.21.3 - Privilege Escalation
Feb 23, 2023
CVSS 4.2
EPSS 0.00
CVE-2023-23916 MEDIUM
curl 7.57.0-7.87.0 - Denial of Service via HTTP Compression Header Chain
Feb 23, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-26314 HIGH
Mono <6.8.0.105+dfsg-3.3 - Code Injection
Feb 22, 2023
CVSS 8.8
EPSS 0.01
CVE-2023-23009 MEDIUM
Libreswan 4.9 - Denial of Service via Crafted TS Payload
Feb 21, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-24998 HIGH
Apache Commons FileUpload < 1.5 - Denial of Service via Unlimited Request Parts
Feb 20, 2023
CVSS 7.5
EPSS 0.34
CVE-2023-0361 HIGH
GnuTLS - Timing Side-Channel in RSA ClientKeyExchange Handling
Feb 15, 2023
CVSS 7.4
EPSS 0.04
CVE-2023-24580 HIGH
Django 3.2-3.2.18 - Denial of Service via Multipart Request Parser
Feb 15, 2023
CVSS 7.5
EPSS 0.23
CVE-2023-25725 CRITICAL
HAProxy < 2.0.31 - HTTP Request Smuggling via Empty Header Field Names
Feb 14, 2023
CVSS 9.1
EPSS 0.18
CVE-2023-0770 HIGH
gpac < 2.2.0 - Stack-based Buffer Overflow
Feb 09, 2023
CVSS 7.8
EPSS 0.00
CVE-2023-22795 HIGH
Rails < 6.1.7.1 and < 7.0.4.1 - Denial of Service via If-None-Match Header Regex
Feb 09, 2023
CVSS 7.5
EPSS 0.01
CVE-2023-23969 HIGH
Django 3.2-3.2.16 4.0-4.0.8 4.1-4.1.5 - Denial of Service via Accept-Language Header Parsing
Feb 01, 2023
CVSS 7.5
EPSS 0.06
CVE-2023-0266 HIGH KEV
Linux Kernel >=4.14 <4.14.303 - Use-After-Free in ALSA PCM via Missing Locks
Jan 30, 2023
CVSS 7.9
EPSS 0.00