Packages that have open unimportant issues

This page lists packages that are affected by issues that are considered unimportant from a security perspective. These issues are thought to be unexploitable or uneffective in most situations (for example, browser denial-of-services).

PackageBugDescriptionReleases
389-adminCVE-2015-0233Multiple insecure Temporary File vulnerabilities in 389 Administration ...jessie
389-ds-baseCVE-2016-5416389 Directory Server in Red Hat Enterprise Linux Desktop 6 through 7, ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
9baseCVE-2014-19359base 1:6-6 and 1:6-7 insecurely creates temporary files which results ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
abcm2psCVE-2018-10753Stack-based buffer overflow in the delayed_output function in music.c ...jessie
CVE-2018-10771Stack-based buffer overflow in the get_key function in parse.c in abcm ...jessie
CVE-2019-1010069moinejf abcm2ps 8.13.20 is affected by: Incorrect Access Control. The ...jessie
CVE-2021-32434abcm2ps v8.14.11 was discovered to contain an out-of-bounds read in th ...bullseye, buster, jessie
CVE-2021-32436An out-of-bounds read in the function write_title() in subs.c of abcm2 ...bullseye, buster, jessie
abiwordCVE-2017-17529af/util/xp/ut_go_file.cpp in AbiWord 3.0.2-2 does not validate strings ...bookworm, bullseye, buster, jessie, sid, stretch
acpica-unixCVE-2017-13693The acpi_ds_create_operands() function in drivers/acpi/acpica/dsutils. ...jessie, stretch
CVE-2017-13694The acpi_ps_complete_final_op() function in drivers/acpi/acpica/psobje ...jessie, stretch
CVE-2017-13695The acpi_ns_evaluate() function in drivers/acpi/acpica/nseval.c in the ...jessie, stretch
activemqCVE-2016-0782The administration web console in Apache ActiveMQ 5.x before 5.11.4, 5 ...jessie
CVE-2016-6810In Apache ActiveMQ 5.x before 5.14.2, an instance of a cross-site scri ...jessie
CVE-2018-8006An instance of a cross-site scripting vulnerability was identified to ...jessie, stretch
CVE-2019-0222In Apache ActiveMQ 5.0.0 - 5.15.8, unmarshalling corrupt MQTT frame ca ...buster
CVE-2020-1941In Apache ActiveMQ 5.0.0 to 5.15.11, the webconsole admin GUI is open ...buster, jessie, stretch
CVE-2020-13947An instance of a cross-site scripting vulnerability was identified to ...buster, jessie, stretch
CVE-2022-41678Once an user is authenticated on Jolokia, he can potentially trigger a ...bookworm, bullseye, buster
adnsCVE-2017-9103An issue was discovered in adns before 1.5.2. pap_mailbox822 does not ...buster, jessie, stretch
CVE-2017-9104An issue was discovered in adns before 1.5.2. It hangs, eating CPU, if ...buster, jessie, stretch
CVE-2017-9105An issue was discovered in adns before 1.5.2. It corrupts a pointer wh ...buster, jessie, stretch
CVE-2017-9106An issue was discovered in adns before 1.5.2. adns_rr_info mishandles ...buster, jessie, stretch
CVE-2017-9107An issue was discovered in adns before 1.5.2. It overruns reading a bu ...buster, jessie, stretch
CVE-2017-9108An issue was discovered in adns before 1.5.2. adnshost mishandles a mi ...buster, jessie, stretch
CVE-2017-9109An issue was discovered in adns before 1.5.2. It fails to ignore appar ...buster, jessie, stretch
advancecompCVE-2022-35014Advancecomp v2.3 contains a segmentation fault.bullseye, buster, jessie, stretch
CVE-2022-35015Advancecomp v2.3 was discovered to contain a heap buffer overflow via ...bullseye, buster, jessie, stretch
CVE-2022-35016Advancecomp v2.3 was discovered to contain a heap buffer overflow.bullseye, buster, jessie, stretch
CVE-2022-35017Advancecomp v2.3 was discovered to contain a heap buffer overflow.bullseye, buster, jessie, stretch
CVE-2022-35018Advancecomp v2.3 was discovered to contain a segmentation fault.bullseye, buster, jessie, stretch
CVE-2022-35020Advancecomp v2.3 was discovered to contain a heap buffer overflow via ...bullseye, buster, jessie, stretch
CVE-2023-2961A segmentation fault flaw was found in the Advancecomp package. This m ...bullseye, buster, jessie, stretch
afflibCVE-2018-8050The af_get_page() function in lib/afflib_pages.cpp in AFFLIB (aka AFFL ...jessie, stretch
amandaCVE-2016-10729An issue was discovered in Amanda 3.3.1. A user with backup privileges ...jessie
CVE-2016-10730An issue was discovered in Amanda 3.3.1. A user with backup privileges ...jessie
amarokCVE-2020-13152A remote user can create a specially crafted M3U file, media playlist ...jessie, stretch
android-framework-23CVE-2017-0752A elevation of privilege vulnerability in the Android framework (windo ...bullseye, buster, sid, stretch
CVE-2017-0822An elevation of privilege vulnerability in the Android system (camera) ...bullseye, buster, sid, stretch
android-platform-frameworks-baseCVE-2021-39796In HarmfulAppWarningActivity of HarmfulAppWarningActivity.java, there ...bookworm, bullseye, buster, sid, stretch
CVE-2022-20011In getArray of NotificationManagerService.java , there is a possible l ...bookworm, bullseye, buster, jessie, sid, stretch
android-platform-frameworks-nativeCVE-2015-3875libutils in Android before 5.1.1 LMY48T allows remote attackers to exe ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2015-6602libutils in Android through 5.1.1 LMY48M allows remote attackers to ex ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2015-6609libutils in Android before 5.1.1 LMY48X and 6.0 before 2015-11-01 allo ...bookworm, bullseye, buster, jessie, sid, stretch
android-platform-system-coreCVE-2012-5564android-tools 4.1.1 in Android Debug Bridge (ADB) allows local users t ...bullseye, buster, jessie, stretch
CVE-2016-0807The get_build_id function in elf_utils.cpp in Debuggerd in Android 6.x ...jessie
CVE-2016-3861LibUtils in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before ...jessie
CVE-2017-0647An information disclosure vulnerability in libziparchive could enable ...stretch
CVE-2017-0841A remote code execution vulnerability in the Android system (libutils) ...bullseye, buster, jessie, stretch
android-toolsCVE-2012-5564android-tools 4.1.1 in Android Debug Bridge (ADB) allows local users t ...buster, jessie
anjutaCVE-2021-42522There is a Information Disclosure vulnerability in anjuta/plugins/docu ...bookworm, bullseye, buster, jessie, stretch
ansibleCVE-2017-7550A flaw was found in the way Ansible (2.3.x before 2.3.3, and 2.4.x bef ...jessie, stretch
CVE-2020-1734A flaw was found in the pipe lookup plugin of ansible. Arbitrary comma ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-1736A flaw was found in Ansible Engine when a file is moved using atomic_m ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2020-1737A flaw was found in Ansible 2.7.17 and prior, 2.8.9 and prior, and 2.9 ...buster, jessie, stretch
CVE-2020-1738A flaw was found in Ansible Engine when the module package or service ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-14365A flaw was found in the Ansible Engine, in ansible-engine 2.8.x before ...stretch
antCVE-2021-36373When reading a specially crafted TAR archive an Apache Ant build can b ...bullseye, buster, jessie, stretch
CVE-2021-36374When reading a specially crafted ZIP archive, or a derived formats, an ...bullseye, buster, jessie, stretch
aolserver4CVE-2009-4494AOLserver 4.5.1 writes data to a log file without sanitizing non-print ...jessie, stretch
apache2CVE-2001-1534mod_usertrack in Apache 1.3.11 through 1.3.20 generates session ID's u ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2003-1307The mod_php module for the Apache HTTP Server allows local users with ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2003-1580The Apache HTTP Server 2.0.44, when DNS resolution is enabled for clie ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2003-1581The Apache HTTP Server 2.0.44, when DNS resolution is enabled for clie ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2007-0086The Apache HTTP Server, when accessed through a TCP connection with a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2007-1743suexec in Apache HTTP Server (httpd) 2.2.3 does not verify combination ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2007-3303Apache httpd 2.0.59 and 2.2.4, with the Prefork MPM module, allows loc ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2008-0456CRLF injection vulnerability in the mod_negotiation module in the Apac ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
apparmorCVE-2016-1585In all versions of AppArmor mount rules are accidentally widened when ...bookworm, bullseye, buster, jessie, stretch
aptCVE-2011-3374It was found that apt-key in apt, all versions, do not correctly valid ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
apt-setupCVE-2005-2214apt-setup in Debian GNU/Linux installs the apt.conf file with insecure ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
arm-trusted-firmwareCVE-2022-47630Trusted Firmware-A through 2.8 has an out-of-bounds read in the X.509 ...bookworm, bullseye, buster
aroraCVE-2011-3367Arora, possibly 0.11 and other versions, does not use a certain font w ...jessie
CVE-2014-3566The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other prod ...jessie
asn1cCVE-2017-12966The asn1f_lookup_symbol_impl function in asn1fix_retrieve.c in libasn1 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-23910Stack-based buffer overflow vulnerability in asn1c through v0.9.28 via ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-23911An issue was discovered in asn1c through v0.9.28. A NULL pointer deref ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
audacityCVE-2016-2540Audacity before 2.1.2 allows remote attackers to cause a denial of ser ...jessie
auditCVE-2015-5186Audit before 2.4.4 in Linux does not sanitize escape characters in fil ...jessie
automake1.11TEMP-0827346-22ED59install-sh: insecure use of /tmpjessie
avahiCVE-2017-6519avahi-daemon in Avahi through 0.6.32 and 0.7 inadvertently responds to ...buster, jessie, stretch
awffullCVE-2007-0510Multiple buffer overflows in (1) graphs.c, (2) output.c, and (3) prese ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
awstatsCVE-2018-10245A Full Path Disclosure vulnerability in AWStats through 7.6 allows rem ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
axisCVE-2007-2353Apache Axis 1.0 allows remote attackers to obtain sensitive informatio ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-0227A Server Side Request Forgery (SSRF) vulnerability affected the Apache ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
bansheeCVE-2009-1175Cross-site scripting (XSS) vulnerability in apps/web/vs_diag.cgi in th ...jessie, stretch
bashCVE-2019-18276An issue was discovered in disable_priv_mode in shell.c in GNU Bash th ...buster, jessie, stretch
TEMP-0841856-B18BAFPrivilege escalation possible to other user than rootbookworm, bullseye, buster, jessie, sid, stretch, trixie
bash-completionCVE-2018-7738In util-linux before 2.32-rc1, bash-completion/umount allows local use ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
bibutilsCVE-2018-10773NULL pointer deference in the addsn function in serialno.c in libbibco ...buster, jessie, stretch
CVE-2018-10774Read access violation in the isiin_keyword function in isiin.c in libb ...buster, jessie, stretch
CVE-2018-10775NULL pointer dereference in the _fields_add function in fields.c in li ...buster, jessie, stretch
binaryenCVE-2019-15758An issue was discovered in Binaryen 1.38.32. Missing validation rules ...buster
CVE-2019-15759An issue was discovered in Binaryen 1.38.32. Two visitors in ir/Expres ...buster
CVE-2021-45290A Denial of Service vulnerability exits in Binaryen 103 due to an asse ...bullseye, buster
CVE-2021-45293A Denial of Service vulnerability exists in Binaryen 103 due to an Inv ...bullseye, buster
CVE-2021-46048A Denial of Service vulnerability exists in Binaryen 104 due to an ass ...bookworm, bullseye, buster, sid, trixie
CVE-2021-46050A Stack Overflow vulnerability exists in Binaryen 103 via the printf_c ...bookworm, bullseye, buster, sid, trixie
CVE-2021-46052A Denial of Service vulnerability exists in Binaryen 104 due to an ass ...bookworm, bullseye, buster, sid, trixie
CVE-2021-46053A Denial of Service vulnerability exists in Binaryen 103. The program ...bookworm, bullseye, buster, sid, trixie
CVE-2021-46054A Denial of Service vulnerability exists in Binaryen 104 due to an ass ...bookworm, bullseye, buster, sid, trixie
CVE-2021-46055A Denial of Service vulnerability exists in Binaryen 104 due to an ass ...bookworm, bullseye, buster, sid, trixie
bind9CVE-2016-6170ISC BIND through 9.9.9-P1, 9.10.x through 9.10.4-P1, and 9.11.x throug ...jessie, stretch
CVE-2018-5741To provide fine-grained controls over the ability to use Dynamic DNS ( ...jessie, stretch
binutilsCVE-2017-13716The C++ symbol demangler routine in cplus-dem.c in libiberty, as distr ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-9138An issue was discovered in cplus-dem.c in GNU libiberty, as distribute ...buster, jessie, stretch
CVE-2018-9996An issue was discovered in cplus-dem.c in GNU libiberty, as distribute ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-12697A NULL pointer dereference (aka SEGV on unknown address 0x000000000000 ...buster, jessie, stretch
CVE-2018-12698demangle_template in cplus-dem.c in GNU libiberty, as distributed in G ...buster, jessie, stretch
CVE-2018-12699finish_stab in stabs.c in GNU Binutils 2.30 allows attackers to cause ...buster, jessie, stretch
CVE-2018-12934remember_Ktype in cplus-dem.c in GNU libiberty, as distributed in GNU ...buster, jessie, stretch
CVE-2018-13033The Binary File Descriptor (BFD) library (aka libbfd), as distributed ...jessie, stretch
CVE-2018-17358An issue was discovered in the Binary File Descriptor (BFD) library (a ...buster, jessie, stretch
CVE-2018-17359An issue was discovered in the Binary File Descriptor (BFD) library (a ...buster, jessie, stretch
CVE-2018-17360An issue was discovered in the Binary File Descriptor (BFD) library (a ...buster, jessie, stretch
CVE-2018-17794An issue was discovered in cplus-dem.c in GNU libiberty, as distribute ...buster, jessie, stretch
CVE-2018-17985An issue was discovered in cp-demangle.c in GNU libiberty, as distribu ...buster, jessie, stretch
CVE-2018-18309An issue was discovered in the Binary File Descriptor (BFD) library (a ...buster, jessie, stretch
CVE-2018-18483The get_count function in cplus-dem.c in GNU libiberty, as distributed ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18484An issue was discovered in cp-demangle.c in GNU libiberty, as distribu ...buster, jessie, stretch
CVE-2018-18605A heap-based buffer over-read issue was discovered in the function sec ...buster, jessie, stretch
CVE-2018-18606An issue was discovered in the merge_strings function in merge.c in th ...buster, jessie, stretch
CVE-2018-18607An issue was discovered in elf_link_input_bfd in elflink.c in the Bina ...buster, jessie, stretch
CVE-2018-18700An issue was discovered in cp-demangle.c in GNU libiberty, as distribu ...buster, jessie, stretch
CVE-2018-18701An issue was discovered in cp-demangle.c in GNU libiberty, as distribu ...buster, jessie, stretch
CVE-2018-19931An issue was discovered in the Binary File Descriptor (BFD) library (a ...buster, jessie, stretch
CVE-2018-19932An issue was discovered in the Binary File Descriptor (BFD) library (a ...buster, jessie, stretch
CVE-2018-20002The _bfd_generic_read_minisymbols function in syms.c in the Binary Fil ...buster, jessie, stretch
CVE-2018-20623In GNU Binutils 2.31.1, there is a use-after-free in the error functio ...buster, jessie, stretch
CVE-2018-20651A NULL pointer dereference was discovered in elf_link_add_object_symbo ...buster, jessie, stretch
CVE-2018-20671load_specific_debug_section in objdump.c in GNU Binutils through 2.31. ...buster, jessie, stretch
CVE-2018-20673The demangle_template function in cplus-dem.c in GNU libiberty, as dis ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-20712A heap-based buffer over-read exists in the function d_expression_1 in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-1000876binutils version 2.32 and earlier contains a Integer Overflow vulnerab ...buster, jessie, stretch
CVE-2019-9070An issue was discovered in GNU libiberty, as distributed in GNU Binuti ...buster, jessie, stretch
CVE-2019-9071An issue was discovered in GNU libiberty, as distributed in GNU Binuti ...buster, jessie, stretch
CVE-2019-9073An issue was discovered in the Binary File Descriptor (BFD) library (a ...buster, jessie, stretch
CVE-2019-9074An issue was discovered in the Binary File Descriptor (BFD) library (a ...buster, jessie, stretch
CVE-2019-9075An issue was discovered in the Binary File Descriptor (BFD) library (a ...buster, jessie, stretch
CVE-2019-9077An issue was discovered in GNU Binutils 2.32. It is a heap-based buffe ...buster, jessie, stretch
CVE-2019-12972An issue was discovered in the Binary File Descriptor (BFD) library (a ...buster, jessie, stretch
CVE-2019-14250An issue was discovered in GNU libiberty, as distributed in GNU Binuti ...buster, jessie, stretch
CVE-2019-14444apply_relocations in readelf.c in GNU Binutils 2.32 contains an intege ...buster, jessie, stretch
CVE-2019-17450find_abstract_instance in dwarf2.c in the Binary File Descriptor (BFD) ...buster, jessie, stretch
CVE-2019-17451An issue was discovered in the Binary File Descriptor (BFD) library (a ...buster, jessie, stretch
CVE-2019-1010180GNU gdb All versions is affected by: Buffer Overflow - Out of bound me ...buster, jessie, stretch
CVE-2019-1010204GNU binutils gold gold v1.11-v1.16 (GNU binutils v2.21-v2.31.1) is aff ...bullseye, buster, jessie, stretch
CVE-2020-16590A double free vulnerability exists in the Binary File Descriptor (BFD) ...buster, jessie, stretch
CVE-2020-16591A Denial of Service vulnerability exists in the Binary File Descriptor ...buster, jessie, stretch
CVE-2020-16592A use after free issue exists in the Binary File Descriptor (BFD) libr ...buster, jessie, stretch
CVE-2020-16593A Null Pointer Dereference vulnerability exists in the Binary File Des ...buster, jessie, stretch
CVE-2020-16599A Null Pointer Dereference vulnerability exists in the Binary File Des ...buster, jessie, stretch
CVE-2020-19724A memory consumption issue in get_data function in binutils/nm.c in GN ...buster, jessie, stretch
CVE-2020-19726An issue was discovered in binutils libbfd.c 2.36 relating to the auxi ...bullseye, buster, jessie, stretch
CVE-2020-21490An issue was discovered in GNU Binutils 2.34. It is a memory leak when ...buster, jessie, stretch
CVE-2020-35342GNU Binutils before 2.34 has an uninitialized-heap vulnerability in fu ...buster, jessie, stretch
CVE-2020-35448An issue was discovered in the Binary File Descriptor (BFD) library (a ...bullseye, buster, jessie, stretch
CVE-2020-35493A flaw exists in binutils in bfd/pef.c. An attacker who is able to sub ...buster, jessie, stretch
CVE-2020-35494There's a flaw in binutils /opcodes/tic4x-dis.c. An attacker who is ab ...buster, jessie, stretch
CVE-2020-35495There's a flaw in binutils /bfd/pef.c. An attacker who is able to subm ...buster, jessie, stretch
CVE-2020-35496There's a flaw in bfd_pef_scan_start_address() of bfd/pef.c in binutil ...buster, jessie, stretch
CVE-2020-35507There's a flaw in bfd_pef_parse_function_stubs of bfd/pef.c in binutil ...buster, jessie, stretch
CVE-2021-3530A flaw was discovered in GNU libiberty within demangle_path() in rust- ...bullseye, buster, jessie, stretch
CVE-2021-3549An out of bounds flaw was found in GNU binutils objdump utility versio ...bullseye, buster, jessie, stretch
CVE-2021-3826Heap/stack buffer overflow in the dlang_lname function in d-demangle.c ...bullseye, buster, jessie, stretch
CVE-2021-20197There is an open race window when writing output in the following util ...bullseye, buster, jessie, stretch
CVE-2021-20284A flaw was found in GNU Binutils 2.35.1, where there is a heap-based b ...bullseye, buster, jessie, stretch
CVE-2021-20294A flaw was found in binutils readelf 2.35 program. An attacker who is ...buster, jessie, stretch
CVE-2021-32256An issue was discovered in GNU libiberty, as distributed in GNU Binuti ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-37322GCC c++filt v2.26 was discovered to contain a use-after-free vulnerabi ...jessie
CVE-2021-45078stab_xcoff_builtin_type in stabs.c in GNU Binutils through 2.37 allows ...bullseye, buster, jessie, stretch
CVE-2021-46174Heap-based Buffer Overflow in function bfd_getl32 in Binutils objdump ...bullseye, buster, jessie, stretch
CVE-2021-46195GCC v12.0 was discovered to contain an uncontrolled recursion via the ...bullseye, buster, jessie, stretch
CVE-2022-4285An illegal memory access flaw was found in the binutils package. Parsi ...bullseye, buster, jessie, stretch
CVE-2022-35205An issue was discovered in Binutils readelf 2.38.50, reachable asserti ...bullseye, buster, jessie, stretch
CVE-2022-35206Null pointer dereference vulnerability in Binutils readelf 2.38.50 via ...bullseye, buster, jessie, stretch
CVE-2022-38533In GNU Binutils before 2.40, there is a heap-buffer-overflow in the er ...bullseye, buster, jessie, stretch
CVE-2022-44840Heap buffer overflow vulnerability in binutils readelf before 2.40 via ...bullseye, buster, jessie, stretch
CVE-2022-45703Heap buffer overflow vulnerability in binutils readelf before 2.40 via ...bullseye, buster, jessie, stretch
CVE-2022-47007An issue was discovered function stab_demangle_v3_arg in stabs.c in Bi ...bullseye, buster, jessie, stretch
CVE-2022-47008An issue was discovered function make_tempdir, and make_tempname in bu ...bullseye, buster, jessie, stretch
CVE-2022-47010An issue was discovered function pr_function_type in prdbg.c in Binuti ...bullseye, buster, jessie, stretch
CVE-2022-47011An issue was discovered function parse_stab_struct_fields in stabs.c i ...bullseye, buster, jessie, stretch
CVE-2022-47673An issue was discovered in Binutils addr2line before 2.39.3, function ...bullseye, buster, jessie, stretch
CVE-2022-47695An issue was discovered Binutils objdump before 2.39.3 allows attacker ...bullseye, buster, jessie, stretch
CVE-2022-47696An issue was discovered Binutils objdump before 2.39.3 allows attacker ...bullseye, buster, jessie, stretch
CVE-2022-48063GNU Binutils before 2.40 was discovered to contain an excessive memory ...bullseye, buster, jessie, stretch
CVE-2022-48064GNU Binutils before 2.40 was discovered to contain an excessive memory ...bullseye, buster, jessie, stretch
CVE-2022-48065GNU Binutils before 2.40 was discovered to contain a memory leak vulne ...bullseye, buster, jessie, stretch
CVE-2023-1579Heap based buffer overflow in binutils-gdb/bfd/libbfd.c in bfd_getl64.bullseye, buster, jessie, stretch
CVE-2023-1972A potential heap based buffer overflow was found in _bfd_elf_slurp_ver ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-25584An out-of-bounds read flaw was found in the parse_module function in b ...bullseye, buster, jessie, stretch
CVE-2023-25585A flaw was found in Binutils. The use of an uninitialized field in the ...bullseye, buster, jessie, stretch
CVE-2023-25586A flaw was found in Binutils. A logic fail in the bfd_init_section_dec ...bullseye, buster, jessie, stretch
CVE-2023-25588A flaw was found in Binutils. The field `the_bfd` of `asymbol`struct i ...bullseye, buster, jessie, stretch
binwalkCVE-2021-4287A vulnerability, which was classified as problematic, was found in ReF ...bullseye, buster, jessie, stretch
bisonCVE-2020-14150GNU Bison before 3.5.4 allows attackers to cause a denial of service ( ...buster, jessie, stretch
CVE-2020-24240GNU Bison before 3.7.1 has a use-after-free in _obstack_free in lib/ob ...jessie
blenderCVE-2005-3151Buffer overflow in blenderplay in Blender Player 2.37a allows attacker ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2009-3850Blender 2.34, 2.35a, 2.40, and 2.49b allows remote attackers to execut ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2010-5105The undo save quit routine in the kernel in Blender 2.5, 2.63a, and ea ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2022-2832A flaw was found in Blender 3.3.0. A null pointer dereference exists i ...bookworm, bullseye, buster, sid, stretch
CVE-2022-2833Endless Infinite loop in Blender-thumnailing due to logical bugs.bullseye, buster, stretch
bluezCVE-2016-9797In BlueZ 5.42, a buffer over-read was observed in "l2cap_dump" functio ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9798In BlueZ 5.42, a use-after-free was identified in "conf_opt" function ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9799In BlueZ 5.42, a buffer overflow was observed in "pklg_read_hci" funct ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9800In BlueZ 5.42, a buffer overflow was observed in "pin_code_reply_dump" ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9801In BlueZ 5.42, a buffer overflow was observed in "set_ext_ctrl" functi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9802In BlueZ 5.42, a buffer over-read was identified in "l2cap_packet" fun ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9803In BlueZ 5.42, an out-of-bounds read was observed in "le_meta_ev_dump" ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9804In BlueZ 5.42, a buffer overflow was observed in "commands_dump" funct ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9917In BlueZ 5.42, a buffer overflow was observed in "read_n" function in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9918In BlueZ 5.42, an out-of-bounds read was identified in "packet_hexdump ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
bochsCVE-2007-2894The emulated floppy disk controller in Bochs 2.3 allows local users of ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
brandyCVE-2019-14662Brandy 1.20.1 has a stack-based buffer overflow in fileio_openout in f ...bullseye, buster, jessie, stretch
CVE-2019-14663Brandy 1.20.1 has a stack-based buffer overflow in fileio_openin in fi ...bullseye, buster, jessie, stretch
CVE-2019-14665Brandy 1.20.1 has a heap-based buffer overflow in define_array in vari ...bullseye, buster, jessie, stretch
CVE-2020-27372A buffer overflow vulnerability exists in Brandy Basic V Interpreter 1 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
bubblewrapCVE-2019-12439bubblewrap.c in Bubblewrap before 0.3.3 misuses temporary directories ...stretch
budgie-extrasCVE-2023-49347Temporary data passed between application components by Budgie Extras ...bookworm, bullseye, buster
busyboxCVE-2016-6301The recv_and_process_client_pkt function in networking/ntpd.c in busyb ...jessie, stretch
CVE-2018-1000500Busybox contains a Missing SSL certificate validation vulnerability in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-42373A NULL pointer dereference in Busybox's man applet leads to denial of ...bullseye, buster, jessie, stretch
CVE-2021-42374An out-of-bounds heap read in Busybox's unlzma applet leads to informa ...bullseye, buster
CVE-2021-42375An incorrect handling of a special element in Busybox's ash applet lea ...bullseye, buster, jessie, stretch
CVE-2021-42376A NULL pointer dereference in Busybox's hush applet leads to denial of ...bullseye, buster
CVE-2022-30065A use-after-free in Busybox 1.35-x's awk applet leads to denial of ser ...bookworm, bullseye, buster, jessie, stretch
bwaCVE-2019-11371BWA (aka Burrow-Wheeler Aligner) 0.7.17 r1198 has a Buffer Overflow vi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
bwm-ngCVE-2022-1341An issue was discovered in in bwm-ng v0.6.2. An arbitrary null write e ...buster, jessie, stretch
byobuCVE-2019-7306Byobu Apport hook may disclose sensitive information since it automati ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
byzanzCVE-2015-2785The GIF encoder in Byzanz allows remote attackers to cause a denial of ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
bzip3CVE-2023-29417An issue was discovered in libbzip3.a in bzip3 1.2.2. There is a bz3_d ...bookworm, sid, trixie
c-aresCVE-2023-31124c-ares is an asynchronous resolver library. When cross-compiling c-are ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-31147c-ares is an asynchronous resolver library. When /dev/urandom or RtlGe ...bookworm, bullseye, buster, jessie, stretch
cableswigCVE-2009-3560The big2_toUtf8 function in lib/xmltok.c in libexpat in Expat 2.0.1, a ...jessie
CVE-2009-3720The updatePosition function in lib/xmltok_impl.c in libexpat in Expat ...jessie
cactiCVE-2009-4112Cacti 0.8.7e and earlier allows remote authenticated administrators to ...jessie, stretch
CVE-2020-7058data_input.php in Cacti 1.2.8 allows remote code execution via a craft ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-48538In Cacti 1.2.19, there is an authentication bypass in the web login fu ...bullseye, buster, jessie, stretch
cadaverCVE-2009-3560The big2_toUtf8 function in lib/xmltok.c in libexpat in Expat 2.0.1, a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2009-3720The updatePosition function in lib/xmltok_impl.c in libexpat in Expat ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
calamaresCVE-2019-13178modules/luksbootkeyfile/main.py in Calamares versions 3.1 through 3.2. ...buster
cantataCVE-2018-12559An issue was discovered in the cantata-mounter D-Bus service in Cantat ...jessie, stretch
CVE-2018-12560An issue was discovered in the cantata-mounter D-Bus service in Cantat ...jessie, stretch
CVE-2018-12561An issue was discovered in the cantata-mounter D-Bus service in Cantat ...jessie, stretch
CVE-2018-12562An issue was discovered in the cantata-mounter D-Bus service in Cantat ...jessie, stretch
capnprotoCVE-2017-7892Sandstorm Cap'n Proto before 0.5.3.1 allows remote crashes related to ...stretch
catdocCVE-2018-20451The process_file function in reader.c in libdoc through 2017-10-23 has ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-20453The getlong function in numutils.c in libdoc through 2017-10-23 has a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-7156In libdoc through 2019-01-28, calcFileBlockOffset in ole.c allows divi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-7233In libdoc through 2019-01-28, doc2text in catdoc.c has a NULL pointer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-31979Catdoc v0.95 was discovered to contain a global buffer overflow via th ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-41633Catdoc v0.95 was discovered to contain a NULL pointer dereference via ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-46345Catdoc v0.95 was discovered to contain a NULL pointer dereference via ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
cflowCVE-2019-16165GNU cflow through 1.6 has a use-after-free in the reference function i ...bullseye, buster, jessie, stretch
CVE-2019-16166GNU cflow through 1.6 has a heap-based buffer over-read in the nexttok ...bullseye, buster, jessie, stretch
CVE-2020-23856Use-after-Free vulnerability in cflow 1.6 in the void call(char *name, ...bullseye, buster, stretch
CVE-2023-2789A vulnerability was found in GNU cflow 1.7. It has been rated as probl ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
chafaCVE-2022-1507chafa: NULL Pointer Dereference in function gif_internal_decode_frame ...bullseye, buster
CVE-2022-2061Heap-based Buffer Overflow in GitHub repository hpjansson/chafa prior ...bullseye, buster
CVE-2022-2301Buffer Over-read in GitHub repository hpjansson/chafa prior to 1.10.3.bullseye, buster
checkinstallCVE-2020-25031checkinstall 1.6.2, when used to create a package that contains a syml ...bookworm, bullseye, jessie, sid, stretch, trixie
chromiumCVE-2023-4863Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.1 ...stretch
chromium-browserCVE-2008-7246Google Chrome 0.2.149.29 and earlier allows remote attackers to cause ...jessie, stretch
CVE-2009-0374Google Chrome 1.0.154.43 allows remote attackers to trick a user into ...jessie, stretch
CVE-2009-1598Google Chrome executes DOM calls in response to a javascript: URI in t ...jessie, stretch
CVE-2010-1384Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and ...jessie, stretch
CVE-2010-1992Google Chrome 1.0.154.48 executes a mail application in situations whe ...jessie, stretch
CVE-2010-4037Unspecified vulnerability in Google Chrome before 7.0.517.41 allows re ...jessie, stretch
CVE-2010-4482Unspecified vulnerability in Google Chrome before 8.0.552.215 allows r ...jessie, stretch
CVE-2011-2599Google Chrome 11 does not block use of a cross-domain image as a WebGL ...jessie, stretch
CVE-2011-3640Untrusted search path vulnerability in Mozilla Network Security Servic ...jessie, stretch
CVE-2012-5851html/parser/XSSAuditor.cpp in WebCore in WebKit, as used in Google Chr ...jessie, stretch
CVE-2017-5130An integer overflow in xmlmemory.c in libxml2 before 2.9.5, as used in ...jessie
CVE-2018-6406The function ParseVP9SuperFrameIndex in common/libwebm_util.cc in libw ...jessie, stretch
CVE-2018-6548A use-after-free issue was discovered in libwebm through 2018-02-02. I ...jessie, stretch
chronyCVE-2020-14367A flaw was found in chrony versions before 3.5.1 when creating the PID ...jessie, stretch
cifs-utilsCVE-2014-2830Stack-based buffer overflow in cifskey.c or cifscreds.c in cifs-utils ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
cimgCVE-2018-7587An issue was discovered in CImg v.220. DoS occurs when loading a craft ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
civetwebCVE-2020-27304The CivetWeb web library does not validate uploaded filepaths when run ...bullseye
cjsonCVE-2023-50472cJSON v1.7.16 was discovered to contain a segmentation violation via t ...bookworm, bullseye
ckeditorCVE-2023-4771A Cross-Site scripting vulnerability has been found in CKSource CKEdit ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
clementineCVE-2018-14332An issue was discovered in Clementine Music Player 1.3.1. Clementine.e ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-40826Clementine Music Player through 1.3.1 is vulnerable to a User Mode Wri ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-40827Clementine Music Player through 1.3.1 (when a GLib 2.0.0 DLL is used) ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
coin3CVE-2009-3560The big2_toUtf8 function in lib/xmltok.c in libexpat in Expat 2.0.1, a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2009-3720The updatePosition function in lib/xmltok_impl.c in libexpat in Expat ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
colordCVE-2021-42523There are two Information Disclosure vulnerabilities in colord, and th ...bullseye, buster, jessie, stretch
confuseCVE-2018-19760cfg_init in confuse.c in libConfuse 3.2.2 has a memory leak.buster, jessie, stretch
conkerorCVE-2014-3566The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other prod ...jessie, stretch
contextCVE-2017-17513TeX Live through 20170524 does not validate strings before launching t ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
corebootCVE-2022-29264An issue was discovered in coreboot 4.13 through 4.16. On APs, arbitra ...bookworm, sid, trixie
coreutilsCVE-2017-18018In GNU Coreutils through 8.29, chown-core.c in chown and chgrp does no ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
courierCVE-2004-2313Inter7 SqWebMail 3.4.1 through 3.6.1 generates different error message ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2005-1308SqWebMail allows remote attackers to inject arbitrary web script or HT ...bookworm, bullseye, buster, jessie, sid, stretch
cppcheckCVE-2023-39070An issue in Cppcheck 2.12 dev allows a local attacker to execute arbit ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
crasmCVE-2023-23108In crasm 1.8-3, invalid input validation, specific files passed to the ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-23109In crasm 1.8-3, invalid input validation, specific files passed to the ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
crossroadsCVE-2018-18654Crossroads 2.81 does not properly handle the /tmp directory during a b ...jessie, stretch
cryptsetupCVE-2016-4484The Debian initrd script for the cryptsetup package 2:1.7.3-2 and earl ...jessie
ctnCVE-2008-5146add-accession-numbers in ctn 3.0.6 allows local users to overwrite arb ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
cupsCVE-2014-8166The browsing feature in the server in CUPS does not filter ANSI escape ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
cups-filtersTEMP-0000000-ACBC4Cbuffer overflows in init_cupsjessie
curlCVE-2016-3739The (1) mbed_connect_step1 function in lib/vtls/mbedtls.c and (2) pola ...jessie
CVE-2017-7407The ourWriteOut function in tool_writeout.c in curl 7.53.1 might allow ...jessie
CVE-2020-19909Integer overflow vulnerability in tool_operate.c in curl 7.65.2 via a ...buster, jessie, stretch
CVE-2021-22922When curl is instructed to download content using the metalink feature ...bullseye, buster, jessie, stretch
CVE-2021-22923When curl is instructed to get content using the metalink feature, and ...bullseye, buster, jessie, stretch
CVE-2023-28320A denial of service vulnerability exists in curl <v8.1.0 in the way li ...bullseye, buster, jessie, stretch
CVE-2024-2379libcurl skips the certificate verification for a QUIC connection under ...bookworm, bullseye, buster, jessie, stretch
CVE-2024-2466libcurl did not check the server certificate of TLS connections done t ...jessie, stretch
dacsCVE-2021-29629In FreeBSD 13.0-STABLE before n245765-bec0d2c9c841, 12.2-STABLE before ...buster
db4oCVE-2012-6550Cross-site scripting (XSS) vulnerability in ZeroClipboard before 1.1.4 ...bookworm, bullseye, buster, stretch
CVE-2013-1808Cross-site scripting (XSS) vulnerability in ZeroClipboard.swf and Zero ...bookworm, bullseye, buster, stretch
CVE-2014-1869Multiple cross-site scripting (XSS) vulnerabilities in ZeroClipboard.s ...bookworm, bullseye, buster, stretch
dcmtkCVE-2013-6825(1) movescu.cc and (2) storescp.cc in dcmnet/apps/, (3) dcmnet/libsrc/ ...jessie
dcrawCVE-2013-1438Unspecified vulnerability in dcraw 0.8.x through 0.8.9, as used in lib ...jessie, stretch
CVE-2018-19565A buffer over-read in crop_masked_pixels in dcraw through 9.28 could b ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-19566A heap buffer over-read in parse_tiff_ifd in dcraw through 9.28 could ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-19567A floating point exception in parse_tiff_ifd in dcraw through 9.28 cou ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-19568A floating point exception in kodak_radc_load_raw in dcraw through 9.2 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-19655A stack-based buffer overflow in the find_green() function of dcraw th ...jessie, stretch
dhcpcd5CVE-2014-7913The print_option function in dhcp-common.c in dhcpcd through 6.9.1, as ...jessie, stretch
diaCVE-2019-19451When GNOME Dia before 2019-11-27 is launched with a filename argument ...bullseye, buster, jessie, stretch
dilloTEMP-0560108-565B70browser-based css info disclosurebookworm, bullseye, buster, jessie, sid, stretch, trixie
dirmngrCVE-2011-2207dirmngr before 2.1.0 improperly handles certain system calls, which al ...jessie
djvulibreTEMP-0775193-7F000Edjvudigital: insecure use of /tmpjessie
dlt-daemonCVE-2021-29507GENIVI Diagnostic Log and Trace (DLT) provides a log and trace interfa ...bullseye, buster
dmg2imgCVE-2021-3548A flaw was found in dmg2img through 20170502. dmg2img did not validate ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-32614A flaw was found in dmg2img through 20170502. fill_mishblk() does not ...bookworm, bullseye, buster, sid, stretch, trixie
dnsmasqCVE-2021-45951Dnsmasq 2.86 has a heap-based buffer overflow in check_bad_address (ca ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-45952Dnsmasq 2.86 has a heap-based buffer overflow in dhcp_reply (called fr ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-45953Dnsmasq 2.86 has a heap-based buffer overflow in extract_name (called ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-45954Dnsmasq 2.86 has a heap-based buffer overflow in extract_name (called ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-45955Dnsmasq 2.86 has a heap-based buffer overflow in resize_packet (called ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-45956Dnsmasq 2.86 has a heap-based buffer overflow in print_mac (called fro ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-45957Dnsmasq 2.86 has a heap-based buffer overflow in answer_request (calle ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
dnspythonCVE-2008-1447The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
dnstracerCVE-2017-9430Stack-based buffer overflow in dnstracer through 1.9 allows attackers ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
dogtag-pkiCVE-2015-0234Multiple temporary file creation vulnerabilities in pki-core 10.2.0.bullseye, sid
dojoCVE-2018-1000665Dojo Dojo Objective Harness (DOH) version prior to version 1.14 contai ...jessie
dokuwikiCVE-2016-7965DokuWiki 2016-06-26a and older uses $_SERVER[HTTP_HOST] instead of the ...bookworm, bullseye, buster, jessie, sid
dovecotCVE-2008-4870dovecot 1.0.7 in Red Hat Enterprise Linux (RHEL) 5, and possibly Fedor ...bookworm, bullseye, buster, jessie, sid, stretch
dpicCVE-2021-32421dpic 2021.01.01 has a Heap Use-After-Free in thedeletestringbox() func ...bullseye
CVE-2021-32422dpic 2021.01.01 has a Global buffer overflow in theyylex() function in ...bullseye
CVE-2021-33390dpic 2021.04.10 has a use-after-free in thedeletestringbox() function ...bullseye
dpkgCVE-2017-8283dpkg-source in dpkg 1.3.0 through 1.18.23 is able to use a non-GNU pat ...jessie
dpkg-crossCVE-2008-4950gccross in dpkg-cross 2.3.0 allows local users to overwrite arbitrary ...bookworm, bullseye, buster, sid, stretch, trixie
dropbearCVE-2016-7409The dbclient and server in Dropbear SSH before 2016.74, when compiled ...jessie
CVE-2020-36254scp.c in Dropbear before 2020.79 mishandles the filename of . or an em ...buster, jessie, stretch
drupal7CVE-2007-6752Cross-site request forgery (CSRF) vulnerability in Drupal 7.12 and ear ...jessie, stretch
duo-unixCVE-2020-12135bson before 0.8 incorrectly uses int rather than size_t for many varia ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
dwbCVE-2014-3566The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other prod ...jessie
edk2CVE-2014-4859Integer overflow in the Drive Execution Environment (DXE) phase in the ...buster, jessie, stretch
CVE-2014-4860Multiple integer overflows in the Pre-EFI Initialization (PEI) boot ph ...buster, jessie, stretch
CVE-2018-12179Improper configuration in system firmware for EDK II may allow unauthe ...buster, jessie, stretch
CVE-2018-12182Insufficient memory write check in SMM service for EDK II may allow an ...buster, jessie, stretch
CVE-2019-0160Buffer overflow in system firmware for EDK II may allow unauthenticate ...stretch
CVE-2019-14553Improper authentication in EDK II may allow a privileged user to poten ...buster, jessie, stretch
CVE-2021-28213Example EDK2 encrypted private key in the IpSecDxe.efi present potenti ...buster, stretch
elfutilsCVE-2019-7148An attempted excessive memory allocation was discovered in the functio ...jessie, stretch
CVE-2021-33294In elfutils 0.183, an infinite loop was found in the function handle_s ...bullseye, buster, jessie, stretch
CVE-2024-25260elfutils v0.189 was discovered to contain a NULL pointer dereference v ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
emacs24CVE-2014-9483Emacs 24.4 allows remote attackers to bypass security restrictions.jessie
epiphany-browserCVE-2007-1084Mozilla Firefox 2.0.0.1 and earlier does not prompt users before savin ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2014-3566The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other prod ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-1000025GNOME Web (Epiphany) 3.23 before 3.23.5, 3.22 before 3.22.6, 3.20 befo ...jessie
CVE-2018-11396ephy-session.c in libephymain.so in GNOME Web (aka Epiphany) through 3 ...jessie, stretch
CVE-2018-12016libephymain.so in GNOME Web (aka Epiphany) through 3.28.2.1 allows rem ...jessie, stretch
TEMP-0560108-565B70browser-based css info disclosurebookworm, bullseye, buster, jessie, sid, stretch, trixie
erlangCVE-2009-0130lib/crypto/c_src/crypto_drv.c in erlang does not properly check the re ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-1000107inets in Erlang possibly 22.1 and earlier follows RFC 3875 section 4.1 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
etcdCVE-2022-34038Etcd v3.5.4 allows remote attackers to cause a denial of service via f ...bookworm, bullseye, buster, sid, trixie
evolutionCVE-2007-1266Evolution 2.8.1 and earlier does not properly use the --status-fd argu ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2011-3201GNOME Evolution before 3.2.3 allows user-assisted remote attackers to ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2013-4166The gpg_ctx_add_recipient function in camel/camel-gpg-context.c in GNO ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-17689The S/MIME specification allows a Cipher Block Chaining (CBC) malleabi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-3349GNOME Evolution through 3.38.3 produces a "Valid signature" message fo ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
evolution-data-serverCVE-2018-12422addressbook/backends/ldap/e-book-backend-ldap.c in Evolution-Data-Serv ...jessie, stretch
exifCVE-2021-27815NULL Pointer Deference in the exif command line tool, when printing ou ...bullseye, buster, jessie, stretch
exim4CVE-2022-3620A vulnerability was found in Exim and classified as problematic. This ...jessie, stretch
exiv2CVE-2017-11683There is a reachable assertion in the Internal::TiffReader::visitDirec ...jessie, stretch
CVE-2018-14338samples/geotag.cpp in the example code of Exiv2 0.26 misuses the realp ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-13113Exiv2 through 0.27.1 allows an attacker to cause a denial of service ( ...jessie, stretch
CVE-2020-18773An invalid memory access in the decode function in iptc.cpp of Exiv2 0 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-18774A float point exception in the printLong function in tags_int.cpp of E ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-18898A stack exhaustion issue in the printIFDStructure function of Exiv2 0. ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
expatCVE-2013-0340expat 2.1.0 and earlier does not properly handle entities expansion un ...bullseye, buster, jessie, stretch
CVE-2023-52426libexpat through 2.5.0 allows recursive XML Entity Expansion if XML_DT ...bookworm, bullseye, buster, jessie, stretch
CVE-2024-28757libexpat through 2.6.1 allows an XML Entity Expansion attack when ther ...bookworm, bullseye, buster, jessie, stretch
eyed3CVE-2014-1934tag.py in eyeD3 (aka python-eyed3) 7.0.3, 0.6.18, and earlier for Pyth ...jessie
faacCVE-2018-19886An invalid memory address dereference was discovered in the huffcode f ...buster, jessie, stretch
CVE-2018-19887An invalid memory address dereference was discovered in the huffcode f ...buster, jessie, stretch
CVE-2018-19888An invalid memory address dereference was discovered in the huffcode f ...buster, jessie, stretch
CVE-2018-19889An invalid memory address dereference was discovered in the huffcode f ...buster, jessie, stretch
CVE-2018-19890An invalid memory address dereference was discovered in the huffcode f ...buster, jessie, stretch
CVE-2018-19891An invalid memory address dereference was discovered in the huffcode f ...buster, jessie, stretch
faustCVE-2021-32275An issue was discovered in faust through v2.30.5. A NULL pointer deref ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-37770faust commit ee39a19 was discovered to contain a stack overflow via th ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
fdkaacCVE-2022-36148fdkaac commit 53fe239 was discovered to contain a floating point excep ...bookworm, bullseye, buster, sid, trixie
CVE-2022-37781fdkaac v1.0.3 was discovered to contain a heap buffer overflow via __i ...bookworm, bullseye, buster, sid, trixie
CVE-2023-34823fdkaac before 1.0.5 was discovered to contain a stack overflow in read ...bookworm, bullseye, buster, sid, trixie
CVE-2023-34824fdkaac before 1.0.5 was discovered to contain a heap buffer overflow i ...bookworm, bullseye, buster, sid, trixie
fetchmailCVE-2021-36386report_vbuild in report.c in Fetchmail before 6.4.20 sometimes omits i ...buster, jessie, stretch
ffmpegCVE-2020-20450FFmpeg 4.2 is affected by null pointer dereference passed as argument ...buster
CVE-2020-20451Denial of Service issue in FFmpeg 4.2 due to resource management error ...buster
CVE-2020-20898Integer Overflow vulnerability in function filter16_prewitt in libavfi ...buster
CVE-2020-22038A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory ...bullseye, buster
CVE-2020-22039A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory ...buster, stretch
CVE-2020-22040A Denial of Service vulnerability exists in FFmpeg 4.2 idue to a memor ...buster, stretch
CVE-2020-22041A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory ...buster
CVE-2020-22042A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory ...buster, stretch
CVE-2020-22043A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory ...buster, stretch
CVE-2020-22044A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory ...buster
CVE-2020-22046A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory ...buster
CVE-2020-22048A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory ...buster
CVE-2020-22051A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory ...buster
CVE-2020-22056A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory ...buster
CVE-2021-38090Integer Overflow vulnerability in function filter16_roberts in libavfi ...buster
CVE-2021-38091Integer Overflow vulnerability in function filter16_sobel in libavfilt ...buster
CVE-2021-38092Integer Overflow vulnerability in function filter_prewitt in libavfilt ...buster
CVE-2021-38093Integer Overflow vulnerability in function filter_robert in libavfilte ...buster
CVE-2021-38094Integer Overflow vulnerability in function filter_sobel in libavfilter ...buster
fig2devCVE-2018-16140A buffer underwrite vulnerability in get_line() (read.c) in fig2dev 3. ...stretch
CVE-2019-19746make_arrow in arrow.c in Xfig fig2dev 3.2.7b allows a segmentation fau ...stretch
CVE-2020-21678A global buffer overflow in the genmp_writefontmacro_latex component i ...buster, stretch
CVE-2020-21680A stack-based buffer overflow in the put_arrow() component in genpict2 ...buster, stretch
CVE-2020-21681A global buffer overflow in the set_color component in genge.c of fig2 ...buster, stretch
CVE-2020-21682A global buffer overflow in the set_fill component in genge.c of fig2d ...buster, stretch
CVE-2020-21683A global buffer overflow in the shade_or_tint_name_after_declare_color ...buster, stretch
CVE-2020-21684A global buffer overflow in the put_font in genpict2e.c of fig2dev 3.2 ...buster, stretch
firefoxCVE-2004-1639Mozilla Firefox before 0.10, Mozilla 5.0, and Gecko 20040913 allows re ...sid
CVE-2005-2395Mozilla Firefox 1.0.4 and 1.0.5 does not choose the challenge with the ...sid
CVE-2005-4685Firefox and Mozilla can associate a cookie with multiple domains when ...sid
CVE-2019-12383Tor Browser before 8.0.1 has an information exposure vulnerability. It ...sid
CVE-2023-5217Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior ...sid
firefox-esrCVE-2019-12383Tor Browser before 8.0.1 has an information exposure vulnerability. It ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-5217Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior ...bookworm, sid, trixie
fireholCVE-2008-4953firehol in firehol 1.256 allows local users to overwrite arbitrary fil ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
flashromTEMP-0000000-C3CEDBfscanf format string security bug in flashrom layout codejessie
flask-cachingCVE-2021-33026The Flask-Caching extension through 1.10.1 for Flask relies on Pickle ...bookworm, bullseye, sid, trixie
flexCVE-2019-6293An issue was discovered in the function mark_beginning_as_normal in nf ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
flintqsCVE-2023-29465SageMath FlintQS 1.0 relies on pathnames under TMPDIR (typically world ...bookworm, bullseye, buster, sid, stretch, trixie
flvmetaCVE-2023-36243FLVMeta v1.2.1 was discovered to contain a buffer overflow via the xml ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
fontforgeCVE-2017-11570FontForge 20161012 is vulnerable to a buffer over-read in umodenc (par ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-11573FontForge 20161012 is vulnerable to a buffer over-read in ValidatePost ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-17521uiutil.c in FontForge through 20170731 does not validate strings befor ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
foomatic-filtersCVE-2011-2923foomatic-rip filter, all versions, used insecurely creates temporary f ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
TEMP-0000000-ACBC4Cbuffer overflows in init_cupsbookworm, bullseye, buster, jessie, sid, stretch, trixie
freeipaCVE-2015-5179FreeIPA might display user data improperly via vectors involving non-p ...bookworm, buster, sid
CVE-2017-12169It was found that FreeIPA 4.2.0 and later could disclose password hash ...bookworm, buster, sid
CVE-2019-14826A flaw was found in FreeIPA versions 4.5.0 and later. Session cookies ...bookworm, buster, sid
CVE-2023-5455A Cross-site request forgery vulnerability exists in ipa/session/login ...bookworm, buster, sid
CVE-2024-1271privileges escalation from root to domain adminbookworm, buster, sid
freeradiusCVE-2007-0080Buffer overflow in the SMB_Connect_Server function in FreeRadius 1.1.3 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-10143It was discovered freeradius up to and including version 3.0.19 does n ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
freerdpCVE-2014-0791Integer overflow in the license_read_scope_list function in libfreerdp ...jessie
freetypeCVE-2022-31782ftbench.c in FreeType Demo Programs through 2.12.1 has a heap-based bu ...bullseye, buster, jessie, stretch
freevoCVE-2008-4955freevo.real in freevo 1.8.1 allows local users to overwrite arbitrary ...jessie
frrCVE-2020-12831An issue was discovered in FRRouting FRR (aka Free Range Routing) thro ...bookworm, bullseye, buster, sid
ganglia-webCVE-2015-6816ganglia-web before 3.7.1 allows remote attackers to bypass authenticat ...buster, jessie, stretch
CVE-2019-20378ganglia-web (aka Ganglia Web Frontend) through 3.7.5 allows XSS via th ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-20379ganglia-web (aka Ganglia Web Frontend) through 3.7.5 allows XSS via th ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
gcc-12CVE-2022-27943libiberty/rust-demangle.c in GNU GCC 11.2 allows stack consumption in ...bookworm, sid, trixie
gcc-mingw-w64CVE-2016-4973Binaries compiled against targets that use the libssp library in GCC f ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
gdalCVE-2019-17546tif_getimage.c in LibTIFF through 4.0.10, as used in GDAL through 3.0. ...buster, stretch
gdbCVE-2014-8501The _bfd_XXi_swap_aouthdr_in function in bfd/peXXigen.c in GNU binutil ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2014-9939ihex.c in GNU Binutils before 2.26 contains a stack buffer overflow wh ...jessie
CVE-2017-9778GNU Debugger (GDB) 8.0 and earlier fails to detect a negative length f ...buster, jessie, stretch
CVE-2023-39128GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a stack o ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-39129GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap us ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-39130GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap bu ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
gdk-pixbufCVE-2017-2870An exploitable integer overflow vulnerability exists in the tiff_image ...stretch
CVE-2017-6311gdk-pixbuf-thumbnailer.c in gdk-pixbuf allows context-dependent attack ...stretch
gdnsdCVE-2019-13952The set_ipv6() function in zscan_rfc1035.rl in gdnsd before 2.4.3 and ...jessie, stretch
geditCVE-2017-14108libgedit.a in GNOME gedit through 3.22.1 allows remote attackers to ca ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
geomviewCVE-2017-17530common/help.c in Geomview 1.9.5 does not validate strings before launc ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
gerbvCVE-2021-40400An out-of-bounds read vulnerability exists in the RS-274X aperture mac ...bullseye, buster, stretch
CVE-2021-40402An out-of-bounds read vulnerability exists in the RS-274X aperture mac ...bookworm, bullseye, buster, sid, stretch, trixie
gettextCVE-2018-18751An issue was discovered in GNU gettext 0.19.8. There is a double free ...jessie, stretch
ghostscriptCVE-2022-1350A vulnerability classified as problematic was found in GhostPCL 9.55.0 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-38560An integer overflow flaw was found in pcl/pl/plfont.c:418 in pl_glyph_ ...bookworm, bullseye, buster, jessie, stretch
ghostwriterCVE-2022-39209cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and renderin ...bullseye, buster
giacCVE-2017-17526Input.cc in Bernard Parisse Giac 1.2.3.57 does not validate strings be ...bookworm, bullseye, buster, sid
gif2apngCVE-2021-45907An issue was discovered in gif2apng 1.9. There is a stack-based buffer ...bullseye, buster, jessie, stretch
CVE-2021-45908An issue was discovered in gif2apng 1.9. There is a stack-based buffer ...bullseye, buster, jessie, stretch
gif2pngCVE-2019-17371gif2png 2.5.13 has a memory leak in the writefile function.jessie, stretch
giflibCVE-2020-23922An issue was discovered in giflib through 5.1.4. DumpScreen2RGB in gif ...bookworm, bullseye, buster, jessie, stretch
CVE-2021-40633A memory leak (out-of-memory) in gif2rgb in util/gif2rgb.c in giflib 5 ...bookworm, bullseye, buster, jessie, stretch
CVE-2022-28506There is a heap-buffer-overflow in GIFLIB 5.2.1 function DumpScreen2RG ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-39742giflib v5.2.1 was discovered to contain a segmentation fault via the c ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-48161Buffer Overflow vulnerability in GifLib Project GifLib v.5.2.1 allows ...bookworm, bullseye, buster, jessie, stretch
TEMP-0820594-BC6826out of bound read and write issuesjessie
gifsicleCVE-2017-18120A double-free bug in the read_gif function in gifread.c in gifsicle 1. ...jessie, stretch
CVE-2020-19752The find_color_or_error function in gifsicle 1.92 contains a NULL poin ...bullseye, buster, jessie, stretch
CVE-2023-36193Gifsicle v1.9.3 was discovered to contain a heap buffer overflow via t ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-44821Gifsicle through 1.94, if deployed in a way that allows untrusted inpu ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-46009gifsicle-1.94 was found to have a floating point exception (FPE) vulne ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
giftransCVE-2021-45972The giftrans function in giftrans 1.12.2 contains a stack-based buffer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
gimpCVE-2007-3126Gimp before 2.8.22 allows context-dependent attackers to cause a denia ...jessie, stretch
CVE-2012-4245The scriptfu network server in GIMP 2.6 does not require authenticatio ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-12713GIMP through 2.10.2 makes g_get_tmp_dir calls to establish temporary f ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-30067GIMP 2.10.30 and 2.99.10 are vulnerable to Buffer Overflow. Through a ...bullseye
CVE-2022-32990An issue in gimp_layer_invalidate_boundary of GNOME GIMP 2.10.30 allow ...bullseye, buster, jessie, stretch
gitCVE-2017-15298Git through 2.14.2 mishandles layers of tree objects, which allows rem ...jessie, stretch
CVE-2018-1000021GIT version 2.15.1 and earlier contains a Input Validation Error vulne ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-1350A remote code execution vulnerability exists when Git for Visual Studi ...jessie, stretch
CVE-2019-1351A tampering vulnerability exists when Git for Visual Studio improperly ...jessie, stretch
CVE-2019-1354A remote code execution vulnerability exists when Git for Visual Studi ...jessie, stretch
CVE-2022-24975The --mirror documentation for Git through 2.35.1 does not mention the ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
git-repairTEMP-0807341-84E914uses non-random tempdir /tmp/tmprepo.0/.git/jessie
gjots2CVE-2017-17535lib/gui.py in Bob Hepple gjots2 2.4.1 does not validate strings before ...buster, jessie, stretch
glanceCVE-2013-4354The API before 2.1 in OpenStack Image Registry and Delivery Service (G ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2015-8234The image signature algorithm in OpenStack Glance 11.0.0 allows remote ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-4383The glance-manage db in all versions of HPE Helion Openstack Glance al ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-8611A vulnerability was found in Openstack Glance. No limits are enforced ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
glib2.0CVE-2012-0039GLib 2.31.8 and earlier, when the g_str_hash function is used, compute ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-35457GNOME GLib before 2.65.3 has an integer overflow, that might lead to a ...buster, jessie, stretch
glibcCVE-2010-4756The glob implementation in the GNU C Library (aka glibc or libc6) allo ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2015-8985The pop_fail_stack function in the GNU C Library (aka glibc or libc6) ...jessie, stretch
CVE-2018-20796In the GNU C Library (aka glibc or libc6) through 2.29, check_dst_limi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-6488The string component in the GNU C Library (aka glibc or libc6) through ...jessie, stretch
CVE-2019-7309In the GNU C Library (aka glibc or libc6) through 2.29, the memcmp fun ...jessie, stretch
CVE-2019-9192In the GNU C Library (aka glibc or libc6) through 2.29, check_dst_limi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-1010022GNU Libc current is affected by: Mitigation bypass. The impact is: Att ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-1010023GNU Libc current is affected by: Re-mapping current loaded library wit ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-1010024GNU Libc current is affected by: Mitigation bypass. The impact is: Att ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-1010025GNU Libc current is affected by: Mitigation bypass. The impact is: Att ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
globalCVE-2017-17531gozilla.c in GNU GLOBAL 4.8.6 does not validate strings before launchi ...jessie
glpiCVE-2010-1618Cross-site scripting (XSS) vulnerability in the phpCAS client library ...jessie
CVE-2010-2795phpCAS before 1.1.2 allows remote authenticated users to hijack sessio ...jessie
CVE-2010-2796Cross-site scripting (XSS) vulnerability in phpCAS before 1.1.2, when ...jessie
CVE-2010-3690Multiple cross-site scripting (XSS) vulnerabilities in phpCAS before 1 ...jessie
CVE-2010-3691PGTStorage/pgt-file.php in phpCAS before 1.1.3, when proxy mode is ena ...jessie
CVE-2010-3692Directory traversal vulnerability in the callback function in client.p ...jessie
CVE-2014-5032GLPI before 0.84.7 does not properly restrict access to cost informati ...jessie
CVE-2014-8360Directory traversal vulnerability in inc/autoload.function.php in GLPI ...jessie
CVE-2014-9258SQL injection vulnerability in ajax/getDropdownValue.php in GLPI befor ...jessie
CVE-2015-7684Unrestricted file upload in GLPI before 0.85.3 allows remote authentic ...jessie
CVE-2015-7685GLPI before 0.85.3 allows remote authenticated users to create super-a ...jessie
CVE-2016-7507Cross-Site Request Forgery (CSRF) vulnerability in GLPI 0.90.4 allows ...jessie
CVE-2016-7508Multiple SQL injection vulnerabilities in GLPI 0.90.4 allow an authent ...jessie
CVE-2016-7509Cross-site scripting (XSS) vulnerability in GLPI 0.90.4 allows remote ...jessie
CVE-2017-11183front/backup.php in GLPI before 9.1.5 allows remote authenticated admi ...jessie
CVE-2017-11184SQL injection exists in front/devicesoundcard.php in GLPI before 9.1.5 ...jessie
CVE-2017-11329GLPI before 9.1.5 allows SQL injection via an ajax/getDropdownValue.ph ...jessie
CVE-2017-11474GLPI before 9.1.5.1 has SQL Injection in the $crit variable in inc/com ...jessie
CVE-2017-11475GLPI before 9.1.5.1 has SQL Injection in the condition rule field, exp ...jessie
CVE-2018-7562A remote code execution issue was discovered in GLPI through 9.2.1. Th ...jessie
CVE-2018-7563An issue was discovered in GLPI through 9.2.1. The application is affe ...jessie
CVE-2018-13049The constructSQL function in inc/search.class.php in GLPI 9.2.x throug ...jessie
CVE-2019-10231Teclib GLPI before 9.4.1.1 is affected by a PHP type juggling vulnerab ...jessie
CVE-2019-10232Teclib GLPI through 9.3.3 has SQL injection via the "cycle" parameter ...jessie
CVE-2019-10233Teclib GLPI before 9.4.1.1 is affected by a timing attack associated w ...jessie
CVE-2019-13239inc/user.class.php in GLPI before 9.4.3 allows XSS via a user picture.jessie
CVE-2019-13240An issue was discovered in GLPI before 9.4.1. After a successful passw ...jessie
CVE-2019-14666GLPI through 9.4.3 is prone to account takeover by abusing the ajax/au ...jessie
CVE-2019-1010307GLPI GLPI Product 9.3.1 is affected by: Cross Site Scripting (XSS). Th ...jessie
CVE-2019-1010310GLPI GLPI Product 9.3.1 is affected by: Frame and Form tags Injection ...jessie
CVE-2020-5248GLPI before before version 9.4.6 has a vulnerability involving a defau ...jessie
CVE-2020-11031In GLPI before version 9.5.0, the encryption algorithm used is insecur ...jessie
CVE-2020-11032In GLPI before version 9.4.6, there is a SQL injection vulnerability f ...jessie
CVE-2020-11033In GLPI from version 9.1 and before version 9.4.6, any API user with R ...jessie
CVE-2020-11034In GLPI before version 9.4.6, there is a vulnerability that allows byp ...jessie
CVE-2020-11035In GLPI after version 0.83.3 and before version 9.4.6, the CSRF tokens ...jessie
CVE-2020-11036In GLPI before version 9.4.6 there are multiple related stored XSS vul ...jessie
CVE-2020-11060In GLPI before 9.4.6, an attacker can execute system commands by abusi ...jessie
CVE-2020-11062In GLPI after 0.68.1 and before 9.4.6, multiple reflexive XSS occur in ...jessie
CVE-2020-15108In glpi before 9.5.1, there is a SQL injection for all usages of "Clon ...jessie
CVE-2021-39209GLPI is a free Asset and IT management software package. In versions p ...jessie
CVE-2021-39210GLPI is a free Asset and IT management software package. In versions p ...jessie
CVE-2021-39211GLPI is a free Asset and IT management software package. Starting in v ...jessie
CVE-2021-39213GLPI is a free Asset and IT management software package. Starting in v ...jessie
CVE-2021-43779GLPI is an open source IT Asset Management, issue tracking system and ...jessie
CVE-2022-21719GLPI is a free asset and IT management software package. All GLPI vers ...jessie
CVE-2022-21720GLPI is a free asset and IT management software package. Prior to vers ...jessie
CVE-2022-24867GLPI is a Free Asset and IT Management Software package, that provides ...jessie
CVE-2022-24868GLPI is a Free Asset and IT Management Software package, that provides ...jessie
CVE-2022-24869GLPI is a Free Asset and IT Management Software package, that provides ...jessie
CVE-2022-24876GLPI is a Free Asset and IT Management Software package, that provides ...jessie
CVE-2022-29250GLPI is a Free Asset and IT Management Software package, that provides ...jessie
CVE-2022-31056GLPI is a Free Asset and IT Management Software package, Data center m ...jessie
CVE-2022-31061GLPI is a Free Asset and IT Management Software package, Data center m ...jessie
CVE-2022-31068GLPI is a Free Asset and IT Management Software package, Data center m ...jessie
CVE-2022-31082GLPI is a Free Asset and IT Management Software package, Data center m ...jessie
CVE-2022-31143GLPI stands for Gestionnaire Libre de Parc Informatique and is a Free ...jessie
CVE-2022-31187GLPI stands for Gestionnaire Libre de Parc Informatique and is a Free ...jessie
CVE-2022-35945GLPI stands for Gestionnaire Libre de Parc Informatique and is a Free ...jessie
CVE-2022-35946GLPI stands for Gestionnaire Libre de Parc Informatique and is a Free ...jessie
CVE-2022-35947GLPI stands for Gestionnaire Libre de Parc Informatique and is a Free ...jessie
CVE-2022-36112GLPI stands for Gestionnaire Libre de Parc Informatique and is a Free ...jessie
CVE-2022-39234GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Fre ...jessie
CVE-2022-39262GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Fre ...jessie
CVE-2022-39276GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Fre ...jessie
CVE-2022-39277GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Fre ...jessie
CVE-2022-39323GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Fre ...jessie
CVE-2022-39370GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Fre ...jessie
CVE-2022-39371GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Fre ...jessie
CVE-2022-39372GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Fre ...jessie
CVE-2022-39373GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Fre ...jessie
CVE-2022-39375GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Fre ...jessie
CVE-2022-39376GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Fre ...jessie
CVE-2022-41941GLPI is a Free Asset and IT Management Software package. Versions 10.0 ...jessie
CVE-2023-22500GLPI is a Free Asset and IT Management Software package. Versions 10.0 ...jessie
CVE-2023-22722GLPI is a Free Asset and IT Management Software package. Versions 9.4. ...jessie
CVE-2023-22724GLPI is a Free Asset and IT Management Software package. Versions prio ...jessie
CVE-2023-22725GLPI is a Free Asset and IT Management Software package. Versions 0.6. ...jessie
CVE-2023-23610GLPI is a Free Asset and IT Management Software package. Versions prio ...jessie
CVE-2023-28632GLPI is a free asset and IT management software package. Starting in v ...jessie
CVE-2023-28633GLPI is a free asset and IT management software package. Starting in v ...jessie
CVE-2023-28634GLPI is a free asset and IT management software package. Starting in v ...jessie
CVE-2023-28636GLPI is a free asset and IT management software package. Starting in v ...jessie
CVE-2023-28639GLPI is a free asset and IT management software package. Starting in v ...jessie
CVE-2023-28838GLPI is a free asset and IT management software package. Starting in v ...jessie
CVE-2023-28849GLPI is a free asset and IT management software package. Starting in v ...jessie
CVE-2023-28852GLPI is a free asset and IT management software package. Starting in v ...jessie
CVE-2023-34106GLPI is a free asset and IT management software package. Versions of t ...jessie
CVE-2023-34107GLPI is a free asset and IT management software package. Versions of t ...jessie
CVE-2023-34244GLPI is a free asset and IT management software package. Starting in v ...jessie
CVE-2023-35924GLPI is a free asset and IT management software package. Starting in v ...jessie
CVE-2023-35939GLPI is a free asset and IT management software package. Starting in v ...jessie
CVE-2023-35940GLPI is a free asset and IT management software package. Starting in v ...jessie
CVE-2023-36808GLPI is a free asset and IT management software package. Starting in v ...jessie
CVE-2023-37278GLPI is a Free Asset and IT Management Software package, Data center m ...jessie
CVE-2023-41320GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asse ...jessie
CVE-2023-41321GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asse ...jessie
CVE-2023-41322GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asse ...jessie
CVE-2023-41323GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asse ...jessie
CVE-2023-41324GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asse ...jessie
CVE-2023-41326GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asse ...jessie
CVE-2023-41888GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asse ...jessie
CVE-2023-42461GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asse ...jessie
CVE-2023-42462GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asse ...jessie
gnome-font-viewerCVE-2019-19308In text_to_glyphs in sushi-font-widget.c in gnome-font-viewer 3.34.0, ...buster, jessie, stretch
gnome-keyringCVE-2018-19358GNOME Keyring through 3.28.2 allows local users to retrieve login cred ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-20781In pam/gkr-pam-module.c in GNOME Keyring before 3.27.2, the user's pas ...jessie, stretch
gnome-orcaCVE-2013-4245Orca has arbitrary code execution due to insecure Python module loadjessie, stretch
gnome-remote-desktopCVE-2022-1736bullseye, buster
gnome-shellCVE-2012-4427The gnome-shell plugin 3.4.1 in GNOME allows remote attackers to force ...buster, jessie, stretch
gnome-sushiCVE-2019-19308In text_to_glyphs in sushi-font-widget.c in gnome-font-viewer 3.34.0, ...buster, jessie, stretch
gnuchessCVE-2015-8972Stack-based buffer overflow in the ValidateMove function in frontend/m ...jessie
CVE-2019-15767In GNU Chess 6.2.5, there is a stack-based buffer overflow in the cmd_ ...buster, jessie, stretch
gnumailCVE-2007-1269GNUMail 1.1.2 and earlier does not properly use the --status-fd argume ...bookworm, bullseye, buster, sid, stretch, trixie
gnupgCVE-2018-6829cipher/elgamal.c in Libgcrypt through 1.8.2, when used to encrypt mess ...jessie
CVE-2022-3219GnuPG can be made to spin on a relatively small input by (for example) ...jessie
CVE-2022-34903GnuPG through 2.3.6, in unusual situations where an attacker possesses ...jessie
gnupg1CVE-2018-6829cipher/elgamal.c in Libgcrypt through 1.8.2, when used to encrypt mess ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-14855A flaw was found in the way certificate signatures could be forged usi ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2022-3219GnuPG can be made to spin on a relatively small input by (for example) ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2022-34903GnuPG through 2.3.6, in unusual situations where an attacker possesses ...bookworm, bullseye, buster, sid, stretch, trixie
gnupg2CVE-2022-3219GnuPG can be made to spin on a relatively small input by (for example) ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
gnuplotCVE-2018-19490An issue was discovered in datafile.c in Gnuplot 5.2.5. This issue all ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2018-19491An issue was discovered in post.trm in Gnuplot 5.2.5. This issue allow ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2018-19492An issue was discovered in cairo.trm in Gnuplot 5.2.5. This issue allo ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2020-25412com_line() in command.c in gnuplot 5.4 leads to an out-of-bounds-write ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-25559gnuplot 5.5 is affected by double free when executing print_set_output ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-25969gnuplot v5.5 was discovered to contain a buffer overflow via the funct ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-44917A Divide by Zero vulnerability exists in gnuplot 5.4 in the boundary3d ...buster, jessie, stretch
gnutls28CVE-2011-3389The SSL protocol, as used in certain configurations in Microsoft Windo ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
TEMP-0000000-1BAE4DGNUTLS-SA-2016-2: certificate verification issuejessie
gocrCVE-2021-33479A stack-based buffer overflow vulnerability was discovered in gocr thr ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-33480An use-after-free vulnerability was discovered in gocr through 0.53-20 ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-33481A stack-based buffer overflow vulnerability was discovered in gocr thr ...bookworm, bullseye, buster, sid, stretch, trixie
golangCVE-2016-5386The net/http package in Go through 1.6 does not attempt to address RFC ...jessie
CVE-2020-29509The encoding/xml package in Go (all versions) does not correctly prese ...jessie
CVE-2020-29510The encoding/xml package in Go versions 1.15 and earlier does not corr ...jessie
CVE-2020-29511The encoding/xml package in Go (all versions) does not correctly prese ...jessie
golang-1.11CVE-2020-29509The encoding/xml package in Go (all versions) does not correctly prese ...buster
CVE-2020-29510The encoding/xml package in Go versions 1.15 and earlier does not corr ...buster
CVE-2020-29511The encoding/xml package in Go (all versions) does not correctly prese ...buster
CVE-2022-41716Due to unsanitized NUL values, attackers may be able to maliciously se ...buster
CVE-2022-41720On Windows, restricted files can be accessed via os.DirFS and http.Dir ...buster
CVE-2022-41722A path traversal vulnerability exists in filepath.Clean on Windows. On ...buster
CVE-2023-45283The filepath package does not recognize paths with a \??\ prefix as sp ...buster
CVE-2023-45284On Windows, The IsLocal function does not correctly detect reserved de ...buster
golang-1.15CVE-2020-29509The encoding/xml package in Go (all versions) does not correctly prese ...bullseye
CVE-2020-29510The encoding/xml package in Go versions 1.15 and earlier does not corr ...bullseye
CVE-2020-29511The encoding/xml package in Go (all versions) does not correctly prese ...bullseye
CVE-2022-41716Due to unsanitized NUL values, attackers may be able to maliciously se ...bullseye
CVE-2022-41720On Windows, restricted files can be accessed via os.DirFS and http.Dir ...bullseye
CVE-2022-41722A path traversal vulnerability exists in filepath.Clean on Windows. On ...bullseye
CVE-2023-45283The filepath package does not recognize paths with a \??\ prefix as sp ...bullseye
CVE-2023-45284On Windows, The IsLocal function does not correctly detect reserved de ...bullseye
golang-1.19CVE-2023-45283The filepath package does not recognize paths with a \??\ prefix as sp ...bookworm
CVE-2023-45284On Windows, The IsLocal function does not correctly detect reserved de ...bookworm
golang-1.7CVE-2020-29509The encoding/xml package in Go (all versions) does not correctly prese ...stretch
CVE-2020-29510The encoding/xml package in Go versions 1.15 and earlier does not corr ...stretch
CVE-2020-29511The encoding/xml package in Go (all versions) does not correctly prese ...stretch
CVE-2022-41722A path traversal vulnerability exists in filepath.Clean on Windows. On ...stretch
CVE-2023-45283The filepath package does not recognize paths with a \??\ prefix as sp ...stretch
CVE-2023-45284On Windows, The IsLocal function does not correctly detect reserved de ...stretch
golang-1.8CVE-2020-29509The encoding/xml package in Go (all versions) does not correctly prese ...stretch
CVE-2020-29510The encoding/xml package in Go versions 1.15 and earlier does not corr ...stretch
CVE-2020-29511The encoding/xml package in Go (all versions) does not correctly prese ...stretch
golang-github-blevesearch-bleveCVE-2022-31022Bleve is a text indexing library for go. Bleve includes HTTP utilities ...bullseye, buster
golang-github-containers-buildahCVE-2022-4122A vulnerability was found in buildah. Incorrect following of symlinks ...bookworm, bullseye, sid, trixie
CVE-2022-4123A flaw was found in Buildah. The local path and the lowest subdirector ...bookworm, bullseye, sid, trixie
google-perftoolsCVE-2018-13420Google gperftools 2.7 has a memory leak in malloc_extension.cc, relate ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
gpacCVE-2020-22673Memory leak in the senc_Parse function in MP4Box in gpac 0.8.0 allows ...buster, jessie, stretch
CVE-2020-22679Memory leak in the sgpd_parse_entry function in MP4Box in gpac 0.8.0 a ...buster, jessie, stretch
CVE-2021-31256Memory leak in the stbl_GetSampleInfos function in MP4Box in GPAC 1.0. ...buster, stretch
CVE-2021-31261The gf_hinter_track_new function in GPAC 1.0.1 allows attackers to rea ...buster, stretch
CVE-2021-33361Memory leak in the afra_box_read function in MP4Box in GPAC 1.0.1 allo ...sid
CVE-2021-33363Memory leak in the infe_box_read function in MP4Box in GPAC 1.0.1 allo ...sid
CVE-2021-33364Memory leak in the def_parent_box_new function in MP4Box in GPAC 1.0.1 ...sid
CVE-2021-33365Memory leak in the gf_isom_get_root_od function in MP4Box in GPAC 1.0. ...buster, sid, stretch
CVE-2021-33366Memory leak in the gf_isom_oinf_read_entry function in MP4Box in GPAC ...sid
CVE-2022-3957A vulnerability classified as problematic was found in GPAC. Affected ...buster, sid
CVE-2022-43254GPAC v2.1-DEV-rev368-gfd054169b-master was discovered to contain a mem ...bullseye, buster, jessie, sid, stretch
CVE-2022-43255GPAC v2.1-DEV-rev368-gfd054169b-master was discovered to contain a mem ...buster, jessie, sid, stretch
gppCVE-2018-17076GPP through 2.25 will try to use more memory space than is available o ...buster, jessie, stretch
gpwCVE-2011-4931gpw generates shorter passwords than requiredbookworm, bullseye, buster, jessie, sid, stretch, trixie
graphicsmagickCVE-2017-13066GraphicsMagick 1.3.26 has a memory leak vulnerability in the function ...jessie
CVE-2017-13147In GraphicsMagick 1.3.26, an allocation failure vulnerability was foun ...jessie
CVE-2017-13648In GraphicsMagick 1.3.26, a memory leak vulnerability was found in the ...jessie
CVE-2017-13736There are lots of memory leaks in the GMCommand function in magick/com ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-14042A memory allocation failure was discovered in the ReadPNMImage functio ...jessie
CVE-2017-14165The ReadSUNImage function in coders/sun.c in GraphicsMagick 1.3.26 has ...jessie
CVE-2017-14649ReadOneJNGImage in coders/png.c in GraphicsMagick version 1.3.26 does ...jessie
CVE-2018-18544There is a memory leak in the function WriteMSLImage of coders/msl.c i ...jessie, stretch
CVE-2019-7397In ImageMagick before 7.0.8-25 and GraphicsMagick through 1.3.31, seve ...jessie, stretch
CVE-2019-16709ImageMagick 7.0.8-35 has a memory leak in coders/dps.c, as demonstrate ...jessie, stretch
graphvizCVE-2019-11023The agroot() function in cgraph\obj.c in libcgraph.a in Graphviz 2.39. ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-46045Graphviz 2.36.0 through 9.x before 10.0.1 has an out-of-bounds read vi ...bookworm, bullseye, buster, jessie, stretch
grubCVE-2008-3896Grub Legacy 0.97 and earlier stores pre-boot authentication passwords ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-4949An attacker with local access to a system (either through a disk or ex ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
gsoapCVE-2021-21783A code execution vulnerability exists in the WS-Addressing plugin func ...bookworm, bullseye, buster, sid, stretch, trixie
gssproxyCVE-2020-12658gssproxy (aka gss-proxy) before 0.8.3 does not unlock cond_mutex befor ...bookworm, bullseye, buster, sid, trixie
gthumbCVE-2020-36427GNOME gThumb before 3.10.1 allows an application crash via a malformed ...buster, stretch
h2databaseCVE-2022-45868The web-based admin console in H2 Database Engine before 2.2.220 can b ...bookworm, bullseye, buster, sid, stretch, trixie
hamster-time-trackerCVE-2023-36250CSV Injection vulnerability in GNOME time tracker version 3.0.2, allow ...bookworm, bullseye, sid, trixie
haskell-tlsCVE-2011-3389The SSL protocol, as used in certain configurations in Microsoft Windo ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
hdf5CVE-2017-17507In HDF5 1.10.1, there is an out of bounds read vulnerability in the fu ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-13869An issue was discovered in the HDF HDF5 1.8.20 library. There is a mem ...bullseye, buster, jessie, stretch
CVE-2018-13870An issue was discovered in the HDF HDF5 1.8.20 library. There is a hea ...bullseye, buster, jessie, stretch
CVE-2018-14031An issue was discovered in the HDF HDF5 1.8.20 library. There is a hea ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-14033An issue was discovered in the HDF HDF5 1.8.20 library. There is a hea ...bullseye, buster, jessie, stretch
CVE-2018-14034An issue was discovered in the HDF HDF5 1.8.20 library. There is an ou ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-14035An issue was discovered in the HDF HDF5 1.8.20 library. There is a hea ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-14460An issue was discovered in the HDF HDF5 1.8.20 library. There is a hea ...bullseye, buster, jessie, stretch
CVE-2018-15671An issue was discovered in the HDF HDF5 1.10.2 library. Excessive stac ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-16438An issue was discovered in the HDF HDF5 1.8.20 library. There is an ou ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-17432A NULL pointer dereference in H5O_sdspace_encode() in H5Osdspace.c in ...bullseye, buster, jessie, stretch
CVE-2018-17433A heap-based buffer overflow in ReadGifImageDesc() in gifread.c in the ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-17435A heap-based buffer over-read in H5O_attr_decode() in H5Oattr.c in the ...bullseye, buster, jessie, stretch
CVE-2018-17436ReadCode() in decompress.c in the HDF HDF5 through 1.10.3 library allo ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-17438A SIGFPE signal is raised in the function H5D__select_io() of H5Dselec ...buster, jessie, stretch
CVE-2018-17439An issue was discovered in the HDF HDF5 1.10.3 library. There is a sta ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-8397An issue was discovered in the HDF HDF5 1.10.4 library. There is an ou ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-9151An issue was discovered in the HDF HDF5 1.10.4 library. There is an ou ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-9152An issue was discovered in the HDF HDF5 1.10.4 library. There is an ou ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-10809An issue was discovered in HDF5 through 1.12.0. A heap-based buffer ov ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-10810An issue was discovered in HDF5 through 1.12.0. A NULL pointer derefer ...bullseye, buster, jessie, stretch
CVE-2020-10811An issue was discovered in HDF5 through 1.12.0. A heap-based buffer ov ...bullseye, buster, jessie, stretch
CVE-2020-10812An issue was discovered in HDF5 through 1.12.0. A NULL pointer derefer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-18232Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-18494Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-37501Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-45829HDF5 1.13.1-1 is affected by: segmentation fault, which causes a Denia ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-45830A heap-based buffer overflow vulnerability exists in HDF5 1.13.1-1 via ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-45832A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 at ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-45833A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 vi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-46242HDF5 v1.13.1-1 was discovered to contain a heap-use-after free via the ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-46243An untrusted pointer dereference vulnerability exists in HDF5 v1.13.1- ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-46244A Divide By Zero vulnerability exists in HDF5 v1.13.1-1 vis the functi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
hex-a-hopTEMP-0528250-2E3658hex-a-hop: buffer overflow in loading save gamesbookworm, bullseye, buster, jessie, sid, stretch, trixie
hiredisCVE-2021-32765Hiredis is a minimalistic C client library for the Redis database. In ...bullseye, buster
horizon-edaCVE-2021-21897A code execution vulnerability exists in the DL_Dxf::handleLWPolylineD ...bookworm, bullseye, buster, sid, trixie
htmldocCVE-2021-33235Buffer overflow vulnerability in write_node in htmldoc through 1.9.11 ...bullseye, buster, jessie, stretch
CVE-2021-33236Buffer Overflow vulnerability in write_header in htmldoc through 1.9.1 ...bullseye, buster, jessie, stretch
CVE-2021-34119A flaw was discovered in htmodoc 1.9.12 in function parse_paragraph in ...bullseye, buster, jessie, stretch
CVE-2021-34121An Out of Bounds flaw was discovered in htmodoc 1.9.12 in function par ...bullseye, buster, jessie, stretch
CVE-2022-0137A heap buffer overflow in image_set_mask function of HTMLDOC before 1. ...bullseye, buster, jessie
CVE-2022-24191In HTMLDOC 1.9.14, an infinite loop in the gif_read_lzw function can l ...jessie, stretch
CVE-2022-28085A flaw was found in htmldoc commit 31f7804. A heap buffer overflow in ...jessie, stretch
CVE-2022-34033HTMLDoc v1.9.15 was discovered to contain a heap overflow via (write_h ...bullseye, buster, jessie, stretch
CVE-2022-34035HTMLDoc v1.9.12 and below was discovered to contain a heap overflow vi ...bullseye, buster, jessie, stretch
htslibCVE-2018-14329In HTSlib 1.8, a race condition in cram/cram_io.c might allow local us ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
httpieCVE-2023-48052Missing SSL certificate validation in HTTPie v3.2.2 allows attackers t ...bookworm, sid, trixie
huginCVE-2024-25442An issue in the HuginBase::PanoramaMemento::loadPTScript function of H ...bookworm, bullseye, buster
CVE-2024-25443An issue in the HuginBase::ImageVariable<double>::linkWith function of ...bookworm, bullseye, buster
CVE-2024-25445Improper handling of values in HuginBase::PTools::Transform::transform ...bookworm, bullseye, buster
CVE-2024-25446An issue in the HuginBase::PTools::setDestImage function of Hugin v202 ...bookworm, bullseye, buster
hugoCVE-2020-26284Hugo is a fast and Flexible Static Site Generator built in Go. Hugo de ...buster, stretch
hunspellCVE-2019-16707Hunspell 1.7.0 has an invalid read operation in SuggestMgr::leftcommon ...buster, jessie, stretch
icecast2CVE-2005-0837IceCast 2.20 allows remote attackers to bypass the XSL parser and obta ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2005-0838Multiple buffer overflows in the XSL parser for IceCast 2.20 may allow ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
icedoveCVE-2006-5633Firefox 1.5.0.7 and 2.0, and Seamonkey 1.1b, allows remote attackers t ...jessie
CVE-2008-5430Mozilla Thunderbird 2.0.14 does not properly handle (1) multipart/mixe ...jessie
icedtea-webCVE-2015-5236It was discovered that the IcedTea-Web used codebase attribute of the ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
imagemagickCVE-2005-0406A design flaw in image processing software that modifies JPEG images m ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2008-3134Multiple unspecified vulnerabilities in GraphicsMagick before 1.2.4 al ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-8678The IsPixelMonochrome function in MagickCore/pixel-accessor.h in Image ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-6502An issue was discovered in ImageMagick 6.9.7. A specially crafted webp ...jessie, stretch
CVE-2017-7275The ReadPCXImage function in coders/pcx.c in ImageMagick 7.0.4.9 allow ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-11166The ReadXWDImage function in coders\xwd.c in ImageMagick 7.0.5-6 has a ...jessie
CVE-2017-11531When ImageMagick 7.0.6-1 processes a crafted file in convert, it can l ...jessie, stretch
CVE-2017-11532When ImageMagick 7.0.6-1 processes a crafted file in convert, it can l ...jessie, stretch
CVE-2017-11534When ImageMagick 7.0.6-1 processes a crafted file in convert, it can l ...jessie, stretch
CVE-2017-11536When ImageMagick 7.0.6-1 processes a crafted file in convert, it can l ...jessie, stretch
CVE-2017-11539When ImageMagick 7.0.6-1 processes a crafted file in convert, it can l ...jessie, stretch
CVE-2017-11644When ImageMagick 7.0.6-1 processes a crafted file in convert, it can l ...jessie, stretch
CVE-2017-11724The ReadMATImage function in coders/mat.c in ImageMagick through 6.9.9 ...jessie, stretch
CVE-2017-11751The WritePICONImage function in coders/xpm.c in ImageMagick 7.0.6-4 al ...jessie, stretch
CVE-2017-11752The ReadMAGICKImage function in coders/magick.c in ImageMagick 7.0.6-4 ...jessie, stretch
CVE-2017-11754The WritePICONImage function in coders/xpm.c in ImageMagick 7.0.6-4 al ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-11755The WritePICONImage function in coders/xpm.c in ImageMagick 7.0.6-4 al ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-12418ImageMagick 7.0.6-5 has memory leaks in the parse8BIMW and format8BIM ...jessie, stretch
CVE-2017-12427The ProcessMSLScript function in coders/msl.c in ImageMagick before 6. ...jessie, stretch
CVE-2017-12428In ImageMagick 7.0.6-1, a memory leak vulnerability was found in the f ...jessie
CVE-2017-12433In ImageMagick 7.0.6-1, a memory leak vulnerability was found in the f ...jessie, stretch
CVE-2017-12564In ImageMagick 7.0.6-2, a memory leak vulnerability was found in the f ...jessie, stretch
CVE-2017-12565In ImageMagick 7.0.6-2, a memory leak vulnerability was found in the f ...jessie, stretch
CVE-2017-12566In ImageMagick 7.0.6-2, a memory leak vulnerability was found in the f ...jessie, stretch
CVE-2017-12641ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadOneJNGImage ...jessie, stretch
CVE-2017-12642ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadMPCImage in ...jessie, stretch
CVE-2017-12644ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadDCMImage in ...jessie, stretch
CVE-2017-12654The ReadPICTImage function in coders/pict.c in ImageMagick 7.0.6-3 all ...jessie, stretch
CVE-2017-12662ImageMagick 7.0.6-2 has a memory leak vulnerability in WritePDFImage i ...jessie, stretch
CVE-2017-12663ImageMagick 7.0.6-2 has a memory leak vulnerability in WriteMAPImage i ...jessie, stretch
CVE-2017-12664ImageMagick 7.0.6-2 has a memory leak vulnerability in WritePALMImage ...jessie, stretch
CVE-2017-12665ImageMagick 7.0.6-2 has a memory leak vulnerability in WritePICTImage ...jessie, stretch
CVE-2017-12666ImageMagick 7.0.6-2 has a memory leak vulnerability in WriteINLINEImag ...stretch
CVE-2017-12667ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadMATImage in ...jessie, stretch
CVE-2017-12668ImageMagick 7.0.6-2 has a memory leak vulnerability in WritePCXImage i ...jessie, stretch
CVE-2017-12669ImageMagick 7.0.6-2 has a memory leak vulnerability in WriteCALSImage ...jessie, stretch
CVE-2017-12671In ImageMagick 7.0.6-3, a missing NULL assignment was found in coders/ ...jessie
CVE-2017-12672In ImageMagick 7.0.6-3, a memory leak vulnerability was found in the f ...jessie, stretch
CVE-2017-12673In ImageMagick 7.0.6-3, a memory leak vulnerability was found in the f ...jessie, stretch
CVE-2017-12675In ImageMagick 7.0.6-3, a missing check for multidimensional data was ...jessie, stretch
CVE-2017-12676In ImageMagick 7.0.6-3, a memory leak vulnerability was found in the f ...jessie, stretch
CVE-2017-13058In ImageMagick 7.0.6-6, a memory leak vulnerability was found in the f ...jessie, stretch
CVE-2017-13059In ImageMagick 7.0.6-6, a memory leak vulnerability was found in the f ...jessie, stretch
CVE-2017-13060In ImageMagick 7.0.6-5, a memory leak vulnerability was found in the f ...jessie, stretch
CVE-2017-13062In ImageMagick 7.0.6-6, a memory leak vulnerability was found in the f ...jessie, stretch
CVE-2017-13131In ImageMagick 7.0.6-8, a memory leak vulnerability was found in the f ...jessie, stretch
CVE-2017-13141In ImageMagick before 6.9.9-4 and 7.x before 7.0.6-4, a crafted file c ...jessie
CVE-2017-13146In ImageMagick before 6.9.8-5 and 7.x before 7.0.5-6, there is a memor ...jessie, stretch
CVE-2017-14137ReadWEBPImage in coders/webp.c in ImageMagick 7.0.6-5 has an issue whe ...jessie, stretch
CVE-2017-14138ImageMagick 7.0.6-5 has a memory leak vulnerability in ReadWEBPImage i ...jessie, stretch
CVE-2017-14139ImageMagick 7.0.6-2 has a memory leak vulnerability in WriteMSLImage i ...jessie, stretch
CVE-2017-14324In ImageMagick 7.0.7-1 Q16, a memory leak vulnerability was found in t ...jessie, stretch
CVE-2017-14325In ImageMagick 7.0.7-1 Q16, a memory leak vulnerability was found in t ...jessie, stretch
CVE-2017-14326In ImageMagick 7.0.7-1 Q16, a memory leak vulnerability was found in t ...jessie, stretch
CVE-2017-14342ImageMagick 7.0.6-6 has a memory exhaustion vulnerability in ReadWPGIm ...jessie, stretch
CVE-2017-14343ImageMagick 7.0.6-6 has a memory leak vulnerability in ReadXCFImage in ...jessie, stretch
CVE-2017-14531ImageMagick 7.0.7-0 has a memory exhaustion issue in ReadSUNImage in c ...jessie, stretch
CVE-2017-14533ImageMagick 7.0.6-6 has a memory leak in ReadMATImage in coders/mat.c.jessie, stretch
CVE-2017-14684In ImageMagick 7.0.7-4 Q16, a memory leak vulnerability was found in t ...jessie, stretch
CVE-2017-15016ImageMagick 7.0.7-0 Q16 has a NULL pointer dereference vulnerability i ...jessie, stretch
CVE-2017-15032ImageMagick version 7.0.7-2 contains a memory leak in ReadYCBCRImage i ...jessie, stretch
CVE-2017-15033ImageMagick version 7.0.7-2 contains a memory leak in ReadYUVImage in ...jessie, stretch
CVE-2017-15217ImageMagick 7.0.7-2 has a memory leak in ReadSGIImage in coders/sgi.c.jessie, stretch
CVE-2017-15218ImageMagick 7.0.7-2 has a memory leak in ReadOneJNGImage in coders/png ...jessie, stretch
CVE-2017-17680In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in ...jessie, stretch
CVE-2017-17880In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-21, there is a stack-based ...jessie, stretch
CVE-2017-17881In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in ...jessie, stretch
CVE-2017-17882In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in ...jessie, stretch
CVE-2017-17883In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in ...jessie, stretch
CVE-2017-17884In ImageMagick 7.0.7-16 Q16, a memory leak vulnerability was found in ...jessie, stretch
CVE-2017-17885In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in ...jessie, stretch
CVE-2017-17886In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in ...jessie, stretch
CVE-2017-17887In ImageMagick 7.0.7-16 Q16, a memory leak vulnerability was found in ...jessie, stretch
CVE-2017-17934ImageMagick 7.0.7-17 Q16 x86_64 has memory leaks in coders/msl.c, rela ...jessie, stretch
CVE-2017-18008In ImageMagick 7.0.7-17 Q16, there is a Memory Leak in ReadPWPImage in ...jessie, stretch
CVE-2017-18022In ImageMagick 7.0.7-12 Q16, there are memory leaks in MontageImageCom ...jessie, stretch
CVE-2017-18027In ImageMagick 7.0.7-1 Q16, a memory leak vulnerability was found in t ...jessie, stretch
CVE-2017-18029In ImageMagick 7.0.6-10 Q16, a memory leak vulnerability was found in ...jessie, stretch
CVE-2017-18251An issue was discovered in ImageMagick 7.0.7. A memory leak vulnerabil ...jessie, stretch
CVE-2017-18254An issue was discovered in ImageMagick 7.0.7. A memory leak vulnerabil ...jessie, stretch
CVE-2018-5246In ImageMagick 7.0.7-17 Q16, there are memory leaks in ReadPATTERNImag ...jessie, stretch
CVE-2018-5247In ImageMagick 7.0.7-17 Q16, there are memory leaks in ReadRLAImage in ...jessie, stretch
CVE-2018-5357ImageMagick 7.0.7-22 Q16 has memory leaks in the ReadDCMImage function ...jessie, stretch
CVE-2018-5358ImageMagick 7.0.7-22 Q16 has memory leaks in the EncodeImageAttributes ...jessie, stretch
CVE-2018-6405In the ReadDCMImage function in coders/dcm.c in ImageMagick before 7.0 ...jessie, stretch
CVE-2018-7470An issue was discovered in ImageMagick 7.0.7-22 Q16. The IsWEBPImageLo ...jessie, stretch
CVE-2018-9135In ImageMagick 7.0.7-24 Q16, there is a heap-based buffer over-read in ...jessie, stretch
CVE-2018-10805ImageMagick version 7.0.7-28 contains a memory leak in ReadYCBCRImage ...jessie, stretch
CVE-2018-11655In ImageMagick 7.0.7-20 Q16 x86_64, a memory leak vulnerability was fo ...jessie, stretch
CVE-2018-11656In ImageMagick 7.0.7-20 Q16 x86_64, a memory leak vulnerability was fo ...jessie, stretch
CVE-2018-13153In ImageMagick 7.0.8-4, there is a memory leak in the XMagickCommand f ...jessie, stretch
CVE-2018-14434ImageMagick 7.0.8-4 has a memory leak for a colormap in WriteMPCImage ...jessie, stretch
CVE-2018-14435ImageMagick 7.0.8-4 has a memory leak in DecodeImage in coders/pcd.c.jessie, stretch
CVE-2018-14436ImageMagick 7.0.8-4 has a memory leak in ReadMIFFImage in coders/miff. ...jessie, stretch
CVE-2018-14437ImageMagick 7.0.8-4 has a memory leak in parse8BIM in coders/meta.c.jessie, stretch
CVE-2018-15607In ImageMagick 7.0.8-11 Q16, a tiny input file 0x50 0x36 0x36 0x36 0x3 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-16640ImageMagick 7.0.8-5 has a memory leak vulnerability in the function Re ...jessie, stretch
CVE-2018-16750In ImageMagick 7.0.7-29 and earlier, a memory leak in the formatIPTCfr ...jessie, stretch
CVE-2018-17965ImageMagick 7.0.7-28 has a memory leak vulnerability in WriteSGIImage ...jessie, stretch
CVE-2018-17966ImageMagick 7.0.7-28 has a memory leak vulnerability in WritePDBImage ...jessie, stretch
CVE-2018-17967ImageMagick 7.0.7-28 has a memory leak vulnerability in ReadBGRImage i ...jessie, stretch
CVE-2018-18016ImageMagick 7.0.7-28 has a memory leak vulnerability in WritePCXImage ...jessie, stretch
CVE-2018-18544There is a memory leak in the function WriteMSLImage of coders/msl.c i ...jessie, stretch
CVE-2019-7175In ImageMagick before 7.0.8-25, some memory leaks exist in DecodeImage ...jessie, stretch
CVE-2019-7395In ImageMagick before 7.0.8-25, a memory leak exists in WritePSDChanne ...jessie, stretch
CVE-2019-7396In ImageMagick before 7.0.8-25, a memory leak exists in ReadSIXELImage ...jessie, stretch
CVE-2019-7397In ImageMagick before 7.0.8-25 and GraphicsMagick through 1.3.31, seve ...jessie, stretch
CVE-2019-7398In ImageMagick before 7.0.8-25, a memory leak exists in WriteDIBImage ...jessie, stretch
CVE-2019-10649In ImageMagick 7.0.8-36 Q16, there is a memory leak in the function SV ...jessie, stretch
CVE-2019-12975ImageMagick 7.0.8-34 has a memory leak vulnerability in the WriteDPXIm ...jessie, stretch
CVE-2019-12976ImageMagick 7.0.8-34 has a memory leak in the ReadPCLImage function in ...jessie, stretch
CVE-2019-13137ImageMagick before 7.0.8-50 has a memory leak vulnerability in the fun ...jessie, stretch
CVE-2019-13301ImageMagick 7.0.8-50 Q16 has memory leaks in AcquireMagickMemory becau ...jessie, stretch
CVE-2019-13309ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory becau ...jessie, stretch
CVE-2019-13310ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory becau ...buster, jessie, stretch
CVE-2019-13311ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory becau ...jessie, stretch
CVE-2019-16708ImageMagick 7.0.8-35 has a memory leak in magick/xwindow.c, related to ...jessie, stretch
CVE-2019-16709ImageMagick 7.0.8-35 has a memory leak in coders/dps.c, as demonstrate ...buster, jessie, stretch
CVE-2019-16710ImageMagick 7.0.8-35 has a memory leak in coders/dot.c, as demonstrate ...jessie, stretch
CVE-2019-16711ImageMagick 7.0.8-40 has a memory leak in Huffman2DEncodeImage in code ...jessie, stretch
CVE-2019-16712ImageMagick 7.0.8-43 has a memory leak in Huffman2DEncodeImage in code ...jessie, stretch
CVE-2019-16713ImageMagick 7.0.8-43 has a memory leak in coders/dot.c, as demonstrate ...jessie, stretch
CVE-2020-27753There are several memory leaks in the MIFF coder in /coders/miff.c due ...buster, jessie, stretch
CVE-2020-27755in SetImageExtent() of /MagickCore/image.c, an incorrect image depth s ...buster, jessie, stretch
CVE-2021-20311A flaw was found in ImageMagick in versions before 7.0.11, where a div ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-34152A vulnerability was found in ImageMagick. This security flaw cause a r ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
TEMP-0869722-31618Bmemory leak in quantizejessie, stretch
indentCVE-2024-0911A flaw was found in indent, a program for formatting C code. This issu ...bullseye, buster, jessie, stretch
influxdbCVE-2022-36640influxData influxDB before v1.8.10 contains no authentication mechanis ...bookworm, bullseye, buster, sid, stretch, trixie
iniparserCVE-2023-33461iniparser v4.1 is vulnerable to NULL Pointer Dereference in function i ...bookworm, bullseye, buster
initramfs-toolsCVE-2008-4996init in initramfs-tools 0.92f allows local users to overwrite arbitrar ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
inkscapeCVE-2021-42700Inkscape 0.91 is vulnerable to an out-of-bounds read, which may allow ...buster, jessie, stretch
CVE-2021-42702Inkscape version 0.91 can access an uninitialized pointer, which may a ...buster, jessie, stretch
CVE-2021-42704Inkscape version 0.91 is vulnerable to an out-of-bounds write, which m ...buster, jessie, stretch
ioquake3CVE-2019-1010043Quake3e < 5ed740d is affected by: Buffer Overflow. The impact is: Poss ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
iotjsCVE-2020-29657In JerryScript 2.3.0, there is an out-of-bounds read in main_print_unh ...bullseye, buster
ippsampleCVE-2023-24808PDFio is a C library for reading and writing PDF files. In versions pr ...bookworm, sid
ipsec-toolsCVE-2018-5389The Internet Key Exchange v1 main mode is vulnerable to offline dictio ...jessie, stretch
iptablesCVE-2012-2663extensions/libxt_tcp.c in iptables through 1.4.21 does not match TCP S ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-11360A buffer overflow in iptables-restore in netfilter iptables 1.8.2 allo ...buster, jessie, stretch
irssiTEMP-0000000-E6792Firssi missing null terminatorjessie
isakmpdCVE-2018-5389The Internet Key Exchange v1 main mode is vulnerable to offline dictio ...buster, stretch
italcCVE-2019-15680TightVNC code version 1.3.10 contains null pointer dereference in Hand ...jessie, stretch
jackrabbitCVE-2023-37895Java object deserialization issue in Jackrabbit webapp/standalone on a ...bookworm, bullseye, buster, jessie, stretch
jakarta-el-apiCVE-2021-28170In the Jakarta Expression Language implementation 3.0.3 and earlier, a ...bookworm, bullseye, sid, trixie
janinoCVE-2023-33546Janino 3.1.9 and earlier are subject to denial of service (DOS) attack ...bookworm, bullseye, buster, sid, trixie
janssonCVE-2020-36325An issue was discovered in Jansson through 2.13.1. Due to a parsing er ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
janusCVE-2021-4124janus-gateway is vulnerable to Improper Neutralization of Input During ...bookworm, sid, trixie
jasperCVE-2016-8883The jpc_dec_tiledecode function in jpc_dec.c in JasPer before 1.900.8 ...jessie
CVE-2016-8887The jp2_colr_destroy function in libjasper/jp2/jp2_cod.c in JasPer bef ...jessie
CVE-2016-9387Integer overflow in the jpc_dec_process_siz function in libjasper/jpc/ ...jessie
CVE-2016-9388The ras_getcmap function in ras_dec.c in JasPer before 1.900.14 allows ...jessie
CVE-2016-9389The jpc_irct and jpc_iict functions in jpc_mct.c in JasPer before 1.90 ...jessie
CVE-2016-9390The jas_seq2d_create function in jas_seq.c in JasPer before 1.900.14 a ...jessie
CVE-2016-9391The jpc_bitstream_getbits function in jpc_bs.c in JasPer before 2.0.10 ...jessie
CVE-2016-9392The calcstepsizes function in jpc_dec.c in JasPer before 1.900.17 allo ...jessie
CVE-2016-9393The jpc_pi_nextrpcl function in jpc_t2cod.c in JasPer before 1.900.17 ...jessie
CVE-2016-9394The jas_seq2d_create function in jas_seq.c in JasPer before 1.900.17 a ...jessie
CVE-2016-9395The jas_seq2d_create function in jas_seq.c in JasPer before 1.900.25 a ...jessie
CVE-2016-9396The JPC_NOMINALGAIN function in jpc/jpc_t1cod.c in JasPer through 2.0. ...jessie
CVE-2016-9397The jpc_dequantize function in jpc_dec.c in JasPer 1.900.13 allows rem ...jessie
CVE-2016-9398The jpc_floorlog2 function in jpc_math.c in JasPer before 1.900.17 all ...jessie
CVE-2016-9399The calcstepsizes function in jpc_dec.c in JasPer 1.900.22 allows remo ...jessie
CVE-2016-9583An out-of-bounds heap read vulnerability was found in the jpc_pi_nextp ...jessie
CVE-2016-9600JasPer before version 2.0.10 is vulnerable to a null pointer dereferen ...jessie
CVE-2016-10248The jpc_tsfb_synthesize function in jpc_tsfb.c in JasPer before 1.900. ...jessie
CVE-2017-5498libjasper/include/jasper/jas_math.h in JasPer 1.900.17 allows remote a ...jessie
CVE-2017-5499Integer overflow in libjasper/jpc/jpc_dec.c in JasPer 1.900.17 allows ...jessie
CVE-2017-5500libjasper/jpc/jpc_dec.c in JasPer 1.900.17 allows remote attackers to ...jessie
CVE-2017-5501Integer overflow in libjasper/jpc/jpc_tsfb.c in JasPer 1.900.17 allows ...jessie
CVE-2017-5502libjasper/jp2/jp2_dec.c in JasPer 1.900.17 allows remote attackers to ...jessie
CVE-2017-5504The jpc_undo_roi function in libjasper/jpc/jpc_dec.c in JasPer 1.900.2 ...jessie
CVE-2017-5505The jas_matrix_asl function in jas_seq.c in JasPer 1.900.27 allows rem ...jessie
CVE-2017-6850The jp2_cdef_destroy function in jp2_cod.c in JasPer before 2.0.13 all ...jessie
CVE-2017-6851The jas_matrix_bindsub function in jas_seq.c in JasPer 2.0.10 allows r ...jessie
CVE-2017-13745There is a reachable assertion abort in the function jpc_dec_process_s ...jessie
CVE-2017-13746There is a reachable assertion abort in the function jpc_dec_process_s ...jessie
CVE-2017-13747There is a reachable assertion abort in the function jpc_floorlog2() i ...jessie
CVE-2017-13749There is a reachable assertion abort in the function jpc_pi_nextrpcl() ...jessie
CVE-2017-13750There is a reachable assertion abort in the function jpc_dec_process_s ...jessie
CVE-2017-13751There is a reachable assertion abort in the function calcstepsizes() i ...jessie
CVE-2017-13752There is a reachable assertion abort in the function jpc_dequantize() ...jessie
CVE-2017-1000050JasPer 2.0.12 is vulnerable to a NULL pointer exception in the functio ...jessie
CVE-2018-9055JasPer 2.0.14 allows denial of service via a reachable assertion in th ...jessie
CVE-2018-9154There is a reachable abort in the function jpc_dec_process_sot in libj ...jessie
CVE-2018-9252JasPer 2.0.14 allows denial of service via a reachable assertion in th ...jessie
CVE-2022-2963A vulnerability found in jasper. This security vulnerability happens b ...jessie
jbigkitCVE-2017-9937In LibTIFF 4.0.8, there is a memory malloc failure in tif_jbig.c. A cr ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
jettyCVE-2009-3579Cross-site scripting (XSS) vulnerability in the CookieDump.java sample ...jessie
jheadCVE-2018-6612An integer underflow bug in the process_EXIF function of the exif.c fi ...jessie, stretch
CVE-2019-19035jhead 3.03 is affected by: heap-based buffer over-read. The impact is: ...buster, jessie, stretch
CVE-2019-1010301jhead 3.03 is affected by: Buffer Overflow. The impact is: Denial of s ...buster, stretch
CVE-2019-1010302jhead 3.03 is affected by: Incorrect Access Control. The impact is: De ...buster, stretch
CVE-2020-6624jhead through 3.04 has a heap-based buffer over-read in process_DQT in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-6625jhead through 3.04 has a heap-based buffer over-read in Get32s when ca ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-26208JHEAD is a simple command line tool for displaying and some manipulati ...buster, jessie, stretch
CVE-2020-28840Buffer Overflow vulnerability in jpgfile.c in Matthias-Wandel jhead ve ...bullseye, buster, jessie, stretch
CVE-2021-3496A heap-based buffer overflow was found in jhead in version 3.06 in Get ...buster, jessie, stretch
CVE-2021-28275A Denial of Service vulnerability exists in jhead 3.04 and 3.05 due to ...bullseye, buster, stretch
CVE-2021-28276A Denial of Service vulnerability exists in jhead 3.04 and 3.05 via a ...bullseye, buster, jessie, stretch
CVE-2021-28277A Heap-based Buffer Overflow vulnerabilty exists in jhead 3.04 and 3.0 ...bullseye, buster, stretch
CVE-2021-28278A Heap-based Buffer Overflow vulnerability exists in jhead 3.04 and 3. ...bullseye, buster, stretch
CVE-2024-2824A vulnerability was found in Matthias-Wandel jhead 3.08 and classified ...bookworm, bullseye, buster, sid, trixie
jinja2CVE-2019-8341An issue was discovered in Jinja2 2.10. The from_string function is pr ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
jpeg-xlCVE-2021-36691libjxl v0.5.0 is affected by a Assertion failed issue in lib/jxl/image ...bookworm, sid, trixie
jpegoptimCVE-2022-32325JPEGOPTIM v1.4.7 was discovered to contain a segmentation violation wh ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-27781jpegoptim v1.5.2 was discovered to contain a heap overflow in the opti ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
jqueryCVE-2007-2379The jQuery framework exchanges data using JavaScript Object Notation ( ...buster, jessie, stretch
CVE-2018-18405jQuery v2.2.2 allows XSS via a crafted onerror attribute of an IMG ele ...buster, jessie, stretch
jquery-goodiesCVE-2022-23395jQuery Cookie 1.4.1 is affected by prototype pollution, which can lead ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
json-glibTEMP-0772585-D41D8Cbookworm, bullseye, buster, jessie, sid, stretch, trixie
json-smartCVE-2021-31684A vulnerability was discovered in the indexOf function of JSONParserBy ...bookworm, bullseye, sid, stretch, trixie
jsonpickleCVE-2020-22083jsonpickle through 1.4.1 allows remote code execution during deseriali ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
jupyter-serverCVE-2023-49080The Jupyter Server provides the backend (i.e. the core services, APIs, ...bookworm, bullseye, sid, trixie
jythonCVE-2017-17522Lib/webbrowser.py in Python through 3.6.3 does not validate strings be ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
kde-baseappsCVE-2012-4512The CSS parser (khtml/css/cssparser.cpp) in Konqueror in KDE 4.7.3 all ...jessie, stretch
CVE-2012-4513khtml/imload/scaledimageplane.h in Konqueror in KDE 4.7.3 allows remot ...jessie, stretch
CVE-2012-4514rendering/render_replaced.cpp in Konqueror in KDE before 4.9.3 allows ...jessie, stretch
CVE-2012-4515Use-after-free vulnerability in khtml/rendering/render_replaced.cpp in ...jessie, stretch
CVE-2014-3566The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other prod ...jessie, stretch
kde4libsCVE-2009-1692WebKit before r41741, as used in Apple iPhone OS 1.0 through 2.2.1, iP ...buster, jessie, stretch
CVE-2009-1718WebKit in Apple Safari before 4.0 allows user-assisted remote attacker ...buster, jessie, stretch
CVE-2009-1724Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari bef ...buster, jessie, stretch
CVE-2009-3015QtWeb 3.0 Builds 001 and 003 does not properly block javascript: and d ...buster, jessie, stretch
CVE-2009-3272Stack consumption vulnerability in WebKit.dll in WebKit in Apple Safar ...buster, jessie, stretch
TEMP-0560108-565B70browser-based css info disclosurebuster, jessie, stretch
TEMP-0568486-B6FCB6browser javascript document.write denial-of-servicebuster, jessie, stretch
kdepimCVE-2006-7139Kmail 1.9.1 on KDE 3.5.2, with "Prefer HTML to Plain Text" enabled, al ...jessie, stretch
CVE-2007-1265KMail 1.9.5 and earlier does not properly use the --status-fd argument ...jessie, stretch
keepalivedCVE-2018-19044keepalived 2.0.8 didn't check for pathnames with symlinks when writing ...jessie, stretch
CVE-2018-19045keepalived 2.0.8 used mode 0666 when creating new temporary files upon ...jessie, stretch
CVE-2018-19046keepalived 2.0.8 didn't check for existing plain files when writing da ...jessie, stretch
keepass2CVE-2019-20184KeePass 2.4.1 allows CSV injection in the title field of a CSV export.bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-32784In KeePass 2.x before 2.54, it is possible to recover the cleartext ma ...bookworm, bullseye, buster, sid, trixie
kfreebsd-10CVE-2011-2393The Neighbor Discovery (ND) protocol implementation in the IPv6 stack ...buster, jessie, stretch
CVE-2015-1417The inet module in FreeBSD 10.2x before 10.2-PRERELEASE, 10.2-BETA2-p2 ...jessie
CVE-2015-5675The sys_amd64 IRET Handler in the kernel in FreeBSD 9.3 and 10.1 allow ...jessie
CVE-2016-1879The Stream Control Transmission Protocol (SCTP) module in FreeBSD 9.3 ...buster, jessie, stretch
CVE-2016-1880The Linux compatibility layer in the kernel in FreeBSD 9.3, 10.1, and ...jessie
CVE-2016-1881The kernel in FreeBSD 9.3, 10.1, and 10.2 allows local users to cause ...jessie
CVE-2016-1882FreeBSD 9.3 before p33, 10.1 before p26, and 10.2 before p9 allow remo ...jessie
CVE-2016-1883The issetugid system call in the Linux compatibility layer in FreeBSD ...jessie
CVE-2016-1885Integer signedness error in the amd64_set_ldt function in sys/amd64/am ...jessie
CVE-2016-1886Integer signedness error in the genkbd_commonioctl function in sys/dev ...jessie
CVE-2016-1887Integer signedness error in the sockargs function in sys/kern/uipc_sys ...jessie
CVE-2017-1081In FreeBSD before 11.0-STABLE, 11.0-RELEASE-p10, 10.3-STABLE, and 10.3 ...buster, jessie, stretch
CVE-2017-1082In FreeBSD 11.x before 11.1-RELEASE and 10.x before 10.4-RELEASE, the ...buster, jessie, stretch
CVE-2017-1083In FreeBSD before 11.2-RELEASE, a stack guard-page is available but is ...buster, jessie, stretch
CVE-2017-1084In FreeBSD before 11.2-RELEASE, multiple issues with the implementatio ...buster, jessie, stretch
CVE-2017-1085In FreeBSD before 11.2-RELEASE, an application which calls setrlimit() ...buster, jessie, stretch
CVE-2017-1086In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p4, 11.0-RELEASE-p15, 10.4 ...buster, jessie, stretch
CVE-2017-1087In FreeBSD 10.x before 10.4-STABLE, 10.4-RELEASE-p3, and 10.3-RELEASE- ...buster, jessie, stretch
CVE-2017-1088In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p4, 11.0-RELEASE-p15, 10.4 ...buster, jessie, stretch
CVE-2017-15037In FreeBSD through 11.1, the smb_strdupin function in sys/netsmb/smb_s ...buster, jessie, stretch
CVE-2018-6916In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p7, 10.4-STABLE, 10.4-RELE ...buster, jessie, stretch
CVE-2018-6917In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p9, 10.4-STABLE, 10.4-RELE ...buster, jessie, stretch
CVE-2018-6918In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p9, 10.4-STABLE, 10.4-RELE ...buster, jessie, stretch
CVE-2018-6919In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p9, 10.4-STABLE, 10.4-RELE ...buster, jessie, stretch
CVE-2018-6920In FreeBSD before 11.1-STABLE(r332303), 11.1-RELEASE-p10, 10.4-STABLE( ...buster, jessie, stretch
CVE-2018-6921In FreeBSD before 11.1-STABLE(r332066) and 11.1-RELEASE-p10, due to in ...buster, jessie, stretch
CVE-2018-6922One of the data structures that holds TCP segments in all versions of ...buster, jessie, stretch
CVE-2018-6923In FreeBSD before 11.1-STABLE, 11.2-RELEASE-p2, 11.1-RELEASE-p13, ip f ...buster, jessie, stretch
CVE-2018-6924In FreeBSD before 11.1-STABLE, 11.2-RELEASE-p3, 11.1-RELEASE-p14, 10.4 ...buster, jessie, stretch
CVE-2018-6925In FreeBSD before 11.2-STABLE(r338986), 11.2-RELEASE-p4, 11.1-RELEASE- ...buster, jessie, stretch
CVE-2018-17154In FreeBSD before 11.2-STABLE(r338987), 11.2-RELEASE-p4, and 11.1-RELE ...buster, jessie, stretch
CVE-2018-17155In FreeBSD before 11.2-STABLE(r338983), 11.2-RELEASE-p4, 11.1-RELEASE- ...buster, jessie, stretch
CVE-2018-17156In FreeBSD before 11.2-STABLE(r340268) and 11.2-RELEASE-p5, due to inc ...buster, jessie, stretch
CVE-2019-5595In FreeBSD before 11.2-STABLE(r343782), 11.2-RELEASE-p9, 12.0-STABLE(r ...buster, jessie, stretch
CVE-2019-5596In FreeBSD 11.2-STABLE after r338618 and before r343786, 12.0-STABLE b ...buster, jessie, stretch
CVE-2019-5597In FreeBSD 11.3-PRERELEASE and 12.0-STABLE before r347591, 11.2-RELEAS ...buster, jessie, stretch
CVE-2019-5598In FreeBSD 11.3-PRERELEASE before r345378, 12.0-STABLE before r345377, ...buster, jessie, stretch
CVE-2019-5601In FreeBSD 12.0-STABLE before r347474, 12.0-RELEASE before 12.0-RELEAS ...buster, jessie, stretch
CVE-2019-5602In FreeBSD 12.0-STABLE before r349628, 12.0-RELEASE before 12.0-RELEAS ...buster, jessie, stretch
CVE-2019-5603In FreeBSD 12.0-STABLE before r350261, 12.0-RELEASE before 12.0-RELEAS ...buster, jessie, stretch
CVE-2019-5605In FreeBSD 11.3-STABLE before r350217, 11.3-RELEASE before 11.3-RELEAS ...buster, jessie, stretch
CVE-2019-5606In FreeBSD 12.0-STABLE before r349805, 12.0-RELEASE before 12.0-RELEAS ...buster, jessie, stretch
CVE-2019-5609In FreeBSD 12.0-STABLE before r350619, 12.0-RELEASE before 12.0-RELEAS ...buster, jessie, stretch
CVE-2019-5611In FreeBSD 12.0-STABLE before r350828, 12.0-RELEASE before 12.0-RELEAS ...buster, jessie, stretch
CVE-2019-5612In FreeBSD 12.0-STABLE before r351264, 12.0-RELEASE before 12.0-RELEAS ...buster, jessie, stretch
CVE-2019-5614In FreeBSD 12.1-STABLE before r356035, 12.1-RELEASE before 12.1-RELEAS ...buster, jessie, stretch
CVE-2019-15874In FreeBSD 12.1-STABLE before r356035, 12.1-RELEASE before 12.1-RELEAS ...buster, jessie, stretch
CVE-2019-15875In FreeBSD 12.1-STABLE before r354734, 12.1-RELEASE before 12.1-RELEAS ...buster, jessie, stretch
CVE-2019-15878In FreeBSD 12.1-STABLE before r352509, 11.3-STABLE before r352509, and ...buster, jessie, stretch
CVE-2020-7452In FreeBSD 12.1-STABLE before r357490, 12.1-RELEASE before 12.1-RELEAS ...buster, jessie, stretch
CVE-2020-7453In FreeBSD 12.1-STABLE before r359021, 12.1-RELEASE before 12.1-RELEAS ...buster, jessie, stretch
CVE-2020-7456In FreeBSD 12.1-STABLE before r361918, 12.1-RELEASE before p6, 11.4-ST ...buster, jessie, stretch
CVE-2020-7459In FreeBSD 12.1-STABLE before r362166, 12.1-RELEASE before p8, 11.4-ST ...buster, jessie, stretch
CVE-2020-7462In 11.4-PRERELEASE before r360733 and 11.3-RELEASE before p13, imprope ...buster, jessie, stretch
CVE-2020-7463In FreeBSD 12.1-STABLE before r364644, 11.4-STABLE before r364651, 12. ...buster, jessie, stretch
CVE-2020-7464In FreeBSD 12.2-STABLE before r365730, 11.4-STABLE before r365738, 12. ...buster, jessie, stretch
CVE-2020-7469In FreeBSD 12.2-STABLE before r367402, 11.4-STABLE before r368202, 12. ...buster, jessie, stretch
CVE-2020-25578In FreeBSD 12.2-STABLE before r368969, 11.4-STABLE before r369047, 12. ...buster, jessie, stretch
CVE-2020-25579In FreeBSD 12.2-STABLE before r368969, 11.4-STABLE before r369047, 12. ...buster, jessie, stretch
CVE-2020-25581In FreeBSD 12.2-STABLE before r369312, 11.4-STABLE before r369313, 12. ...buster, jessie, stretch
CVE-2020-25582In FreeBSD 12.2-STABLE before r369334, 11.4-STABLE before r369335, 12. ...buster, jessie, stretch
CVE-2021-29626In FreeBSD 13.0-STABLE before n245117, 12.2-STABLE before r369551, 11. ...buster, jessie, stretch
CVE-2021-29632In FreeBSD 13.0-STABLE before n247428-9352de39c3dc, 12.2-STABLE before ...buster, stretch
kiwiCVE-2017-17532examples/framework/news/news3.py in Kiwi 1.9.22 does not validate stri ...bookworm, buster, jessie, sid, stretch, trixie
knot-resolverCVE-2022-32983Knot Resolver through 5.5.1 may allow DNS cache poisoning when there i ...bookworm, bullseye, buster, sid, trixie
kopano-webapp-plugin-filesCVE-2019-16774In phpfastcache before 5.1.3, there is a possible object injection vul ...buster
krb5CVE-2004-0971The krb5-send-pr script in the kerberos5 (krb5) package in Trustix Sec ...jessie
CVE-2017-15088plugins/preauth/pkinit/pkinit_crypto_openssl.c in MIT Kerberos 5 (aka ...jessie, stretch
CVE-2018-5709An issue was discovered in MIT Kerberos 5 (aka krb5) through 1.16. The ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
latex2rtfCVE-2015-8106Format string vulnerability in the CmdKeywords function in funct1.c in ...jessie
lbreakout2TEMP-0608980-E8B8DFCrash with long HOME environment variablebookworm, bullseye, buster, jessie, stretch
leocadCVE-2021-31804LeoCAD before 21.03 sometimes allows a use-after-free during the openi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
leptonlibCVE-2018-7247An issue was discovered in pixHtmlViewer in prog/htmlviewer.c in Lepto ...jessie, stretch
TEMP-0830660-09AE85Insecure use of /tmpjessie
lessCVE-2014-9488The is_utf8_well_formed function in GNU less before 475 allows remote ...jessie
libaoCVE-2017-11548The _tokenize_matrix function in audio_out.c in Xiph.Org libao 1.2.0 a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libapache-poi-javaCVE-2016-5000The XLSX2CSV example in Apache POI before 3.14 allows remote attackers ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-12415In Apache POI up to 4.1.0, when using the tool XSSFExportToXml to conv ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libavCVE-2016-7477The ff_put_pixels8_xy2_mmx function in rnd_template.c in Libav 11.7 al ...jessie
CVE-2016-7499The sbr_make_f_master function in aacsbr.c in Libav 11.7 allows remote ...jessie
CVE-2016-8676The get_vlc2 function in get_bits.h in Libav 11.9 allows remote attack ...jessie
CVE-2016-9825libswscale/utils.c in libav 11.8 allows remote attackers to cause a de ...jessie
CVE-2016-9826libavcodec/ituh263dec.c in libav 11.8 allows remote attackers to cause ...jessie
CVE-2019-9717In Libav 12.3, a denial of service in the subtitle decoder allows atta ...jessie
CVE-2019-9719A stack-based buffer overflow in the subtitle decoder in Libav 12.3 al ...jessie
CVE-2019-9720A stack-based buffer overflow in the subtitle decoder in Libav 12.3 al ...jessie
libcacaCVE-2018-20545There is an illegal WRITE memory access at common-image.c (function lo ...jessie
CVE-2018-20548There is an illegal WRITE memory access at common-image.c (function lo ...jessie
CVE-2022-0856libcaca is affected by a Divide By Zero issue via img2txt, which allow ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libcommons-collections4-javaCVE-2015-7501Red Hat JBoss A-MQ 6.x; BPM Suite (BPMS) 6.x; BRMS 6.x and 5.x; Data G ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libcommons-fileupload-javaCVE-2016-1000031Apache Commons FileUpload before 1.3.3 DiskFileItem File Manipulation ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libcrypto++CVE-2016-7420Crypto++ (aka cryptopp) through 5.6.4 does not document the requiremen ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libdata-uuid-perlCVE-2013-4184Perl module Data::UUID from CPAN version 1.219 vulnerable to symlink a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libdata-validate-ip-perlCVE-2021-29662The Data::Validate::IP module through 0.29 for Perl does not properly ...buster, jessie, stretch
libemail-address-perlCVE-2015-7686Algorithmic complexity vulnerability in Address.pm in the Email-Addres ...jessie
CVE-2018-12558The parse() method in the Email::Address module through 1.909 for Perl ...jessie
libesmtpCVE-2019-19977libESMTP through 1.0.6 mishandles domain copying into a fixed-size buf ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libfsntfsCVE-2018-11727The libfsntfs_attribute_read_from_mft function in libfsntfs_attribute. ...stretch
CVE-2018-11728The libfsntfs_reparse_point_values_read_data function in libfsntfs_rep ...stretch
CVE-2018-11729The libfsntfs_mft_entry_read_header function in libfsntfs_mft_entry.c ...stretch
CVE-2018-11730The libfsntfs_security_descriptor_values_free function in libfsntfs_se ...stretch
CVE-2018-11731The libfsntfs_mft_entry_read_attributes function in libfsntfs_mft_entr ...stretch
libfwsiCVE-2019-17263In libyal libfwsi before 20191006, libfwsi_extension_block_copy_from_b ...bookworm, bullseye, buster, sid, stretch, trixie
libgaduCVE-2013-4488libgadu before 1.12.0 does not verify X.509 certificates from SSL serv ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libgcrypt20CVE-2018-6829cipher/elgamal.c in Libgcrypt through 1.8.2, when used to encrypt mess ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libgd2CVE-2021-40145gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) throu ...bullseye, buster, jessie, stretch
libgigCVE-2018-14449An issue was discovered in libgig 4.1.0. There is an out of bounds rea ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-14450An issue was discovered in libgig 4.1.0. There is an out-of-bounds rea ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-14451An issue was discovered in libgig 4.1.0. There is a heap-based buffer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-14452An issue was discovered in libgig 4.1.0. There is an out-of-bounds rea ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-14453An issue was discovered in libgig 4.1.0. There is a heap-based buffer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-14454An issue was discovered in libgig 4.1.0. There is an out-of-bounds rea ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-14455An issue was discovered in libgig 4.1.0. There is an out-of-bounds wri ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-14456An issue was discovered in libgig 4.1.0. There is an out-of-bounds wri ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-14457An issue was discovered in libgig 4.1.0. There is an out-of-bounds wri ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-14458An issue was discovered in libgig 4.1.0. There is a heap-based buffer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-14459An issue was discovered in libgig 4.1.0. There is an out-of-bounds wri ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18192An issue was discovered in libgig 4.1.0. There is a NULL pointer deref ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18193An issue was discovered in libgig 4.1.0. There is operator new[] failu ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18194An issue was discovered in libgig 4.1.0. There is a heap-based buffer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18195An issue was discovered in libgig 4.1.0. There is an FPE (divide-by-ze ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18196An issue was discovered in libgig 4.1.0. There is a heap-based buffer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18197An issue was discovered in libgig 4.1.0. There is an operator new[] fa ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libglvndCVE-2023-45924libglxproto.c in OpenGL libglvnd bb06db5a was discovered to contain a ...bookworm, bullseye, buster, sid, trixie
libgnumail-javaCVE-2005-1105Directory traversal vulnerability in the MimeBodyPart.getFileName meth ...jessie, stretch
libheifCVE-2024-25269libheif <= 1.17.6 contains a memory leak in the function JpegEncoder:: ...bookworm, bullseye, buster, sid, trixie
libhttp-tiny-perlCVE-2023-31486HTTP::Tiny before 0.083, a Perl core module since 5.13.9 and available ...bookworm, buster, jessie, stretch
libjpegCVE-2022-31620In libjpeg before 1.64, BitStream<false>::Get in bitstream.hpp has an ...bullseye
CVE-2022-31796libjpeg 1.63 has a heap-based buffer over-read in HierarchicalBitmapRe ...bullseye
CVE-2022-32201In libjpeg 1.63, there is a NULL pointer dereference in Component::Sub ...bullseye
CVE-2022-32202In libjpeg 1.63, there is a NULL pointer dereference in LineBuffer::Fe ...bullseye
CVE-2022-32978There is an assertion failure in SingleComponentLSScan::ParseMCU in si ...bullseye
CVE-2022-35166libjpeg commit 842c7ba was discovered to contain an infinite loop via ...bookworm, bullseye, sid, trixie
CVE-2022-37768libjpeg commit 281daa9 was discovered to contain an infinite loop via ...bullseye
CVE-2022-37770libjpeg commit 281daa9 was discovered to contain a segmentation fault ...bullseye
libjpeg-turboCVE-2017-15232libjpeg-turbo 1.5.2 has a NULL Pointer Dereference in jdpostct.c and j ...buster, jessie, stretch
CVE-2018-11813libjpeg 9c has a large loop because read_pixel in rdtarga.c mishandles ...buster, jessie, stretch
CVE-2020-17541Libjpeg-turbo all version have a stack-based buffer overflow in the "t ...buster, jessie, stretch
libjpeg6bCVE-2016-3616The cjpeg utility in libjpeg allows remote attackers to cause a denial ...sid
libjs-handlebarsTEMP-0000000-345A3Bhandlebars: quoteless attributes in templates can lead to content injectionjessie, stretch
libjs-i18nextCVE-2017-16010i18next is a language translation framework. When using the .init meth ...buster, stretch
liblivemediaCVE-2019-7732In Live555 0.95, a setup packet can cause a memory leak leading to DoS ...buster, jessie, stretch
liblnkCVE-2018-12096The liblnk_data_string_get_utf8_string_size function in liblnk_data_st ...stretch
CVE-2018-12097The liblnk_location_information_read_data function in liblnk_location_ ...stretch
CVE-2018-12098The liblnk_data_block_read function in liblnk_data_block.c in liblnk t ...stretch
CVE-2019-17263In libyal libfwsi before 20191006, libfwsi_extension_block_copy_from_b ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-17264In libyal liblnk before 20191006, liblnk_location_information_read_dat ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-17401libyal liblnk 20191006 has a heap-based buffer over-read in the networ ...bookworm, bullseye, buster, sid, stretch, trixie
liblouisCVE-2023-26767Buffer Overflow vulnerability found in Liblouis v.3.24.0 allows a remo ...bookworm, bullseye, buster, stretch
CVE-2023-26768Buffer Overflow vulnerability found in Liblouis v.3.24.0 allows a remo ...bookworm, bullseye, buster, stretch
CVE-2023-26769Buffer Overflow vulnerability found in Liblouis Lou_Trace v.3.24.0 all ...bookworm, bullseye, buster, stretch
libmatioCVE-2019-20019An attempted excessive memory allocation was discovered in Mat_VarRead ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libmetadata-extractor-javaCVE-2022-24613metadata-extractor up to 2.16.0 can throw various uncaught exceptions ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2022-24614When reading a specially crafted JPEG file, metadata-extractor up to 2 ...bookworm, bullseye, buster, sid, stretch, trixie
libmspackCVE-2018-18586chmextract.c in the chmextract sample program, as distributed with lib ...jessie, stretch
libnl3CVE-2017-0553An elevation of privilege vulnerability in libnl could enable a local ...jessie
libokhttp-javaCVE-2018-20200CertificatePinner.java in OkHttp 3.x through 3.12.0 allows man-in-the- ...bookworm, bullseye, buster, sid, trixie
libopenmptCVE-2019-14382DSM in libopenmpt before 0.4.2 allows an assertion failure during file ...stretch
CVE-2019-14383J2B in libopenmpt before 0.4.2 allows an assertion failure during file ...stretch
libpam-krb5CVE-2023-3326pam_krb5 authenticates a user by essentially running kinit with the pa ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libphp-adodbCVE-2006-4976The Date Library in John Lim ADOdb Library for PHP allows remote attac ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2011-3699John Lim ADOdb Library for PHP 5.11 allows remote attackers to obtain ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libphp-phpmailerCVE-2017-11503PHPMailer 5.2.23 has XSS in the "From Email Address" and "To Email Add ...jessie, stretch
libpngCVE-2018-14048An issue has been found in libpng 1.6.34. It is a SEGV in the function ...jessie
CVE-2018-14550An issue has been found in third-party PNM decoding associated with li ...jessie
CVE-2019-6129png_create_info_struct in png.c in libpng 1.6.36 has a memory leak, as ...jessie
libpng1.6CVE-2018-14048An issue has been found in libpng 1.6.34. It is a SEGV in the function ...buster, stretch
CVE-2018-14550An issue has been found in third-party PNM decoding associated with li ...buster, stretch
CVE-2019-6129png_create_info_struct in png.c in libpng 1.6.36 has a memory leak, as ...bullseye, buster, stretch
CVE-2021-4214A heap overflow flaw was found in libpngs' pngimage.c program. This fl ...bookworm, bullseye, buster, sid, stretch, trixie
libpodofoCVE-2018-20797An issue was discovered in PoDoFo 0.9.6. There is an attempted excessi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-18972Exposure of Sensitive Information to an Unauthorized Actor in PoDoFo v ...bookworm, bullseye, buster, sid, stretch, trixie
libqbCVE-2019-12779libqb before 1.0.5 allows local users to overwrite arbitrary files via ...stretch
libquicktimeCVE-2017-12143In libquicktime 1.2.4, an allocation failure was found in the function ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-12145In libquicktime 1.2.4, an allocation failure was found in the function ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
librawCVE-2020-24890libraw 20.0 has a null pointer dereference vulnerability in parse_tiff ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
librecadCVE-2021-21897A code execution vulnerability exists in the DL_Dxf::handleLWPolylineD ...bookworm, bullseye, buster, sid, trixie
CVE-2023-30259A Buffer Overflow vulnerability in importshp plugin in LibreCAD 2.2.0 ...bookworm, bullseye, buster, jessie, stretch
libreofficeCVE-2012-5639LibreOffice and OpenOffice automatically open embedded contentbookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-10583An information disclosure vulnerability occurs when LibreOffice 6.0.3 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libreswanCVE-2018-5389The Internet Key Exchange v1 main mode is vulnerable to offline dictio ...bookworm, bullseye, buster, sid
libsassCVE-2019-18797LibSass 3.6.1 has uncontrolled recursion in Sass::Eval::operator()(Sas ...bookworm, bullseye, buster, sid, stretch, trixie
libseccompCVE-2019-9893libseccomp before 2.4.0 did not correctly generate 64-bit syscall argu ...buster, jessie, stretch
libsixelCVE-2019-11024The load_pnm function in frompnm.c in libsixel.a in libsixel 1.8.2 has ...buster, jessie, stretch
libslf4j-javaCVE-2018-8088org.slf4j.ext.EventData in the slf4j-ext module in QOS.CH SLF4J before ...jessie, stretch
libslirpCVE-2020-7211tftp.c in libslirp 4.1.0, as used in QEMU 4.2.0, does not prevent ..\ ...bookworm, bullseye, sid, trixie
libsndfileCVE-2018-13139A stack-based buffer overflow in psf_memset in common.c in libsndfile ...stretch
CVE-2018-19432An issue was discovered in libsndfile 1.0.28. There is a NULL pointer ...stretch
libsolvCVE-2018-20534There is an illegal address access at ext/testcase.c in libsolv.a in l ...buster, jessie, stretch
CVE-2021-3200Buffer overflow vulnerability in libsolv 2020-12-13 via the Solver * t ...buster, jessie, stretch
CVE-2021-44568Two heap-overflow vulnerabilities exist in openSUSE/libsolv libsolv th ...buster, jessie, stretch
libspiroCVE-2019-19847Libspiro through 20190731 has a stack-based buffer overflow in the spi ...buster, stretch
libspring-javaCVE-2016-1000027Pivotal Spring Framework through 5.3.16 suffers from a potential remot ...jessie
CVE-2020-5421In Spring Framework versions 5.2.0 - 5.2.8, 5.1.0 - 5.1.17, 5.0.0 - 5. ...buster, jessie, stretch
CVE-2021-22060In Spring Framework versions 5.3.0 - 5.3.13, 5.2.0 - 5.2.18, and older ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-22096In Spring Framework versions 5.3.0 - 5.3.10, 5.2.0 - 5.2.17, and older ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-22950n Spring Framework versions 5.3.0 - 5.3.16 and older unsupported versi ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2022-22965A Spring MVC or Spring WebFlux application running on JDK 9+ may be vu ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2022-22968In Spring Framework versions 5.3.0 - 5.3.18, 5.2.0 - 5.2.20, and older ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2022-22970In spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupp ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2022-22971In spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupp ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2023-20860Spring Framework running version 6.0.0 - 6.0.6 or 5.3.0 - 5.3.25 using ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-20861In Spring Framework versions 6.0.0 - 6.0.6, 5.3.0 - 5.3.25, 5.2.0.RELE ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-20863In spring framework versions prior to 5.2.24 release+ ,5.3.27+ and 6.0 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2024-22243Applications that use UriComponentsBuilderto parse an externally provi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2024-22259Applications that use UriComponentsBuilder in Spring Frameworkto parse ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2024-22262Applications that use UriComponentsBuilderto parse an externally provi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libstbCVE-2022-27938stb_image.h (aka the stb image loader) 2.19, as used in libsixel and o ...bookworm, bullseye, buster, sid, trixie
CVE-2022-28048STB v2.27 was discovered to contain an integer shift of invalid size i ...bookworm, bullseye, buster
libtasn1-6CVE-2018-1000654GNU Libtasn1-4.13 libtasn1-4.13 version libtasn1-4.13, libtasn1-4.12 c ...buster, jessie, stretch
libuvCVE-2014-9748The uv_rwlock_t fallback implementation for Windows XP and Server 2003 ...jessie
libuv1CVE-2020-8252The implementation of realpath in libuv < 10.22.1, < 12.18.4, and < 14 ...buster
libv8-3.14CVE-2013-2632Google V8 before 3.17.13, as used in Google Chrome before 27.0.1444.3, ...jessie, stretch
CVE-2013-2838Google V8, as used in Google Chrome before 27.0.1453.93, allows remote ...jessie, stretch
CVE-2013-2882Google V8, as used in Google Chrome before 28.0.1500.95, allows remote ...jessie, stretch
CVE-2013-2919Google V8, as used in Google Chrome before 30.0.1599.66, allows remote ...jessie, stretch
CVE-2013-6638Multiple buffer overflows in runtime.cc in Google V8 before 3.22.24.7, ...jessie, stretch
CVE-2013-6649Use-after-free vulnerability in the RenderSVGImage::paint function in ...jessie, stretch
CVE-2013-6650The StoreBuffer::ExemptPopularPages function in store-buffer.cc in Goo ...jessie, stretch
CVE-2013-6668Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, a ...jessie, stretch
CVE-2014-1704Multiple unspecified vulnerabilities in Google V8 before 3.23.17.18, a ...jessie, stretch
CVE-2014-1705Google V8, as used in Google Chrome before 33.0.1750.152 on OS X and L ...jessie, stretch
CVE-2014-1716Cross-site scripting (XSS) vulnerability in the Runtime_SetPrototype f ...jessie, stretch
CVE-2014-1717Google V8, as used in Google Chrome before 34.0.1847.116, does not pro ...jessie, stretch
CVE-2014-1729Multiple unspecified vulnerabilities in Google V8 before 3.24.35.22, a ...jessie, stretch
CVE-2014-1730Google V8, as used in Google Chrome before 34.0.1847.131 on Windows an ...jessie, stretch
CVE-2014-1735Multiple unspecified vulnerabilities in Google V8 before 3.24.35.33, a ...jessie, stretch
CVE-2014-1736Integer overflow in api.cc in Google V8, as used in Google Chrome befo ...jessie, stretch
CVE-2014-3152Integer underflow in the LCodeGen::PrepareKeyedOperand function in arm ...jessie, stretch
CVE-2014-3188Google Chrome before 38.0.2125.101 and Chrome OS before 38.0.2125.101 ...jessie, stretch
CVE-2014-3195Google V8, as used in Google Chrome before 38.0.2125.101, does not pro ...jessie, stretch
CVE-2014-3199The wrap function in bindings/core/v8/custom/V8EventCustom.cpp in the ...jessie, stretch
CVE-2014-7192Eval injection vulnerability in index.js in the syntax-error package b ...jessie, stretch
CVE-2014-7927The SimplifiedLowering::DoLoadBuffer function in compiler/simplified-l ...jessie, stretch
CVE-2014-7928hydrogen.cc in Google V8, as used Google Chrome before 40.0.2214.91, d ...jessie, stretch
CVE-2014-7931factory.cc in Google V8, as used in Google Chrome before 40.0.2214.91, ...jessie, stretch
CVE-2014-7939Google Chrome before 40.0.2214.91, when the Harmony proxy in Google V8 ...jessie, stretch
CVE-2014-7967Multiple unspecified vulnerabilities in Google V8 before 3.28.71.15, a ...jessie, stretch
CVE-2015-1230The getHiddenProperty function in bindings/core/v8/V8EventListenerList ...jessie, stretch
CVE-2015-1290The Google V8 engine, as used in Google Chrome before 44.0.2403.89 and ...jessie, stretch
CVE-2015-1304object-observe.js in Google V8, as used in Google Chrome before 45.0.2 ...jessie, stretch
CVE-2015-1346Multiple unspecified vulnerabilities in Google V8 before 3.30.33.15, a ...jessie, stretch
CVE-2015-2238Multiple unspecified vulnerabilities in Google V8 before 4.1.0.21, as ...jessie, stretch
CVE-2015-3333Multiple unspecified vulnerabilities in Google V8 before 4.2.77.14, as ...jessie, stretch
CVE-2015-3336Google Chrome before 42.0.2311.90 does not always ask the user before ...jessie, stretch
CVE-2015-6764The BasicJsonStringifier::SerializeJSArray function in json-stringifie ...jessie, stretch
CVE-2015-6771js/array.js in Google V8, as used in Google Chrome before 47.0.2526.73 ...jessie, stretch
CVE-2015-6774Use-after-free vulnerability in the GetLoadTimes function in renderer/ ...jessie, stretch
libvncserverCVE-2019-15680TightVNC code version 1.3.10 contains null pointer dereference in Hand ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libvpxCVE-2015-1258Google Chrome before 43.0.2357.65 relies on libvpx code that was not b ...jessie
CVE-2015-4506Buffer overflow in the vp9_init_context_buffers function in libvpx, as ...jessie
CVE-2017-0641A remote denial of service vulnerability in libvpx in Mediaserver coul ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libvtermCVE-2018-20786libvterm through 0+bzr726, as used in Vim and other products, mishandl ...bookworm, bullseye, buster, sid, stretch, trixie
libwebpCVE-2016-9085Multiple integer overflows in libwebp allows attackers to have unspeci ...jessie
libwmfCVE-2007-3476Array index error in gd_gif_in.c in the GD Graphics Library (libgd) be ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2007-3477The (a) imagearc and (b) imagefilledarc functions in GD Graphics Libra ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2007-3996Multiple integer overflows in libgd in PHP before 5.2.4 allow remote a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2009-3546The _gdGetColors function in gd_gd.c in PHP 5.2.11 and 5.3.x before 5. ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
TEMP-0601525-BEBB65libgd2: gdImageColorTransparent can write outside bufferbookworm, bullseye, buster, jessie, sid, stretch, trixie
libxerces2-javaCVE-2012-0881Apache Xerces2 Java Parser before 2.12.0 allows remote attackers to ca ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libxfont1CVE-2017-13720In the PatternMatch function in fontfile/fontdir.c in libXfont through ...stretch
CVE-2017-13722In the pcfGetProperties function in bitmap/pcfread.c in libXfont throu ...stretch
CVE-2017-16611In libXfont before 1.5.4 and libXfont2 before 2.0.3, a local attacker ...stretch
libxsltCVE-2015-9019In libxslt 1.1.29 and earlier, the EXSLT math.random function was not ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
libxsmmCVE-2018-20543There is an attempted excessive memory allocation at libxsmm_sparse_cs ...bookworm, sid, trixie
libxstream-javaCVE-2022-40151Those using Xstream to seralize XML data may be vulnerable to Denial o ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
liloCVE-2008-3895LILO 22.6.1 and earlier stores pre-boot authentication passwords in th ...buster, jessie, stretch
links2CVE-2017-11114The put_chars function in html_r.c in Twibright Links 2.14 allows remo ...jessie, stretch
linuxCVE-2004-0230TCP, when using a large Window Size, makes it easier for remote attack ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2005-3660Linux kernel 2.4 and 2.6 allows attackers to cause a denial of service ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2007-3719The process scheduler in the Linux kernel 2.6.16 gives preference to " ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2008-2544Mounting /proc filesystem via chroot command silently mounts it in rea ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2008-4609The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2010-4563The Linux kernel, when using IPv6, allows remote attackers to determin ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2010-5321Memory leak in drivers/media/video/videobuf-core.c in the videobuf sub ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2011-4915fs/proc/base.c in the Linux kernel through 3.1 allows local users to o ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2011-4916Linux kernel through 3.1 allows local users to obtain sensitive keystr ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2011-4917In the Linux kernel through 3.1 there is an information disclosure iss ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2012-4542block/scsi_ioctl.c in the Linux kernel through 3.8 does not properly c ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2014-3180In kernel/compat.c in the Linux kernel before 3.17, as used in Google ...jessie
CVE-2014-9892The snd_compr_tstamp function in sound/core/compress_offload.c in the ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2014-9900The ethtool_get_wol function in net/core/ethtool.c in the Linux kernel ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2015-2877Kernel Samepage Merging (KSM) in the Linux kernel 2.6.32 through 4.x d ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2015-4001Integer signedness error in the oz_hcd_get_desc_cnf function in driver ...jessie
CVE-2015-4002drivers/staging/ozwpan/ozusbsvc1.c in the OZWPAN driver in the Linux k ...jessie
CVE-2015-4003The oz_usb_handle_ep_data function in drivers/staging/ozwpan/ozusbsvc1 ...jessie
CVE-2015-4004The OZWPAN driver in the Linux kernel through 4.0.5 relies on an untru ...jessie
CVE-2015-7837The Linux kernel, as used in Red Hat Enterprise Linux 7, kernel-rt, an ...jessie
CVE-2015-7885The dgnc_mgmt_ioctl function in drivers/staging/dgnc/dgnc_mgmt.c in th ...jessie
CVE-2015-8967arch/arm64/kernel/sys.c in the Linux kernel before 4.0 allows local us ...jessie
CVE-2016-3857The kernel in Android before 2016-08-05 on Nexus 7 (2013) devices allo ...jessie
CVE-2016-8660The XFS subsystem in the Linux kernel through 4.8.2 allows local users ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2016-9120Race condition in the ion_ioctl function in drivers/staging/android/io ...jessie
CVE-2016-10723An issue was discovered in the Linux kernel through 4.17.2. Since the ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2017-0630An information disclosure vulnerability in the kernel trace subsystem ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2017-9984The snd_msnd_interrupt function in sound/isa/msnd/msnd_pinnacle.c in t ...jessie
CVE-2017-9985The snd_msndmidi_input_read function in sound/isa/msnd/msnd_midi.c in ...jessie
CVE-2017-9986The intr function in sound/oss/msnd_pinnacle.c in the Linux kernel thr ...jessie, stretch
CVE-2017-11472The acpi_ns_terminate() function in drivers/acpi/acpica/nsutils.c in t ...jessie, stretch
CVE-2017-12762In /drivers/isdn/i4l/isdn_net.c: A user-controlled buffer is copied in ...jessie, stretch
CVE-2017-13693The acpi_ds_create_operands() function in drivers/acpi/acpica/dsutils. ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-13694The acpi_ps_complete_final_op() function in drivers/acpi/acpica/psobje ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-13695The acpi_ns_evaluate() function in drivers/acpi/acpica/nseval.c in the ...jessie, stretch
CVE-2017-18255The perf_cpu_time_max_percent_handler function in kernel/events/core.c ...jessie
CVE-2018-1121procps-ng, procps is vulnerable to a process hiding through race condi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-8043The unimac_mdio_probe function in drivers/net/phy/mdio-bcm-unimac.c in ...stretch
CVE-2018-9465In task_get_unused_fd_flags of binder.c, there is a possible memory co ...jessie
CVE-2018-17977The Linux kernel 4.14.67 mishandles certain interaction among XFRM Net ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2018-20669An issue where a provided address with access_ok() is not checked was ...jessie, stretch
CVE-2019-11191The Linux kernel through 5.0.7, when CONFIG_IA32_AOUT is enabled and i ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-12378An issue was discovered in ip6_ra_control in net/ipv6/ipv6_sockglue.c ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-12379An issue was discovered in con_insert_unipair in drivers/tty/vt/consol ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-12380**DISPUTED** An issue was discovered in the efi subsystem in the Linux ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-12381An issue was discovered in ip_ra_control in net/ipv4/ip_sockglue.c in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-12382An issue was discovered in drm_load_edid_firmware in drivers/gpu/drm/d ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-12455An issue was discovered in sunxi_divs_clk_setup in drivers/clk/sunxi/c ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-12456An issue was discovered in the MPT3COMMAND case in _ctl_ioctl_main in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-12614An issue was discovered in dlpar_parse_cc_property in arch/powerpc/pla ...jessie
CVE-2019-12615An issue was discovered in get_vdev_port_node_info in arch/sparc/kerne ...buster, jessie, stretch
CVE-2019-16229drivers/gpu/drm/amd/amdkfd/kfd_interrupt.c in the Linux kernel 5.2.14 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-16230drivers/gpu/drm/radeon/radeon_display.c in the Linux kernel 5.2.14 doe ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-16231drivers/net/fjes/fjes_main.c in the Linux kernel 5.2.14 does not check ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-16232drivers/net/wireless/marvell/libertas/if_sdio.c in the Linux kernel 5. ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-16233drivers/scsi/qla2xxx/qla_os.c in the Linux kernel 5.2.14 does not chec ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-16234drivers/net/wireless/intel/iwlwifi/pcie/trans.c in the Linux kernel 5. ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-18808A memory leak in the ccp_run_sha_cmd() function in drivers/crypto/ccp/ ...jessie, stretch
CVE-2019-19046A memory leak in the __ipmi_bmc_register() function in drivers/char/ip ...jessie, stretch
CVE-2019-19049A memory leak in the unittest_data_add() function in drivers/of/unitte ...jessie
CVE-2019-19054A memory leak in the cx23888_ir_probe() function in drivers/media/pci/ ...jessie, stretch
CVE-2019-19060A memory leak in the adis_update_scan_mode() function in drivers/iio/i ...jessie, stretch
CVE-2019-19061A memory leak in the adis_update_scan_mode_burst() function in drivers ...jessie, stretch
CVE-2019-19063Two memory leaks in the rtl_usb_probe() function in drivers/net/wirele ...jessie
CVE-2019-19064A memory leak in the fsl_lpspi_probe() function in drivers/spi/spi-fsl ...buster, jessie, stretch
CVE-2019-19067Four memory leaks in the acp_hw_init() function in drivers/gpu/drm/amd ...jessie, stretch
CVE-2019-19070A memory leak in the spi_gpio_probe() function in drivers/spi/spi-gpio ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-19075A memory leak in the ca8210_probe() function in drivers/net/ieee802154 ...jessie, stretch
CVE-2019-19083Memory leaks in *clock_source_create() functions under drivers/gpu/drm ...buster
CVE-2019-19378In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image ...bookworm, bullseye, buster, sid, trixie
CVE-2020-0432In skb_to_mamac of networking.c, there is a possible out of bounds wri ...jessie
CVE-2020-11725snd_ctl_elem_add in sound/core/control.c in the Linux kernel through 5 ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2020-12656gss_mech_free in net/sunrpc/auth_gss/gss_mech_switch.c in the rpcsec_g ...jessie
CVE-2020-12912A potential vulnerability in the AMD extension to Linux "hwmon" servic ...jessie
CVE-2020-14331A flaw was found in the Linux kernel\u2019s implementation of the inve ...jessie
CVE-2020-27820A vulnerability was found in Linux kernel, where a use-after-frees in ...buster, stretch
CVE-2020-35501A flaw was found in the Linux kernels implementation of audit rules, w ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-0929In ion_dma_buf_end_cpu_access and related functions of ion.c, there is ...buster, jessie, stretch
CVE-2021-0938In memzero_explicit of compiler-clang.h, there is a possible bypass of ...jessie
CVE-2021-3178fs/nfsd/nfs3xdr.c in the Linux kernel through 5.10.8, when there is an ...jessie
CVE-2021-3543A flaw null pointer dereference in the Nitro Enclaves kernel driver wa ...jessie
CVE-2021-3714A flaw was found in the Linux kernels memory deduplication mechanism. ...bookworm, bullseye, buster, sid, trixie
CVE-2021-3736A flaw was found in the Linux kernel. A memory leak problem was found ...jessie
CVE-2021-4202A use-after-free flaw was found in nci_request in net/nfc/nci/core.c i ...jessie
CVE-2021-26934An issue was discovered in the Linux kernel 4.18 through 5.10.16, as u ...bookworm, bullseye, buster, jessie, sid, trixie
CVE-2021-28039An issue was discovered in the Linux kernel 5.9.x through 5.11.3, as u ...jessie
CVE-2021-29266An issue was discovered in the Linux kernel before 5.11.9. drivers/vho ...jessie
CVE-2021-32078An Out-of-Bounds Read was discovered in arch/arm/mach-footbridge/perso ...bullseye, buster, jessie, stretch
CVE-2021-38204drivers/usb/host/max3421-hcd.c in the Linux kernel before 5.13.6 allow ...jessie
CVE-2021-45100The ksmbd server through 3.4.2, as used in the Linux kernel through 5. ...jessie
CVE-2022-0400An out-of-bounds read vulnerability was discovered in linux kernel in ...bookworm, bullseye, buster, sid, trixie
CVE-2022-0998An integer overflow flaw was found in the Linux kernel\u2019s virtio d ...jessie
CVE-2022-1247An issue found in linux-kernel that leads to a race condition in rose_ ...bookworm, bullseye, buster, sid, trixie
CVE-2022-1516A NULL pointer dereference flaw was found in the Linux kernel\u2019s X ...jessie
CVE-2022-1734A flaw in Linux Kernel found in nfcmrvl_nci_unregister_dev() in driver ...jessie
CVE-2022-1973A use-after-free flaw was found in the Linux kernel in log_replay in f ...jessie
CVE-2022-2961A use-after-free flaw was found in the Linux kernel\u2019s PLP Rose fu ...bookworm, bullseye, buster, sid, trixie
CVE-2022-2991A heap-based buffer overflow was found in the Linux kernel's LightNVM ...jessie, stretch
CVE-2022-3238A double-free flaw was found in the Linux kernel\u2019s NTFS3 subsyste ...bookworm, jessie, sid, stretch, trixie
CVE-2022-4842A flaw NULL Pointer Dereference in the Linux kernel NTFS3 driver funct ...jessie, stretch
CVE-2022-25265In the Linux kernel through 5.16.10, certain binary files may have the ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2022-26878drivers/bluetooth/virtio_bt.c in the Linux kernel before 5.16.3 has a ...jessie
CVE-2022-32981An issue was discovered in the Linux kernel through 5.18.3 on powerpc ...stretch
CVE-2022-41848drivers/char/pcmcia/synclink_cs.c in the Linux kernel through 5.19.12 ...bookworm, bullseye, buster, sid, trixie
CVE-2022-44032An issue was discovered in the Linux kernel through 6.0.6. drivers/cha ...bookworm, bullseye, buster, sid, trixie
CVE-2022-44033An issue was discovered in the Linux kernel through 6.0.6. drivers/cha ...bookworm, bullseye, buster, sid, trixie
CVE-2022-44034An issue was discovered in the Linux kernel through 6.0.6. drivers/cha ...bookworm, bullseye, buster
CVE-2022-45884An issue was discovered in the Linux kernel through 6.0.9. drivers/med ...bookworm, bullseye, buster, sid, trixie
CVE-2022-45885An issue was discovered in the Linux kernel through 6.0.9. drivers/med ...bookworm, bullseye, buster, sid, trixie
CVE-2022-45888An issue was discovered in the Linux kernel through 6.0.9. drivers/cha ...bookworm
CVE-2022-48423In the Linux kernel before 6.1.3, fs/ntfs3/record.c does not validate ...jessie, stretch
CVE-2022-48424In the Linux kernel before 6.1.3, fs/ntfs3/inode.c does not validate t ...jessie, stretch
CVE-2022-48425In the Linux kernel through 6.2.7, fs/ntfs3/inode.c has an invalid kfr ...jessie, stretch
CVE-2022-48502An issue was discovered in the Linux kernel before 6.2. The ntfs3 subs ...jessie, stretch
CVE-2023-3640A possible unauthorized memory access flaw was found in the Linux kern ...bookworm, bullseye, buster, sid, trixie
CVE-2023-4134Input: cyttsp4_core - change del_timer_sync() to timer_shutdown_sync()bookworm, bullseye, buster, jessie, stretch
CVE-2023-6610An out-of-bounds read vulnerability was found in smb2_dump_detail in f ...bullseye, buster
CVE-2023-22995In the Linux kernel before 5.17, an error path in dwc3_qcom_acpi_regis ...bullseye
CVE-2023-23000In the Linux kernel before 5.17, drivers/phy/tegra/xusb.c mishandles t ...bullseye, buster
CVE-2023-23003In the Linux kernel before 5.16, tools/perf/util/expr.c lacks a check ...bullseye, buster
CVE-2023-23039An issue was discovered in the Linux kernel through 6.2.0-rc2. drivers ...bookworm, bullseye, buster, sid, trixie
CVE-2023-26242afu_mmio_region_get_by_offset in drivers/fpga/dfl-afu-region.c in the ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-26544In the Linux kernel 6.0.8, there is a use-after-free in run_unpack in ...jessie, stretch
CVE-2023-26606In the Linux kernel 6.0.8, there is a use-after-free in ntfs_trim_fs i ...jessie, stretch
CVE-2023-30772The Linux kernel before 6.2.9 has a race condition and resultant use-a ...jessie, stretch
CVE-2023-31081An issue was discovered in drivers/media/test-drivers/vidtv/vidtv_brid ...bookworm, bullseye, sid, trixie
CVE-2023-31085An issue was discovered in drivers/mtd/ubi/cdev.c in the Linux kernel ...bookworm, bullseye, buster, sid, trixie
CVE-2023-35828An issue was discovered in the Linux kernel before 6.3.2. A use-after- ...jessie, stretch
CVE-2023-39191An improper input validation flaw was found in the eBPF subsystem in t ...bookworm, jessie, stretch
TEMP-0000000-F7A20FKernel: Unprivileged user can freeze journaldbookworm, bullseye, buster, jessie, sid, stretch, trixie
lldpadCVE-2018-10932lldptool version 1.0.1 and older can print a raw, unsanitized attacker ...stretch
llvm-toolchain-13CVE-2023-29932llvm-project commit fdbc55a5 was discovered to contain a segmentation ...bookworm, bullseye, buster
CVE-2023-29933llvm-project commit bd456297 was discovered to contain a segmentation ...bookworm, bullseye, buster
CVE-2023-29934llvm-project commit 6c01b5c was discovered to contain a segmentation f ...bookworm, bullseye, buster
CVE-2023-29935llvm-project commit a0138390 was discovered to contain an assertion fa ...bookworm, bullseye, buster
CVE-2023-29939llvm-project commit a0138390 was discovered to contain a segmentation ...bookworm, bullseye, buster
CVE-2023-29941llvm-project commit a0138390 was discovered to contain a segmentation ...bookworm, bullseye, buster
CVE-2023-29942llvm-project commit a0138390 was discovered to contain a segmentation ...bookworm, bullseye, buster
llvm-toolchain-14CVE-2023-26924LLVM a0dab4950 has a segmentation fault in mlir::outlineSingleBlockReg ...bookworm, sid
CVE-2023-29932llvm-project commit fdbc55a5 was discovered to contain a segmentation ...bookworm
CVE-2023-29933llvm-project commit bd456297 was discovered to contain a segmentation ...bookworm, sid
CVE-2023-29934llvm-project commit 6c01b5c was discovered to contain a segmentation f ...bookworm
CVE-2023-29935llvm-project commit a0138390 was discovered to contain an assertion fa ...bookworm, sid
CVE-2023-29939llvm-project commit a0138390 was discovered to contain a segmentation ...bookworm
CVE-2023-29941llvm-project commit a0138390 was discovered to contain a segmentation ...bookworm, sid
CVE-2023-29942llvm-project commit a0138390 was discovered to contain a segmentation ...bookworm, sid
llvm-toolchain-15CVE-2023-26924LLVM a0dab4950 has a segmentation fault in mlir::outlineSingleBlockReg ...bookworm, sid, trixie
CVE-2023-29932llvm-project commit fdbc55a5 was discovered to contain a segmentation ...bookworm
CVE-2023-29933llvm-project commit bd456297 was discovered to contain a segmentation ...bookworm
CVE-2023-29934llvm-project commit 6c01b5c was discovered to contain a segmentation f ...bookworm
CVE-2023-29935llvm-project commit a0138390 was discovered to contain an assertion fa ...bookworm, sid, trixie
CVE-2023-29939llvm-project commit a0138390 was discovered to contain a segmentation ...bookworm
CVE-2023-29941llvm-project commit a0138390 was discovered to contain a segmentation ...bookworm, sid, trixie
CVE-2023-29942llvm-project commit a0138390 was discovered to contain a segmentation ...bookworm, sid, trixie
log4cxxCVE-2023-31038SQL injection in Log4cxx when using the ODBC appender to send log mess ...bookworm, bullseye, buster, jessie, stretch
loguruCVE-2022-0338Insertion of Sensitive Information into Log File in Conda loguru prior ...bookworm, sid, trixie
lrzipCVE-2019-10654The lzo1x_decompress function in liblzo2.so.2 in LZO 2.10, as used in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33451An issue was discovered in lrzip version 0.641. There are memory leaks ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33453An issue was discovered in lrzip version 0.641. There is a use-after-f ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-33067Lrzip v0.651 was discovered to contain multiple invalid arithmetic shi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
lua-cgiCVE-2014-2875The session.lua library in CGILua 5.2 alpha 1 and 5.2 alpha 2 uses wea ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
luajitCVE-2019-19391In LuaJIT through 2.0.5, as used in Moonjit before 2.1.2 and other pro ...bullseye, buster, jessie, stretch
CVE-2020-15890LuaJit through 2.1.0-beta3 has an out-of-bounds read because __gc hand ...bullseye, buster
CVE-2020-24372LuaJIT through 2.1.0-beta3 has an out-of-bounds read in lj_err_run in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
lucene-solrCVE-2017-3164Server Side Request Forgery in Apache Solr, versions 1.3 until 7.6 (in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-17558Apache Solr 5.0.0 to Apache Solr 8.3.1 are vulnerable to a Remote Code ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
lxcCVE-2019-5736runc through 1.0-rc6, as used in Docker before 18.09.2 and other produ ...jessie, stretch
lxc-templatesCVE-2017-18641In LXC 2.0, many template scripts download code over cleartext HTTP, a ...bookworm, bullseye, buster, sid, trixie
lynisCVE-2017-8108Unspecified tests in Lynis before 2.5.0 allow local users to write to ...jessie, stretch
CVE-2019-13033In CISOfy Lynis 2.x through 2.7.5, the license key can be obtained by ...buster, stretch
CVE-2020-13882CISOfy Lynis before 3.0.0 has Incorrect Access Control because of a TO ...buster, jessie, stretch
m2cryptoCVE-2009-0127M2Crypto does not properly check the return value from the OpenSSL EVP ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
m4CVE-2008-1687The (1) maketemp and (2) mkstemp builtin functions in GNU m4 before 1. ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2008-1688Unspecified vulnerability in GNU m4 before 1.4.11 might allow context- ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
magpierssCVE-2006-4735Kellan Elliott-McCrea MagpieRSS allows remote attackers to obtain sens ...buster, jessie, stretch
maildirsyncCVE-2008-5150sample.sh in maildirsync 1.1 allows local users to append data to arbi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
mailutilsCVE-2019-18862maidag in GNU Mailutils before 3.8 is installed setuid and allows loca ...jessie, stretch
mapcacheCVE-2019-20005An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20006An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20007An issue was discovered in ezXML 0.8.2 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20198An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20199An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20200An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20201An issue was discovered in ezXML 0.8.3 through 0.8.6. The ezxml_parse_ ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20202An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-26220The ezxml_toxml function in ezxml 0.8.6 and earlier is vulnerable to O ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-26221The ezxml_new function in ezXML 0.8.6 and earlier is vulnerable to OOB ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-26222The ezxml_new function in ezXML 0.8.6 and earlier is vulnerable to OOB ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-30485An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-31229An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-31347An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-31348An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-31598An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2022-30045An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezx ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
matanzaCVE-2009-3560The big2_toUtf8 function in lib/xmltok.c in libexpat in Expat 2.0.1, a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2009-3720The updatePosition function in lib/xmltok_impl.c in libexpat in Expat ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
mathtexCVE-2023-51890An infinite loop issue discovered in Mathtex 1.05 and before allows a ...bookworm, bullseye, buster, sid, trixie
mbedtlsCVE-2018-1000520ARM mbedTLS version 2.7.0 and earlier contains a Ciphersuite Allows In ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2023-43615Mbed TLS 2.x before 2.28.5 and 3.x before 3.5.0 has a Buffer Overflow.bookworm, bullseye, buster, sid, stretch, trixie
mcCVE-2023-45925GNU Midnight Commander 4.8.29-146-g299d9a2fb was discovered to contain ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
mcollectiveCVE-2014-0175mcollective has a default password set at installbookworm, bullseye, buster, jessie, sid, trixie
mdadmCVE-2014-5220The mdcheck script of the mdadm package for openSUSE 13.2 prior to ver ...jessie
CVE-2023-28938Uncontrolled resource consumption in some Intel(R) SSD Tools software ...bullseye, buster, jessie, stretch
mediaelementCVE-2016-4567Cross-site scripting (XSS) vulnerability in flash/FlashMediaElement.as ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
mediawikiCVE-2020-36649A vulnerability was found in mholt PapaParse up to 5.1.x. It has been ...stretch
mediawiki-extensionsCVE-2013-4305Cross-site scripting (XSS) vulnerability in contrib/example.php in the ...jessie
mensisCVE-2017-17534uiutil.c in Mensis 0.0.080507 does not validate strings before launchi ...jessie
mercurialCVE-2018-17983cext/manifest.c in Mercurial before 4.7.2 has an out-of-bounds read du ...stretch
mesaCVE-2023-45913Mesa v23.0.4 was discovered to contain a NULL pointer dereference via ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-45919Mesa 23.0.4 was discovered to contain a buffer over-read in glXQuerySe ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-45922glx_pbuffer.c in Mesa 23.0.4 was discovered to contain a segmentation ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-45931Mesa 23.0.4 was discovered to contain a NULL pointer dereference in ch ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
metviewCVE-2017-17515etc/ObjectList in Metview 4.7.3 does not validate strings before launc ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
mgettyCVE-2018-16742An issue was discovered in mgetty before 1.2.1. In contrib/scrts.c, a ...jessie, stretch
CVE-2018-16743An issue was discovered in mgetty before 1.2.1. In contrib/next-login/ ...jessie, stretch
mh-bookCVE-2008-5152inmail-show in mh-book 200605 allows local users to overwrite arbitrar ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
midoriCVE-2012-2132libsoup 2.32.2 and earlier does not validate certificates or clear the ...bullseye, buster, stretch
CVE-2014-3566The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other prod ...bullseye, buster, stretch
milkytrackerCVE-2022-34927MilkyTracker v1.03.00 was discovered to contain a stack overflow via t ...bookworm, bullseye, buster
mingw-w64CVE-2018-5392mingw-w64 version 5.0.4 by default produces executables that opt in to ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
mini-httpdCVE-2009-4490mini_httpd 1.19 writes data to a log file without sanitizing non-print ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2017-17663The htpasswd implementation of mini_httpd before v1.28 and of thttpd b ...bookworm, bullseye, buster, sid, stretch, trixie
minidjvuCVE-2017-12441The row_is_empty function in base/4bitmap.c:274 in minidjvu 0.8 can ca ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-12442The row_is_empty function in base/4bitmap.c:272 in minidjvu 0.8 can ca ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-12443The mdjvu_bitmap_pack_row function in base/4bitmap.c in minidjvu 0.8 c ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-12444The mdjvu_bitmap_get_bounding_box function in base/4bitmap.c in minidj ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-12445The JB2BitmapCoder::code_row_by_refinement function in jb2/bmpcoder.cp ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
minidlnaCVE-2023-47430Stack-buffer-overflow vulnerability in ReadyMedia (MiniDLNA) v1.3.3 al ...bookworm, bullseye, buster, sid, trixie
miniupnpcCVE-2017-1000494Uninitialized stack variable vulnerability in NameValueParserEndElt (u ...jessie, stretch
minizincCVE-2023-46046An issue in MiniZinc before 2.8.0 allows a NULL pointer dereference vi ...bookworm, bullseye, buster, stretch
modsecurity-crsCVE-2019-11387An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) throu ...buster, jessie
CVE-2019-11388An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) throu ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-11389An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) throu ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-11390An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) throu ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-11391An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) throu ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
moinCVE-2007-0902Unspecified vulnerability in the "Show debugging information" feature ...buster, jessie, stretch
mojarraCVE-2010-2087Oracle Mojarra 1.2_14 and 2.0.2, as used in IBM WebSphere Application ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
mongodbCVE-2015-2327PCRE before 8.36 mishandles the /(((a\2)|(a*)\g<-1>))*/ pattern and re ...jessie, stretch
CVE-2015-2328PCRE before 8.36 mishandles the /((?(R)a|(?1)))+/ pattern and related ...jessie, stretch
monitoring-pluginsCVE-2023-37154bookworm, bullseye, buster, jessie, sid, stretch, trixie
mono-reference-assembliesCVE-2018-1002208SharpZipLib before 1.0 RC1 is vulnerable to directory traversal, allow ...stretch
monopdCVE-2015-0841Off-by-one error in the readBuf function in listener.cpp in libcapsine ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
mozilla-noscriptCVE-2018-16983NoScript Classic before 5.1.8.7, as used in Tor Browser 7.x and other ...buster, jessie, sid
mp3spltCVE-2017-5665The splt_cue_export_to_file function in cue.c in libmp3splt 0.9.2 allo ...bookworm, bullseye, buster, jessie, sid, trixie
CVE-2017-5666The free_options function in options_manager.c in mp3splt 2.6.2 allows ...bookworm, bullseye, buster, jessie, sid, trixie
CVE-2017-5851The free_options function in options_manager.c in mp3splt 2.6.2 allows ...bookworm, bullseye, buster, jessie, sid, trixie
mpg123CVE-2017-11126The III_i_stereo function in libmpg123/layer3.c in mpg123 through 1.25 ...jessie, stretch
mplayerCVE-2022-38600Mplayer SVN-r38374-13.0.1 is vulnerable to Memory Leak via vf.c and vf ...bullseye, buster
CVE-2022-38853Certain The MPlayer Project products are vulnerable to Buffer Overflow ...bullseye, buster
CVE-2022-38856Certain The MPlayer Project products are vulnerable to Buffer Overflow ...bullseye, buster
mupdfCVE-2016-10246Buffer overflow in the main function in jstest_main.c in Mujstest in A ...jessie
CVE-2016-10247Buffer overflow in the my_getline function in jstest_main.c in Mujstes ...jessie
CVE-2017-6060Stack-based buffer overflow in jstest_main.c in mujstest in Artifex So ...jessie
CVE-2018-19777In Artifex MuPDF 1.14.0, there is an infinite loop in the function svg ...buster, jessie, stretch
CVE-2018-19881In Artifex MuPDF 1.14.0, svg/svg-run.c allows remote attackers to caus ...jessie
CVE-2018-19882In Artifex MuPDF 1.14.0, the svg_run_image function in svg/svg-run.c a ...jessie
CVE-2018-1000036In MuPDF 1.12.0 and earlier, multiple memory leaks in the PDF parser a ...jessie
CVE-2020-26683A memory leak issue discovered in /pdf/pdf-font-add.c in Artifex Softw ...bullseye, buster, jessie, stretch
CVE-2021-4216A Floating point exception (division-by-zero) flaw was found in Mupdf ...bullseye, buster, jessie, stretch
CVE-2023-31794MuPDF v1.21.1 was discovered to contain an infinite recursion in the c ...bookworm, bullseye, buster
CVE-2023-51103A floating point exception (divide-by-zero) vulnerability was discover ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-51104A floating point exception (divide-by-zero) vulnerability was discover ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-51105A floating point exception (divide-by-zero) vulnerability was discover ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-51106A floating point exception (divide-by-zero) vulnerability was discover ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-51107A floating point exception (divide-by-zero) vulnerability was discover ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
musescoreCVE-2023-26923Musescore 3.0 to 4.0.1 has a stack buffer overflow vulnerability that ...jessie, stretch, bookworm, bullseye, sid, trixie
mustache.jsCVE-2015-8861The handlebars package before 4.0.0 for Node.js allows remote attacker ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2015-8862mustache package before 2.2.1 for Node.js allows remote attackers to c ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
TEMP-0000000-137F0Aquoteless attributes in templates can lead to content injectionbookworm, bullseye, buster, jessie, sid, stretch, trixie
muttCVE-2007-1268Mutt 1.5.13 and earlier does not properly use the --status-fd argument ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-14154Mutt before 1.14.3 proceeds with a connection even if, in response to ...jessie, stretch
TEMP-0775199-D05A9Esmime_keys: insecure use of /tmpjessie
mxmlCVE-2018-20005An issue has been found in Mini-XML (aka mxml) 2.12. It is a use-after ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
mycliCVE-2023-44690Inadequate encryption strength in mycli 1.27.0 allows attackers to vie ...bookworm, bullseye, buster, sid, stretch, trixie
mysql-5.5CVE-2012-5613MySQL 5.5.19 and possibly other versions, and MariaDB 5.5.28a and poss ...jessie
CVE-2012-5627Oracle MySQL and MariaDB 5.5.x before 5.5.29, 5.3.x before 5.3.12, and ...jessie
naclCVE-2015-0565NaCl in 2015 allowed the CLFLUSH instruction, making rowhammer attacks ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
nagios3CVE-2008-5027The Nagios process in (1) Nagios before 3.0.5 and (2) op5 Monitor befo ...jessie
nagios4CVE-2020-35269Nagios Core application version 4.2.4 is vulnerable to Site-Wide Cross ...bookworm, bullseye, buster, sid, trixie
nasmCVE-2017-14228In Netwide Assembler (NASM) 2.14rc0, there is an illegal address acces ...jessie, stretch
CVE-2018-10316Netwide Assembler (NASM) 2.14rc0 has an endless while loop in the asse ...jessie, stretch
CVE-2018-16382Netwide Assembler (NASM) 2.14rc15 has a buffer over-read in x86/regfla ...jessie, stretch
CVE-2018-16517asm/labels.c in Netwide Assembler (NASM) is prone to NULL Pointer Dere ...jessie, stretch
CVE-2018-16999Netwide Assembler (NASM) 2.14rc15 has an invalid memory write (segment ...jessie, stretch
CVE-2018-19209Netwide Assembler (NASM) 2.14rc15 has a NULL pointer dereference in th ...jessie, stretch
CVE-2018-19213Netwide Assembler (NASM) through 2.14rc16 has memory leaks that may le ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-19214Netwide Assembler (NASM) 2.14rc15 has a heap-based buffer over-read in ...jessie, stretch
CVE-2018-19215Netwide Assembler (NASM) 2.14rc16 has a heap-based buffer over-read in ...jessie, stretch
CVE-2018-19755There is an illegal address access at asm/preproc.c (function: is_mmac ...buster, jessie, stretch
CVE-2018-20535There is a use-after-free at asm/preproc.c (function pp_getline) in Ne ...buster, jessie, stretch
CVE-2018-20538There is a use-after-free at asm/preproc.c (function pp_getline) in Ne ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-1000667NASM nasm-2.13.03 nasm- 2.14rc15 version 2.14rc15 and earlier contains ...jessie, stretch
CVE-2018-1000886nasm version 2.14.01rc5, 2.15 contains a Buffer Overflow vulnerability ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-6290An infinite recursion issue was discovered in eval.c in Netwide Assemb ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-6291An issue was discovered in the function expr6 in eval.c in Netwide Ass ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-8343In Netwide Assembler (NASM) 2.14.02, there is a use-after-free in past ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-14248In libnasm.a in Netwide Assembler (NASM) 2.14.xx, asm/pragma.c allows ...buster, jessie, stretch
CVE-2019-20334In Netwide Assembler (NASM) 2.14.02, stack consumption occurs in expr# ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-20352In Netwide Assembler (NASM) 2.15rc0, a heap-based buffer over-read occ ...buster, jessie, stretch
CVE-2020-18780A Use After Free vulnerability in function new_Token in asm/preproc.c ...buster, stretch
CVE-2020-18974Buffer Overflow in Netwide Assembler (NASM) v2.15.xx allows attackers ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-21528A Segmentation Fault issue discovered in in ieee_segment function in o ...bullseye, buster, stretch
CVE-2020-21685Buffer Overflow vulnerability in hash_findi function in hashtbl.c in n ...buster, stretch
CVE-2020-21687Buffer Overflow vulnerability in scan function in stdscan.c in nasm 2. ...buster, jessie, stretch
CVE-2020-24241In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in ...buster, stretch
CVE-2020-24242In Netwide Assembler (NASM) 2.15rc10, SEGV can be triggered in tok_tex ...buster, stretch
CVE-2021-33450An issue was discovered in NASM version 2.16rc0. There are memory leak ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33452An issue was discovered in NASM version 2.16rc0. There are memory leak ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-45256A Null Pointer Dereference vulnerability existfs in nasm 2.16rc0 via a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-45257An infinite loop vulnerability exists in nasm 2.16rc0 via the gpaste_t ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-29654Buffer overflow vulnerability in quote_for_pmake in asm/nasm.c in nasm ...bullseye, buster, stretch
CVE-2022-41420nasm v2.16 was discovered to contain a stack overflow in the Ndisasm c ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-44368NASM v2.16 was discovered to contain a null pointer deference in the N ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-44369NASM 2.16 (development) is vulnerable to 476: Null Pointer Dereference ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-44370NASM v2.16 was discovered to contain a heap buffer overflow in the com ...bullseye, buster, jessie, stretch
CVE-2022-46456NASM v2.16 was discovered to contain a global buffer overflow in the c ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-46457NASM v2.16 was discovered to contain a segmentation violation in the c ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-31722There exists a heap buffer overflow in nasm 2.16.02rc1 (GitHub commit: ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-38665Null pointer dereference in ieee_write_file in nasm 2.16rc0 allows att ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-38667Stack-based buffer over-read in function disasm in nasm 2.16 allows at ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-38668Stack-based buffer over-read in disasm in nasm 2.16 allows attackers t ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
nautilusCVE-2022-37290GNOME Nautilus 42.2 allows a NULL pointer dereference and get_basename ...bullseye, buster, jessie, stretch
ncursesCVE-2021-39537An issue was discovered in ncurses through v6.2-1. _nc_captoinfo in ca ...jessie, stretch
neomuttCVE-2020-14154Mutt before 1.14.3 proceeds with a connection even if, in response to ...buster
net-toolsCVE-2002-1976ifconfig, when used on the Linux kernel 2.2 and later, does not report ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
netbeansCVE-2019-17560The "Apache NetBeans" autoupdate system does not validate SSL certific ...stretch
CVE-2019-17561The "Apache NetBeans" autoupdate system does not fully validate code s ...stretch
netdataCVE-2019-9834The Netdata web application through 1.13.0 allows remote attackers to ...bookworm, bullseye, buster, sid
nethackCVE-2019-19905NetHack 3.6.x before 3.6.4 is prone to a buffer overflow vulnerability ...buster, jessie, stretch
CVE-2020-5209In NetHack before 3.6.5, unknown options starting with -de and -i can ...buster, jessie, stretch
CVE-2020-5210In NetHack before 3.6.5, an invalid argument to the -w command line op ...buster, jessie, stretch
CVE-2020-5211In NetHack before 3.6.5, an invalid extended command in value for the ...buster, jessie, stretch
CVE-2020-5212In NetHack before 3.6.5, an extremely long value for the MENUCOLOR con ...buster, jessie, stretch
CVE-2020-5213In NetHack before 3.6.5, too long of a value for the SYMBOL configurat ...buster, jessie, stretch
CVE-2020-5214In NetHack before 3.6.5, detecting an unknown configuration file optio ...buster, jessie, stretch
netmaskTEMP-0921565-C5FF8Enetmask: buffer overflow vulnerabilitystretch
netsurfCVE-2014-3566The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other prod ...jessie
nettyCVE-2022-24823Netty is an open-source, asynchronous event-driven network application ...bookworm, bullseye, buster, jessie, sid, stretch, trixie, jessie, stretch
network-managerCVE-2020-10754It was found that nmcli, a command line interface to NetworkManager di ...buster, jessie, stretch
network-manager-appletCVE-2017-6590An issue was discovered in network-manager-applet (aka network-manager ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
networkd-dispatcherCVE-2022-29799A vulnerability was found in networkd-dispatcher. This flaw exists bec ...bullseye, buster
CVE-2022-29800A time-of-check-time-of-use (TOCTOU) race condition vulnerability was ...bullseye, buster
neutronCVE-2021-40797An issue was discovered in the routes middleware in OpenStack Neutron ...jessie, stretch
nghttp2TEMP-0000000-A4EF31Null pointer access in inflatehd tooljessie
nginxCVE-2009-4487nginx 0.7.64 writes data to a log file without sanitizing non-printabl ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-44487The HTTP/2 protocol allows a denial of service (server resource consum ...bookworm, bullseye, buster, jessie, stretch
nip2CVE-2017-17514boxes.c in nip2 8.4.0 does not validate strings before launching the p ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
nmapCVE-2017-18594nse_libssh2.cc in Nmap 7.70 is subject to a denial of service conditio ...buster, jessie, stretch
CVE-2018-15173Nmap through 7.70, when the -sV option is used, allows remote attacker ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
nodauCVE-2022-4399A vulnerability was found in TicklishHoneyBee nodau. It has been rated ...bullseye, buster, jessie, stretch
node-cliCVE-2016-10538The package `node-cli` before 1.0.0 insecurely uses the lock_file and ...jessie
node-cookie-signatureCVE-2016-1000236Node-cookie-signature before 1.0.6 is affected by a timing attack due ...jessie, stretch
node-debugCVE-2017-16137The debug module is vulnerable to regular expression denial of service ...jessie, stretch
node-deep-extendCVE-2018-3750The utilities function in all versions <= 0.5.0 of the deep-extend nod ...stretch
node-ejsCVE-2023-29827ejs v3.1.9 is vulnerable to server-side template injection. If the ejs ...bookworm, bullseye, buster, sid, trixie
node-expressCVE-2014-6393The Express web framework before 3.11 and 4.x before 4.5 for Node.js d ...jessie, stretch
node-extendCVE-2018-16491A prototype pollution vulnerability was found in node.extend <1.1.7, ~ ...jessie, stretch
CVE-2018-16492A prototype pollution vulnerability was found in module extend <2.0.2, ...jessie, stretch
node-formidableCVE-2022-29622An arbitrary file upload vulnerability in formidable v3.1.4 allows att ...bullseye, buster, stretch
node-growlCVE-2017-16042Growl adds growl notification support to nodejs. Growl before 1.10.2 d ...jessie
node-lodashCVE-2018-3721lodash node module before 4.17.5 suffers from a Modification of Assume ...jessie, stretch
CVE-2018-16487A prototype pollution vulnerability was found in lodash <4.17.11 where ...jessie, stretch
CVE-2019-1010266lodash prior to 4.17.11 is affected by: CWE-400: Uncontrolled Resource ...jessie, stretch
node-markedCVE-2015-1370Incomplete blacklist vulnerability in marked 0.3.2 and earlier for Nod ...jessie
CVE-2015-8854The marked package before 0.3.4 for Node.js allows attackers to cause ...jessie
CVE-2016-10531marked is an application that is meant to parse and compile markdown. ...jessie
CVE-2017-16114The marked module is vulnerable to a regular expression denial of serv ...jessie, stretch
CVE-2017-1000427marked version 0.3.6 and earlier is vulnerable to an XSS attack in the ...jessie, stretch
node-mimeCVE-2017-16138The mime module < 1.4.1, 2.0.1, 2.0.2 is vulnerable to regular express ...jessie, stretch
node-minimatchCVE-2016-10540Minimatch is a minimal matching utility that works by converting glob ...jessie
node-momentCVE-2017-18214The moment module before 2.19.3 for Node.js is prone to a regular expr ...stretch
node-negotiatorCVE-2016-10539negotiator is an HTTP content negotiator for Node.js and is used by ma ...jessie, stretch
node-postgresCVE-2017-16082A remote code execution vulnerability was found within the pg module w ...jessie
node-semverCVE-2015-8855The semver package before 4.3.2 for Node.js allows attackers to cause ...jessie
node-sendCVE-2015-8859The send package before 0.11.1 for Node.js allows attackers to obtain ...jessie, stretch
TEMP-0000000-FD1F92root path disclosurejessie, stretch
node-serve-indexCVE-2015-8856Cross-site scripting (XSS) vulnerability in the serve-index package be ...jessie, stretch
node-tarCVE-2015-8860The tar package before 2.0.0 for Node.js allows remote attackers to wr ...jessie
node-uuidCVE-2015-8851node-uuid before 1.4.4 uses insufficiently random data to create a GUI ...jessie, stretch
node-wsCVE-2016-10518A vulnerability was found in the ping functionality of the ws module b ...jessie
TEMP-0000000-BBB7D8remote memory disclosurejessie
nodejsCVE-2014-5256Node.js 0.8 before 0.8.28 and 0.10 before 0.10.30 does not consider th ...jessie
CVE-2014-9748The uv_rwlock_t fallback implementation for Windows XP and Server 2003 ...jessie
CVE-2016-1669The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as us ...jessie
CVE-2016-2086Node.js 0.10.x before 0.10.42, 0.12.x before 0.12.10, 4.x before 4.3.0 ...jessie
CVE-2016-2216The HTTP header parsing code in Node.js 0.10.x before 0.10.42, 0.11.6 ...jessie
CVE-2016-5325CRLF injection vulnerability in the ServerResponse#writeHead function ...jessie
CVE-2016-7099The tls.checkServerIdentity function in Node.js 0.10.x before 0.10.47, ...jessie
CVE-2017-11499Node.js v4.0 through v4.8.3, all versions of v5.x, v6.0 through v6.11. ...jessie, stretch
CVE-2018-7158The `'path'` module in the Node.js 4.x release line contains a potenti ...jessie, stretch
CVE-2018-7159The HTTP parser in all current versions of Node.js ignores spaces in t ...jessie, stretch
CVE-2018-7167Calling Buffer.fill() or Buffer.alloc() with some parameters can lead ...jessie, stretch
CVE-2018-12115In all versions of Node.js prior to 6.14.4, 8.11.4 and 10.9.0 when use ...jessie, stretch
CVE-2018-12116Node.js: All versions prior to Node.js 6.15.0 and 8.14.0: HTTP request ...jessie, stretch
CVE-2018-12120Node.js: All versions prior to Node.js 6.15.0: Debugger port 5858 list ...jessie, stretch
CVE-2018-12121Node.js: All versions prior to Node.js 6.15.0, 8.14.0, 10.14.0 and 11. ...jessie, stretch
CVE-2018-12122Node.js: All versions prior to Node.js 6.15.0, 8.14.0, 10.14.0 and 11. ...jessie, stretch
CVE-2018-12123Node.js: All versions prior to Node.js 6.15.0, 8.14.0, 10.14.0 and 11. ...jessie, stretch
CVE-2019-5737In Node.js including 6.x before 6.17.0, 8.x before 8.15.1, 10.x before ...jessie, stretch
CVE-2019-5739Keep-alive HTTP and HTTPS connections can remain open and inactive for ...jessie, stretch
novaCVE-2013-0326OpenStack nova base images permissions are world readablebookworm, bullseye, buster, jessie, sid, stretch
nsdCVE-2016-6173NSD before 4.1.11 allows remote DNS master servers to cause a denial o ...jessie
nssCVE-2017-11695Heap-based buffer overflow in the alloc_segs function in lib/dbm/src/h ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-11696Heap-based buffer overflow in the __hash_open function in lib/dbm/src/ ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-11697The __hash_open function in hash.c:229 in Mozilla Network Security Ser ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-11698Heap-based buffer overflow in the __get_page function in lib/dbm/src/h ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
ntpCVE-2016-2517NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to ...jessie
CVE-2017-6458Multiple buffer overflows in the ctl_put* functions in NTP before 4.2. ...jessie
CVE-2017-6462Buffer overflow in the legacy Datum Programmable Time Server (DPTS) re ...jessie
CVE-2018-12327Stack-based buffer overflow in ntpq and ntpdc of NTP version 4.2.8p11 ...bullseye, buster, jessie, stretch
CVE-2023-26551mstolfp in libntp/mstolfp.c in NTP 4.2.8p15 has an out-of-bounds write ...bullseye, buster, jessie, stretch
CVE-2023-26552mstolfp in libntp/mstolfp.c in NTP 4.2.8p15 has an out-of-bounds write ...bullseye, buster, jessie, stretch
CVE-2023-26553mstolfp in libntp/mstolfp.c in NTP 4.2.8p15 has an out-of-bounds write ...bullseye, buster, jessie, stretch
CVE-2023-26554mstolfp in libntp/mstolfp.c in NTP 4.2.8p15 has an out-of-bounds write ...bullseye, buster, jessie, stretch
numpyCVE-2021-34141An incomplete string comparison in the numpy.core component in NumPy b ...bookworm, bullseye, sid, trixie
CVE-2021-41495Null Pointer Dereference vulnerability exists in numpy.sort in NumPy & ...bookworm, bullseye, sid, trixie
CVE-2021-41496Buffer overflow in the array_from_pyobj function of fortranobject.c in ...bookworm, bullseye, sid, trixie
nviCVE-2015-2305Integer overflow in the regcomp implementation in the Henry Spencer BS ...jessie
nvidia-cg-toolkitCVE-2008-5144nvidia-cg-toolkit-installer in nvidia-cg-toolkit 2.0.0015 allows local ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
nvidia-cuda-toolkitCVE-2023-0193NVIDIA CUDA Toolkit SDK contains a vulnerability in cuobjdump, where a ...bookworm, bullseye, buster, sid, trixie
CVE-2023-0196NVIDIA CUDA Toolkit SDK contains a bug in cuobjdump, where a local use ...bookworm, bullseye, buster, sid, trixie
CVE-2023-25510NVIDIA CUDA Toolkit SDK for Linux and Windows contains a NULL pointer ...bookworm, bullseye, buster, sid, trixie
CVE-2023-25511NVIDIA CUDA Toolkit for Linux and Windows contains a vulnerability in ...bookworm, bullseye, buster, sid, trixie
CVE-2023-25512NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in ...bookworm, bullseye, buster, sid, trixie
CVE-2023-25513NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in ...bookworm, bullseye, buster
CVE-2023-25514NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in ...bookworm, bullseye, buster, sid, trixie
CVE-2023-25523NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
ocaml-batteriesCVE-2017-17519batteriesConfig.mlp in OCaml Batteries Included (aka ocaml-batteries) ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
ocsinventory-serverCVE-2010-1733Multiple SQL injection vulnerabilities in OCS Inventory NG before 1.02 ...bookworm, bullseye, buster, jessie, sid, trixie
CVE-2014-4722Multiple cross-site scripting (XSS) vulnerabilities in the OCS Reports ...bookworm, bullseye, buster, jessie, sid, trixie
CVE-2018-12482OCS Inventory 2.4.1 contains multiple SQL injections in the search eng ...jessie
CVE-2018-12483OCS Inventory 2.4.1 is prone to a remote command-execution vulnerabili ...jessie
CVE-2018-14473OCS Inventory 2.4.1 lacks a proper XML parsing configuration, allowing ...jessie
CVE-2018-14857Unrestricted file upload (with remote code execution) in require/mail/ ...bookworm, bullseye, buster, jessie, sid, trixie
CVE-2018-15537Unrestricted file upload (with remote code execution) in OCS Inventory ...bookworm, bullseye, buster, jessie, sid, trixie
CVE-2018-1000557OCS Inventory OCS Inventory NG version ocsreports 2.4 contains a Cross ...jessie
CVE-2018-1000558OCS Inventory NG ocsreports 2.4 and ocsreports 2.3.1 version 2.4 and 2 ...jessie
CVE-2020-14947OCS Inventory NG 2.7 allows Remote Command Execution via shell metacha ...bookworm, bullseye, buster, jessie, sid, trixie
CVE-2023-3726OCSInventory allow stored email template with special characters that ...bookworm, bullseye, buster, sid, trixie
omplCVE-2021-41490Memory leaks in LazyPRM.cpp of OMPL v1.5.0 can cause unexpected behavi ...bookworm, bullseye, jessie, sid, stretch, trixie
CVE-2021-42218OMPL v1.5.2 contains a memory leak in VFRRT.cppbookworm, bullseye, sid, trixie
onionshareCVE-2018-19960The debug_mode function in web/web.py in OnionShare through 1.3.1, whe ...jessie
CVE-2022-21694OnionShare is an open source tool that lets you securely and anonymous ...bullseye
open-vm-toolsTEMP-0925959-45DD25insecure handling of /tmp/VMwareDnDjessie
openconnectCVE-2020-12105OpenConnect through 8.08 mishandles negative return values from X509_c ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2020-12823OpenConnect 8.09 has a buffer overflow, causing a denial of service (a ...buster, stretch
opendkimCVE-2020-35766The test suite in libopendkim in OpenDKIM through 2.10.3 allows local ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
openexrCVE-2017-14988Header::readfrom in IlmImf/ImfHeader.cpp in OpenEXR 2.2.0 allows remot ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18443OpenEXR 2.3.0 has a memory leak in ThreadPool in IlmBase/IlmThread/Ilm ...buster, jessie, stretch
CVE-2021-20304A flaw was found in OpenEXR's hufDecode functionality. This flaw allow ...buster, jessie, stretch
CVE-2021-26945An integer overflow leading to a heap-buffer overflow was found in Ope ...bullseye, buster, jessie, stretch
openfortivpnCVE-2020-7043An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL ...buster
openjdk-7CVE-2012-2739Oracle Java SE before 7 Update 6, and OpenJDK 7 before 7u6 build 12 an ...jessie
openjpegCVE-2013-4289Multiple integer overflows in lib/openjp3d/jp3d.c in OpenJPEG before 1 ...jessie
CVE-2013-4290Stack-based buffer overflow in OpenJPEG before 1.5.2 allows remote att ...jessie
openjpeg2CVE-2016-7445convert.c in OpenJPEG before 2.1.2 allows remote attackers to cause a ...jessie
CVE-2016-9113There is a NULL pointer dereference in function imagetobmp of convertb ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9114There is a NULL Pointer Access in function imagetopnm of convert.c:194 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9115Heap Buffer Over-read in function imagetotga of convert.c(jp2):942 in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9116NULL Pointer Access in function imagetopnm of convert.c:2226(jp2) in O ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9117NULL Pointer Access in function imagetopnm of convert.c(jp2):1289 in O ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9580An integer overflow vulnerability was found in tiftoimage function in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-9581An infinite loop vulnerability in tiftoimage that results in heap buff ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-10505NULL pointer dereference vulnerabilities in the imagetopnm function in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-10506Division-by-zero vulnerabilities in the functions opj_pi_next_cprl, op ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-12982The bmp_read_info_header function in bin/jp2/convertbmp.c in OpenJPEG ...jessie, stretch
CVE-2017-17479In OpenJPEG 2.3.0, a stack-based buffer overflow was discovered in the ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-5727In OpenJPEG 2.3.0, there is an integer overflow vulnerability in the o ...buster, jessie, stretch
CVE-2018-7648An issue was discovered in mj2/opj_mj2_extract.c in OpenJPEG 2.3.0. Th ...buster, jessie, stretch
CVE-2018-16375An issue was discovered in OpenJPEG 2.3.0. Missing checks for header_i ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-16376An issue was discovered in OpenJPEG 2.3.0. A heap-based buffer overflo ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-20845Division-by-zero vulnerabilities in the functions pi_next_pcrl, pi_nex ...buster, jessie, stretch
CVE-2018-20846Out-of-bounds accesses in the functions pi_next_lrcp, pi_next_rlcp, pi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
openldapCVE-2015-3276The nss_parse_ciphers function in libraries/libldap/tls_m.c in OpenLDA ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-14159slapd in OpenLDAP 2.4.45 and earlier creates a PID file after dropping ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-17740contrib/slapd-modules/nops/nops.c in OpenLDAP through 2.4.45, when bot ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-15719libldap in certain third-party OpenLDAP packages has a certificate-val ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
openrazerCVE-2022-29021A buffer overflow vulnerability exists in the razerkbd driver of OpenR ...bullseye, buster
CVE-2022-29022A buffer overflow vulnerability exists in the razeraccessory driver of ...bullseye, buster
CVE-2022-29023A buffer overflow vulnerability exists in the razermouse driver of Ope ...bullseye, buster
openrptCVE-2015-2305Integer overflow in the regcomp implementation in the Henry Spencer BS ...buster, jessie, stretch
openscCVE-2019-6502sc_context_create in ctx.c in libopensc in OpenSC 0.19.0 has a memory ...jessie, stretch
openscadCVE-2022-0496A vulnerbiility was found in Openscad, where a DXF-format drawing with ...bullseye, buster, stretch
CVE-2022-0497A vulnerbiility was found in Openscad, where a .scad file with no trai ...bullseye, buster, stretch
opensshCVE-2007-2243OpenSSH 4.6 and earlier, when ChallengeResponseAuthentication is enabl ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2007-2768OpenSSH, when using OPIE (One-Time Passwords in Everything) for PAM, a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2008-3234sshd in OpenSSH 4 on Debian GNU/Linux, and the 20070303 OpenSSH snapsh ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-10010sshd in OpenSSH before 7.4, when privilege separation is not used, cre ...jessie
CVE-2016-20012OpenSSH through 8.7 allows remote attackers, who have a suspicion that ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-15919Remotely observable behaviour in auth-gss2.c in OpenSSH through 7.8 co ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-6110In OpenSSH 7.9, due to accepting and displaying arbitrary stderr outpu ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-16905OpenSSH 7.7 through 7.9 and 8.x before 8.1, when compiled with an expe ...buster
CVE-2020-12062The scp client in OpenSSH 8.2 incorrectly sends duplicate responses to ...buster, jessie, stretch
CVE-2020-14145The client side in OpenSSH 5.7 through 8.4 has an Observable Discrepan ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-15778scp in OpenSSH through 8.3p1 allows command injection in the scp.c tor ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-36368An issue was discovered in OpenSSH before 8.9. If a client is using pu ...bullseye, buster, jessie, stretch
CVE-2023-51767OpenSSH through 9.6, when common types of DRAM are used, might allow r ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
opensslCVE-2007-6755The NIST SP 800-90A default statement of the Dual Elliptic Curve Deter ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2010-0928OpenSSL 0.9.8i on the Gaisler Research LEON3 SoC on the Xilinx Virtex- ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
openstack-troveCVE-2015-3156The _write_config function in trove/guestagent/datastore/experimental/ ...bookworm, jessie, sid, stretch, trixie
openvpnCVE-2006-2229OpenVPN 2.0.7 and earlier, when configured to use the --management opt ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-6329OpenVPN, when using a 64-bit block cipher, makes it easier for remote ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-7522OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to deni ...stretch
CVE-2018-7544A cross-protocol scripting issue was discovered in the management inte ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
openvswitchCVE-2017-9263In Open vSwitch (OvS) 2.7.0, while parsing an OpenFlow role status mes ...stretch
CVE-2017-9264In lib/conntrack.c in the firewall implementation in Open vSwitch (OvS ...stretch
CVE-2017-9265In Open vSwitch (OvS) v2.7.0, there is a buffer over-read while parsin ...stretch
CVE-2017-14970In lib/ofp-util.c in Open vSwitch (OvS) before 2.8.1, there are multip ...jessie, stretch
optipngCVE-2023-43907OptiPNG v0.7.7 was discovered to contain a global buffer overflow via ...bookworm, bullseye, buster
opus-toolsCVE-2014-9638oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial ...jessie
os-proberCVE-2008-5135os-prober in os-prober 1.17 allows local users to overwrite arbitrary ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
otrs2CVE-2018-7567In the Admin Package Manager in Open Ticket Request System (OTRS) 5.0. ...bullseye, buster, jessie, stretch
p7zipCVE-2022-47069p7zip 16.02 was discovered to contain a heap-buffer-overflow vulnerabi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
packagekitCVE-2022-0987A flaw was found in PackageKit in the way some of the methods exposed ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
pandasCVE-2020-13091pandas through 1.0.3 can unserialize and execute commands from an untr ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
parallelCVE-2015-4155GNU Parallel before 20150422, when using (1) --pipe, (2) --tmux, (3) - ...jessie
CVE-2015-4156GNU Parallel before 20150522 (Nepal), when using (1) --cat or (2) --fi ...jessie
parsoCVE-2019-12760A deserialization vulnerability exists in the way parso through 0.4.0 ...buster
pasdocCVE-2017-17527delphi_gui/WWWBrowserRunnerDM.pas in PasDoc 0.14 does not validate str ...jessie, stretch
passengerCVE-2016-10345In Phusion Passenger before 5.1.0, a known /tmp filename was used duri ...bullseye, buster, stretch
password-storeCVE-2020-28086pass through 1.7.3 has a possibility of using a password for an uninte ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
patchCVE-2010-4651Directory traversal vulnerability in util.c in GNU patch 2.6.1 and ear ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2016-10713An issue was discovered in GNU patch before 2.7.6. Out-of-bounds acces ...jessie, stretch
CVE-2018-6951An issue was discovered in GNU patch through 2.7.6. There is a segment ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-6952A double free exists in the another_hunk function in pch.c in GNU patc ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-45261An Invalid Pointer vulnerability exists in GNU patch 2.7 via the anoth ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
patchelfCVE-2022-44940Patchelf v0.9 was discovered to contain an out-of-bounds read via the ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
pax-utilsTEMP-0856196-13C562scanelf: out of bounds read in scanelf_file_get_symtabs (scanelf.c)jessie, stretch
pcf2bdfCVE-2022-23318A heap-buffer-overflow in pcf2bdf, versions >= 1.05 allows an attacker ...bullseye, buster, stretch
CVE-2022-23319A segmentation fault during PCF file parsing in pcf2bdf versions >=1.0 ...bullseye, buster, stretch
pcre2CVE-2017-8786pcre2test.c in PCRE2 10.23 allows remote attackers to cause a denial o ...stretch
CVE-2022-41409Integer overflow vulnerability in pcre2test before 10.41 allows attack ...bullseye, buster, stretch
pcre3CVE-2017-7245Stack-based buffer overflow in the pcre32_copy_substring function in p ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-7246Stack-based buffer overflow in the pcre32_copy_substring function in p ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-11164In PCRE 8.41, the OP_KETRMAX feature in the match function in pcre_exe ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-16231In PCRE 8.41, after compiling, a pcretest load test PoC produces a cra ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-20838libpcre in PCRE before 8.43 allows a subject buffer over-read in JIT w ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
pdfresurrectCVE-2019-14267PDFResurrect 0.15 has a buffer overflow via a crafted PDF file because ...buster, jessie, stretch
CVE-2020-9549In PDFResurrect 0.12 through 0.19, get_type in pdf.c has an out-of-bou ...buster, stretch
CVE-2021-3508A flaw was found in PDFResurrect in version 0.22b. There is an infinit ...bullseye, buster, stretch
pdnsCVE-2020-24696An issue was discovered in PowerDNS Authoritative through 4.3.0 when - ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-24697An issue was discovered in PowerDNS Authoritative through 4.3.0 when - ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-24698An issue was discovered in PowerDNS Authoritative through 4.3.0 when - ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
pdns-recursorCVE-2020-10030An issue has been found in PowerDNS Recursor 4.1.0 up to and including ...buster, jessie
percona-toolkitCVE-2015-1027The version checking subroutine in percona-toolkit before 2.2.13 and x ...jessie, jessie
perlCVE-2011-4116_is_safe in the File::Temp module for Perl does not properly handle sy ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-31486HTTP::Tiny before 0.083, a Perl core module since 5.13.9 and available ...bookworm, bullseye, buster, jessie, stretch
TEMP-0769606-4AA6CFa2p: buffer overflowjessie
phabricatorCVE-2017-17536Phabricator before 2017-11-10 does not block the --config and --debugg ...bookworm, bullseye, buster, sid, stretch, trixie
phantomjsCVE-2019-17221PhantomJS through 2.1.1 has an arbitrary file read vulnerability, as d ...buster, stretch
php-font-libCVE-2014-2570Cross-site scripting (XSS) vulnerability in www/make_subset.php in PHP ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
php-getid3CVE-2021-40926Cross-site scripting (XSS) vulnerability in demos/demo.mysqli.php in g ...bullseye, buster, jessie, stretch
php-gettextTEMP-0000000-07A77Dphp-gettext XSSbookworm, bullseye, buster, jessie, sid, stretch, trixie
php-hordeCVE-2019-12094Horde Groupware Webmail Edition through 5.2.22 allows XSS via an admin ...bookworm, bullseye, buster, jessie, sid, stretch
php-horde-treanCVE-2019-12095Horde Trean, as used in Horde Groupware Webmail Edition through 5.2.22 ...bookworm, bullseye, buster, jessie, sid, stretch
php-openidCVE-2016-2049examples/consumer/common.php in JanRain PHP OpenID library (aka php-op ...jessie
php-pearCVE-2017-5630PECL in the download utility class in the Installer in PEAR Base Syste ...bookworm, bullseye, buster, sid, stretch, trixie
php5CVE-2006-0931Directory traversal vulnerability in PEAR::Archive_Tar 1.2, and other ...jessie
CVE-2006-4023The ip2long function in PHP 5.1.4 and earlier may incorrectly validate ...jessie
CVE-2006-6383PHP 5.2.0 and 4.4 allows local users to bypass safe_mode and open_base ...jessie
CVE-2006-7205The array_fill function in ext/standard/array.c in PHP 4.4.2 and 5.1.2 ...jessie
CVE-2007-0448The fopen function in PHP 5.2.0 does not properly handle invalid URI h ...jessie
CVE-2007-1413Buffer overflow in the snmpget function in the snmp extension in PHP 5 ...jessie
CVE-2007-1581The resource system in PHP 5.0.0 through 5.2.1 allows context-dependen ...jessie
CVE-2007-1582The resource system in PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 ...jessie
CVE-2007-1710The readfile function in PHP 4.4.4, 5.1.6, and 5.2.1 allows context-de ...jessie
CVE-2007-1835PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session ...jessie
CVE-2007-1883PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows context-depende ...jessie
CVE-2007-1890Integer overflow in the msg_receive function in PHP 4 before 4.4.5 and ...jessie
CVE-2007-3205The parse_str function in (1) PHP, (2) Hardened-PHP, and (3) Suhosin, ...jessie
CVE-2007-3294Multiple buffer overflows in libtidy, as used in the Tidy extension fo ...jessie
CVE-2007-4255Buffer overflow in the mSQL extension in PHP 5.2.3 allows context-depe ...jessie
CVE-2007-4596The perl extension in PHP does not follow safe_mode restrictions, whic ...jessie
CVE-2007-4889The MySQL extension in PHP 5.2.4 and earlier allows remote attackers t ...jessie
CVE-2007-5424The disable_functions feature in PHP 4 and 5 allows attackers to bypas ...jessie
CVE-2008-2666Multiple directory traversal vulnerabilities in PHP 5.2.6 and earlier ...jessie
CVE-2008-4107The (1) rand and (2) mt_rand functions in PHP 5.2.6 do not produce cry ...jessie
CVE-2008-5625PHP 5 before 5.2.7 does not enforce the error_log safe_mode restrictio ...jessie
CVE-2008-7002PHP 5.2.5 does not enforce (a) open_basedir and (b) safe_mode_exec_dir ...jessie
CVE-2009-3559main/streams/plain_wrapper.c in PHP 5.3.x before 5.3.1 does not recogn ...jessie
CVE-2009-4418The unserialize function in PHP 5.3.0 and earlier allows context-depen ...jessie
CVE-2010-1861The sysvshm extension for PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 ...jessie
CVE-2010-1862The chunk_split function in PHP 5.2 through 5.2.13 and 5.3 through 5.3 ...jessie
CVE-2010-1868The (1) sqlite_single_query and (2) sqlite_array_query functions in ex ...jessie
CVE-2010-1914The Zend Engine in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 allows ...jessie
CVE-2010-1915The preg_quote function in PHP 5.2 through 5.2.13 and 5.3 through 5.3. ...jessie
CVE-2010-2097The (1) iconv_mime_decode, (2) iconv_substr, and (3) iconv_mime_encode ...jessie
CVE-2010-2100The (1) htmlentities, (2) htmlspecialchars, (3) str_getcsv, (4) http_b ...jessie
CVE-2010-2101The (1) strip_tags, (2) setcookie, (3) strtok, (4) wordwrap, (5) str_w ...jessie
CVE-2010-2190The (1) trim, (2) ltrim, (3) rtrim, and (4) substr_replace functions i ...jessie
CVE-2010-3062mysqlnd_wireprotocol.c in the Mysqlnd extension in PHP 5.3 through 5.3 ...jessie
CVE-2010-3063The php_mysqlnd_read_error_from_line function in the Mysqlnd extension ...jessie
CVE-2010-3064Stack-based buffer overflow in the php_mysqlnd_auth_write function in ...jessie
CVE-2012-1171The libxml RSHUTDOWN function in PHP 5.x allows remote attackers to by ...jessie
CVE-2012-3365The SQLite functionality in PHP before 5.3.15 allows remote attackers ...jessie
CVE-2013-3735The Zend Engine in PHP before 5.4.16 RC1, and 5.5.0 before RC2, does n ...jessie
CVE-2013-6501The default soap.wsdl_cache_dir setting in (1) php.ini-production and ...jessie
CVE-2014-5459The PEAR_REST class in REST.php in PEAR in PHP through 5.6.0 allows lo ...jessie
CVE-2014-9425Double free vulnerability in the zend_ts_hash_graceful_destroy functio ...jessie
CVE-2015-9253An issue was discovered in PHP 7.3.x before 7.3.0alpha3, 7.2.x before ...jessie
CVE-2016-5116gd_xbm.c in the GD Graphics Library (aka libgd) before 2.2.0, as used ...jessie
CVE-2017-5630PECL in the download utility class in the Installer in PEAR Base Syste ...jessie
CVE-2017-7890The GIF decoding function gdImageCreateFromGifCtx in gd_gif_in.c in th ...jessie
CVE-2017-9118PHP 7.1.5 has an Out of bounds access in php_pcre_replace_impl via a c ...jessie
CVE-2017-9119The i_zval_ptr_dtor function in Zend/zend_variables.h in PHP 7.1.5 all ...jessie
CVE-2017-11362In PHP 7.x before 7.0.21 and 7.1.x before 7.1.7, ext/intl/msgformat/ms ...jessie
CVE-2019-11038When using the gdImageCreateFromXbm() function in the GD Graphics Libr ...jessie
php7.0CVE-2015-9253An issue was discovered in PHP 7.3.x before 7.3.0alpha3, 7.2.x before ...stretch
CVE-2017-9118PHP 7.1.5 has an Out of bounds access in php_pcre_replace_impl via a c ...stretch
CVE-2017-9119The i_zval_ptr_dtor function in Zend/zend_variables.h in PHP 7.1.5 all ...stretch
CVE-2017-9120PHP 7.x through 7.1.5 allows remote attackers to cause a denial of ser ...stretch
CVE-2019-6977gdImageColorMatch in gd_color_match.c in the GD Graphics Library (aka ...stretch
phpldapadminCVE-2018-12689phpLDAPadmin 1.2.2 allows LDAP injection via a crafted server_id param ...bookworm, jessie, sid, trixie
phpmyadminCVE-2005-3622phpMyAdmin 2.7.0-beta1 and earlier allows remote attackers to obtain t ...bookworm, bullseye, jessie, sid, stretch, trixie
CVE-2007-4306Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 2.10 ...bookworm, bullseye, jessie, sid, stretch, trixie
CVE-2015-8669libraries/config/messages.inc.php in phpMyAdmin 4.0.x before 4.0.10.12 ...jessie
CVE-2015-8980The plural form formula in ngettext family of calls in php-gettext bef ...jessie
CVE-2016-2038phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x be ...jessie
CVE-2016-2042phpMyAdmin 4.4.x before 4.4.15.3 and 4.5.x before 4.5.4 allows remote ...jessie
CVE-2016-5730phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x be ...jessie
CVE-2016-6610A full path disclosure vulnerability was discovered in phpMyAdmin wher ...jessie
CVE-2016-6625An issue was discovered in phpMyAdmin. An attacker can determine wheth ...jessie
CVE-2016-6633An issue was discovered in phpMyAdmin. phpMyAdmin can be used to trigg ...jessie
CVE-2016-9847An issue was discovered in phpMyAdmin. When the user does not specify ...jessie
CVE-2016-9848An issue was discovered in phpMyAdmin. phpinfo (phpinfo.php) shows PHP ...jessie
CVE-2016-9852An issue was discovered in phpMyAdmin. By calling some scripts that ar ...jessie
CVE-2016-9853An issue was discovered in phpMyAdmin. By calling some scripts that ar ...jessie
CVE-2016-9854An issue was discovered in phpMyAdmin. By calling some scripts that ar ...jessie
CVE-2016-9855An issue was discovered in phpMyAdmin. By calling some scripts that ar ...jessie
CVE-2016-9856An XSS issue was discovered in phpMyAdmin because of an improper fix f ...jessie
CVE-2016-9857An issue was discovered in phpMyAdmin. XSS is possible because of a we ...jessie
CVE-2016-9858An issue was discovered in phpMyAdmin. With a crafted request paramete ...jessie
CVE-2016-9859An issue was discovered in phpMyAdmin. With a crafted request paramete ...jessie
CVE-2016-9860An issue was discovered in phpMyAdmin. An unauthenticated user can exe ...jessie
CVE-2016-9866An issue was discovered in phpMyAdmin. When the arg_separator is diffe ...jessie
CVE-2017-1000013phpMyAdmin 4.0, 4.4, and 4.6 are vulnerable to an open redirect weakne ...jessie
CVE-2017-1000014phpMyAdmin 4.0, 4.4, and 4.6 are vulnerable to a DOS weakness in the t ...jessie
CVE-2017-1000015phpMyAdmin 4.0, 4.4, and 4.6 are vulnerable to a CSS injection attack ...jessie
CVE-2017-1000016A weakness was discovered where an attacker can inject arbitrary value ...jessie
CVE-2017-1000017phpMyAdmin 4.0, 4.4 and 4.6 are vulnerable to a weakness where a user ...jessie
CVE-2017-1000018phpMyAdmin 4.0, 4.4., and 4.6 are vulnerable to a DOS attack in the re ...jessie
CVE-2020-11441phpMyAdmin 5.0.2 allows CRLF injection, as demonstrated by %0D%0Astrin ...bookworm, bullseye, sid, stretch, trixie
CVE-2022-0813PhpMyAdmin 5.1.1 and before allows an attacker to retrieve potentially ...bullseye, jessie, stretch
CVE-2022-23807An issue was discovered in phpMyAdmin 4.9 before 4.9.8 and 5.1 before ...bullseye, jessie, stretch
CVE-2022-23808An issue was discovered in phpMyAdmin 5.1 before 5.1.2. An attacker ca ...bullseye, jessie, stretch
phppgadminCVE-2006-4976The Date Library in John Lim ADOdb Library for PHP allows remote attac ...jessie
phpsysinfoCVE-2006-3360Directory traversal vulnerability in index.php in phpSysInfo 2.5.1 all ...jessie
picolibcCVE-2019-14876In the __lshift function of the newlib libc library, all versions prio ...bookworm, bullseye, sid, trixie
pidginCVE-2008-2956Memory leak in Pidgin 2.0.0, and possibly other versions, allows remot ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2012-1257Pidgin 2.10.0 uses DBUS for certain cleartext communication, which all ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
pillowCVE-2016-3076Heap-based buffer overflow in the j2k_encode_entry function in Pillow ...jessie
CVE-2020-10994In libImaging/Jpeg2KDecode.c in Pillow before 7.1.0, there are multipl ...buster, jessie, stretch
CVE-2021-25287An issue was discovered in Pillow before 8.2.0. There is an out-of-bou ...buster, jessie, stretch
CVE-2021-25288An issue was discovered in Pillow before 8.2.0. There is an out-of-bou ...buster, jessie, stretch
pipewireCVE-2022-4964Ubuntu's pipewire-pulse in snap grants microphone access even when the ...bookworm, bullseye, buster
pixmanCVE-2023-37769stress-test master commit e4c878 was discovered to contain a FPE vulne ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
pluxmlCVE-2020-18184In PluxXml V5.7,the theme edit function /PluXml/core/admin/parametres_ ...buster, stretch
CVE-2020-18185class.plx.admin.php in PluXml 5.7 allows attackers to execute arbitrar ...buster, stretch
polarsslCVE-2011-3389The SSL protocol, as used in certain configurations in Microsoft Windo ...jessie
CVE-2018-1000520ARM mbedTLS version 2.7.0 and earlier contains a Ciphersuite Allows In ...jessie
popplerCVE-2013-4472The openTempFile function in goo/gfile.cc in Xpdf and Poppler 0.24.3 a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-2814An exploitable heap overflow vulnerability exists in the image renderi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-2818An exploitable heap overflow vulnerability exists in the image renderi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-2820An exploitable integer overflow vulnerability exists in the JPEG 2000 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-7511poppler since version 0.17.3 has been vulnerable to NULL pointer deref ...jessie, stretch
CVE-2017-7515poppler through version 0.55.0 is vulnerable to an uncontrolled recurs ...jessie, stretch
CVE-2017-9083poppler 0.54.0, as used in Evince and other products, has a NULL point ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-19059An issue was discovered in Poppler 0.71.0. There is a out-of-bounds re ...buster, jessie, stretch
CVE-2018-19060An issue was discovered in Poppler 0.71.0. There is a NULL pointer der ...buster, jessie, stretch
CVE-2018-19149Poppler before 0.70.0 has a NULL pointer dereference in _poppler_attac ...jessie, stretch
CVE-2022-24106In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
postbooksCVE-2017-17525guiclient/guiclient.cpp in xTuple PostBooks 4.7.0 does not validate st ...buster, jessie, stretch
potraceCVE-2017-12067Potrace 1.14 has a heap-based buffer over-read in the interpolate_cubi ...jessie, stretch
powerpc-utilsCVE-2014-4040snap in powerpc-utils 1.2.20 produces an archive with fstab and yaboot ...jessie
pppCVE-2008-5366The postinst script in ppp 2.4.4rel on Debian GNU/Linux allows local u ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2008-5367ip-up in ppp-udeb 2.4.4rel on Debian GNU/Linux allows local users to o ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-4603A vulnerability classified as problematic has been found in ppp. Affec ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
printfilters-ppdCVE-2008-5034master-filter in printfilters-ppd 2.13 allows local users to overwrite ...jessie
proftpd-dfsgCVE-2020-9272ProFTPD 1.3.7 has an out-of-bounds (OOB) read vulnerability in mod_cap ...buster, jessie, stretch
prometheus-alertmanagerCVE-2023-40577Alertmanager handles alerts sent by client applications such as the Pr ...bookworm, bullseye
prometheus-blackbox-exporterCVE-2020-16248Prometheus Blackbox Exporter through 0.17.0 allows /probe?target= SSRF ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2023-26735blackbox_exporter v0.23.0 was discovered to contain an access control ...bookworm, bullseye, buster, sid, stretch, trixie
protobufCVE-2015-5237protobuf allows remote authenticated attackers to cause a heap-based b ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
psppCVE-2017-10791There is an Integer overflow in the hash_int function of the libpspp l ...jessie, stretch
CVE-2017-10792There is a NULL Pointer Dereference in the function ll_insert() of the ...jessie, stretch
CVE-2017-12958There is an illegal address access in the function output_hex() in dat ...jessie, stretch
CVE-2017-12959There is a reachable assertion abort in the function dict_add_mrset() ...jessie, stretch
CVE-2017-12960There is a reachable assertion abort in the function dict_rename_var() ...jessie, stretch
CVE-2017-12961There is an assertion abort in the function parse_attributes() in data ...jessie, stretch
CVE-2019-9211There is a reachable assertion abort in the function write_long_string ...buster, jessie, stretch
ptlibCVE-2015-2305Integer overflow in the regcomp implementation in the Henry Spencer BS ...jessie, stretch
puppetCVE-2020-7942Previously, Puppet operated on a model that a node with a valid certif ...bullseye, buster, jessie, stretch
puppet-module-puppetlabs-apacheCVE-2018-6508Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remot ...jessie, stretch, jessie, stretch, jessie, stretch
puttyCVE-2019-17069PuTTY before 0.73 might allow remote SSH-1 servers to cause a denial o ...jessie, stretch
pwgenCVE-2013-4441The Phonemes mode in Pwgen 2.06 generates predictable passwords, which ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
py-lmdbCVE-2019-16224An issue was discovered in py-lmdb 0.97. For certain values of md_flag ...bookworm, bullseye, sid, stretch, trixie
CVE-2019-16225An issue was discovered in py-lmdb 0.97. For certain values of mp_flag ...bookworm, bullseye, sid, stretch, trixie
CVE-2019-16226An issue was discovered in py-lmdb 0.97. mdb_node_del does not validat ...bookworm, bullseye, sid, stretch, trixie
CVE-2019-16227An issue was discovered in py-lmdb 0.97. For certain values of mn_flag ...bookworm, bullseye, sid, stretch, trixie
CVE-2019-16228An issue was discovered in py-lmdb 0.97. There is a divide-by-zero err ...bookworm, bullseye, sid, stretch, trixie
pycode-browserCVE-2015-0849predictable temporary file vulnerabilityjessie
pypyCVE-2020-29651A denial of service via regular expression in the py.path.svnwc compon ...bullseye, buster, stretch, bookworm, bullseye, buster, sid, trixie
python-certifiCVE-2022-23491Certifi is a curated collection of Root Certificates for validating th ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2023-37920Certifi is a curated collection of Root Certificates for validating th ...bookworm, bullseye, buster, sid, stretch, trixie
python-defaultsCVE-2008-4108Tools/faqwiz/move-faqwiz.sh (aka the generic FAQ wizard moving tool) i ...bullseye, buster, jessie, stretch
python-djangoCVE-2021-32052In Django 2.2 before 2.2.22, 3.1 before 3.1.10, and 3.2 before 3.2.2 ( ...buster, jessie, stretch
python-django-celery-resultsCVE-2020-17495django-celery-results through 1.2.1 stores task results in the databas ...bookworm, bullseye, buster, sid
python-ecdsaCVE-2024-23342The `ecdsa` PyPI package is a pure Python implementation of ECC (Ellip ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
python-mkdocsCVE-2021-40978The mkdocs 1.2.2 built-in dev-server allows directory traversal using ...bookworm, bullseye, buster, sid, stretch, trixie
python-numpyCVE-2017-12852The numpy.pad function in Numpy 1.13.1 and older versions is missing i ...jessie, stretch
python-oslo.privsepCVE-2022-38065A privilege escalation vulnerability exists in the oslo.privsep functi ...bookworm, bullseye, buster, sid, trixie
python-pipCVE-2018-20225An issue was discovered in pip (all versions) because it installs the ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
python-pyCVE-2022-42969The py library through 1.11.0 for Python allows remote attackers to co ...bookworm, bullseye, buster, sid, stretch, trixie
python-pysaml2CVE-2016-10127PySAML2 allows remote attackers to conduct XML external entity (XXE) a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
python-rplyCVE-2014-1938python-rply before 0.7.4 insecurely creates temporary files.jessie
python-scrapyCVE-2017-14158Scrapy 1.4 allows remote attackers to cause a denial of service (memor ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
python2.7CVE-2013-7040Python 2.7 before 3.4 only uses the last eight bits of the prefix to r ...bullseye, buster, jessie, stretch
CVE-2016-1000110The CGIHandler class in Python before 2.7.12 does not protect against ...jessie
CVE-2017-17522Lib/webbrowser.py in Python through 3.6.3 does not validate strings be ...bullseye, buster, jessie, stretch
CVE-2018-1000030Python 2.7.14 is vulnerable to a Heap-Buffer-Overflow as well as a Hea ...jessie, stretch
CVE-2019-9674Lib/zipfile.py in Python through 3.7.2 allows remote attackers to caus ...bullseye, buster, jessie, stretch
CVE-2019-18348An issue was discovered in urllib2 in Python 2.x through 2.7.17 and ur ...buster, jessie, stretch
CVE-2020-27619In Python 3 through 3.9.0, the Lib/test/multibytecodec_support.py CJK ...bullseye, buster, jessie, stretch
CVE-2021-28861Python 3.x through 3.10 has an open redirection vulnerability in lib/h ...bullseye, buster, jessie, stretch
python3.4CVE-2017-17522Lib/webbrowser.py in Python through 3.6.3 does not validate strings be ...jessie
CVE-2019-9674Lib/zipfile.py in Python through 3.7.2 allows remote attackers to caus ...jessie
CVE-2020-27619In Python 3 through 3.9.0, the Lib/test/multibytecodec_support.py CJK ...jessie
CVE-2021-28861Python 3.x through 3.10 has an open redirection vulnerability in lib/h ...jessie
CVE-2023-24535Parsing invalid messages can panic. Parsing a text-format message whic ...jessie
python3.5CVE-2017-17522Lib/webbrowser.py in Python through 3.6.3 does not validate strings be ...stretch
CVE-2019-9674Lib/zipfile.py in Python through 3.7.2 allows remote attackers to caus ...stretch
CVE-2020-27619In Python 3 through 3.9.0, the Lib/test/multibytecodec_support.py CJK ...stretch
CVE-2021-28861Python 3.x through 3.10 has an open redirection vulnerability in lib/h ...stretch
CVE-2023-24535Parsing invalid messages can panic. Parsing a text-format message whic ...stretch
python3.7CVE-2017-17522Lib/webbrowser.py in Python through 3.6.3 does not validate strings be ...buster
CVE-2019-9674Lib/zipfile.py in Python through 3.7.2 allows remote attackers to caus ...buster
CVE-2019-18348An issue was discovered in urllib2 in Python 2.x through 2.7.17 and ur ...buster
CVE-2020-27619In Python 3 through 3.9.0, the Lib/test/multibytecodec_support.py CJK ...buster
CVE-2021-28861Python 3.x through 3.10 has an open redirection vulnerability in lib/h ...buster
python3.9CVE-2020-27619In Python 3 through 3.9.0, the Lib/test/multibytecodec_support.py CJK ...bullseye
CVE-2021-28861Python 3.x through 3.10 has an open redirection vulnerability in lib/h ...bullseye
CVE-2022-37454The Keccak XKCP SHA-3 reference implementation before fdc6fef has an i ...bullseye
pyyamlCVE-2017-18342In PyYAML before 5.1, the yaml.load() API could execute arbitrary code ...buster, jessie, stretch
qbittorrentCVE-2023-30801All versions of the qBittorrent client through 4.5.5 use default crede ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
qemuCVE-2016-10028The virgl_cmd_get_capset function in hw/display/virtio-gpu-3d.c in QEM ...stretch
CVE-2017-5552Memory leak in the virgl_resource_attach_backing function in hw/displa ...stretch
CVE-2017-5578Memory leak in the virtio_gpu_resource_attach_backing function in hw/d ...stretch
CVE-2017-8284The disas_insn function in target/i386/translate.c in QEMU before 2.9. ...jessie, stretch
CVE-2017-9060Memory leak in the virtio_gpu_set_scanout function in hw/display/virti ...stretch
CVE-2018-20123pvrdma_realize in hw/rdma/vmw/pvrdma_main.c in QEMU has a Memory leak ...buster
CVE-2018-20124hw/rdma/rdma_backend.c in QEMU allows guest OS users to trigger out-of ...buster
CVE-2018-20125hw/rdma/vmw/pvrdma_cmd.c in QEMU allows attackers to cause a denial of ...buster
CVE-2018-20126hw/rdma/vmw/pvrdma_cmd.c in QEMU allows create_cq and create_qp memory ...buster
CVE-2018-20191hw/rdma/vmw/pvrdma_main.c in QEMU does not implement a read operation ...buster
CVE-2018-20216QEMU can have an infinite loop in hw/rdma/vmw/pvrdma_dev_ring.c becaus ...buster
CVE-2019-12247QEMU 3.0.0 has an Integer Overflow because the qga/commands*.c files d ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-12928The QMP migrate command in QEMU version 4.0.0 and earlier is vulnerabl ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-12929The QMP guest_exec command in QEMU 4.0.0 and earlier is prone to OS co ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-20175An issue was discovered in ide_dma_cb() in hw/ide/core.c in QEMU 2.4.0 ...buster, jessie, stretch
CVE-2020-24352An issue was discovered in QEMU through 5.1.0. An out-of-bounds memory ...bookworm, bullseye, sid, trixie
CVE-2022-35414softmmu/physmem.c in QEMU through 7.0.0 can perform an uninitialized r ...bullseye, jessie, stretch
qpdfCVE-2022-34503QPDF v8.4.2 was discovered to contain a heap buffer overflow via the f ...buster, jessie, stretch
qpid-protonCVE-2018-17187The Apache Qpid Proton-J transport includes an optional wrapper layer ...jessie, stretch
qt4-x11CVE-2009-3015QtWeb 3.0 Builds 001 and 003 does not properly block javascript: and d ...buster, jessie, stretch
CVE-2009-3272Stack consumption vulnerability in WebKit.dll in WebKit in Apple Safar ...buster, jessie, stretch
TEMP-0560108-565B70browser-based css info disclosurebuster, jessie, stretch
TEMP-0568486-B6FCB6browser javascript document.write denial-of-servicebuster, jessie, stretch
qt6-baseCVE-2023-45935Qt 6 through 6.6 was discovered to contain a NULL pointer dereference ...bookworm, sid, trixie, bookworm, bullseye, buster, sid, stretch, trixie, bookworm, bullseye, sid, trixie
qtdeclarative-opensource-srcCVE-2022-40983An integer overflow vulnerability exists in the QML QtScript Reflect A ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-43591A buffer overflow vulnerability exists in the QML QtScript Reflect API ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
qtdeclarative-opensource-src-glesCVE-2022-40983An integer overflow vulnerability exists in the QML QtScript Reflect A ...bookworm, bullseye, sid, trixie
CVE-2022-43591A buffer overflow vulnerability exists in the QML QtScript Reflect API ...bookworm, bullseye, sid, trixie
qtwebkitCVE-2015-8079qt5-qtwebkit before 5.4 records private browsing URLs to its favicon d ...buster, jessie, stretch
quaggaCVE-2012-5521quagga (ospf6d) 0.99.21 has a DoS flaw in the way the ospf6d daemon pe ...buster, jessie, stretch
qutebrowserCVE-2020-11054In qutebrowser versions less than 1.11.1, reloading a page with certif ...buster
r-cran-readxlCVE-2021-27836An issue was discoverered in in function xls_getWorkSheet in xls.c in ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2023-38851Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacke ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2023-38852Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacke ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2023-38853Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacke ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2023-38854Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacke ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2023-38855Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacke ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2023-38856Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacke ...bookworm, bullseye, buster, sid, stretch, trixie
radsecproxyCVE-2021-32642radsecproxy is a generic RADIUS proxy that supports both UDP and TLS ( ...buster, jessie, stretch
railsCVE-2010-3299The encrypt/decrypt functions in Ruby on Rails 2.3 are vulnerable to p ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2011-3187The to_s method in actionpack/lib/action_dispatch/middleware/remote_ip ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-17916SQL injection vulnerability in the 'find_by' method in Ruby on Rails 5 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-17917SQL injection vulnerability in the 'where' method in Ruby on Rails 5.1 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-17919SQL injection vulnerability in the 'order' method in Ruby on Rails 5.1 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-17920SQL injection vulnerability in the 'reorder' method in Ruby on Rails 5 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-3704A vulnerability classified as problematic has been found in Ruby on Ra ...bookworm, bullseye, buster, sid, stretch, trixie
rbdoom3bfgCVE-2020-15007A buffer overflow in the M_LoadDefaults function in m_misc.c in id Tec ...bookworm, bullseye, buster, sid, stretch, trixie
re2cCVE-2018-21232re2c before 2.0 has uncontrolled recursion that causes stack consumpti ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-23901A stack overflow re2c 2.2 exists due to infinite recursion issues in s ...bullseye, buster, jessie, stretch
recutilsCVE-2019-6455An issue was discovered in GNU Recutils 1.8. There is a double-free pr ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2019-6456An issue was discovered in GNU Recutils 1.8. There is a NULL pointer d ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2019-6457An issue was discovered in GNU Recutils 1.8. There is a memory leak in ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2019-6458An issue was discovered in GNU Recutils 1.8. There is a memory leak in ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2019-6459An issue was discovered in GNU Recutils 1.8. There is a memory leak in ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2019-6460An issue was discovered in GNU Recutils 1.8. There is a NULL pointer d ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2019-11637An issue was discovered in GNU recutils 1.8. There is a NULL pointer d ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2019-11638An issue was discovered in GNU recutils 1.8. There is a NULL pointer d ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2019-11639An issue was discovered in GNU recutils 1.8. There is a stack-based bu ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2019-11640An issue was discovered in GNU recutils 1.8. There is a heap-based buf ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2021-46019An untrusted pointer dereference in rec_db_destroy() at rec-db.c of GN ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2021-46021An Use-After-Free vulnerability in rec_record_destroy() at rec-record. ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2021-46022An Use-After-Free vulnerability in rec_mset_elem_destroy() at rec-mset ...bookworm, bullseye, buster, jessie, sid, stretch
redisCVE-2017-15047The clusterLoadConfig function in cluster.c in Redis 4.0.2 allows atta ...stretch
CVE-2020-21468A segmentation fault in the redis-server component of Redis 5.0.7 lead ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-3470A heap overflow issue was found in Redis in versions before 5.0.10, be ...buster, jessie, stretch
CVE-2022-3647** DISPUTED ** A vulnerability, which was classified as problematic, w ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
remindCVE-2015-5957Buffer overflow in the DumpSysVar function in var.c in Remind before 3 ...jessie
resiprocateCVE-2017-9454Buffer overflow in the ares_parse_a_reply function in the embedded are ...jessie, stretch
retroarchCVE-2020-23914An issue was discovered in cpp-peglib through v0.1.12. A NULL pointer ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2020-23915An issue was discovered in cpp-peglib through v0.1.12. peg::resolve_es ...bookworm, bullseye, buster, sid, stretch, trixie
rhn-client-toolsCVE-2015-1777rhnreg_ks in Red Hat Network Client Tools (aka rhn-client-tools) on Re ...jessie, stretch
rhythmboxCVE-2008-7185GNOME Rhythmbox 0.11.5 allows remote attackers to cause a denial of se ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
rieceTEMP-0601325-4C9A5Binsecure handling of /tmp files in debian/preinstjessie
ringCVE-2022-24786PJSIP is a free and open source multimedia communication library writt ...bullseye, buster, stretch
CVE-2022-24792PJSIP is a free and open source multimedia communication library writt ...bullseye, buster, stretch
CVE-2023-38703PJSIP is a free and open source multimedia communication library writt ...bookworm, bullseye, buster, sid, trixie
roundcubeCVE-2020-12640Roundcube Webmail before 1.4.4 allows attackers to include local files ...stretch
CVE-2020-12641rcube_image.php in Roundcube Webmail before 1.4.4 allows attackers to ...stretch
rpmCVE-2010-2198lib/fsm.c in RPM 4.8.0 and earlier does not properly reset the metadat ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2010-2199lib/fsm.c in RPM 4.8.0 and earlier does not properly reset the metadat ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-7500It was found that rpm did not properly handle RPM installations when a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-7501It was found that versions of rpm before 4.13.0.2 use temporary files ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
rsyslogCVE-2015-3243rsyslog uses weak permissions for generating log files, which allows l ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-12588The zmq3 input and output modules in rsyslog before 8.28.0 interpreted ...jessie, stretch
rtpproxyCVE-2017-14114RTPproxy through 2.2.alpha.20160822 has a NAT feature that results in ...jessie, stretch
rtvCVE-2017-17516scripts/inspect_webbrowser.py in Reddit Terminal Viewer (RTV) 1.19.0 d ...bookworm, bullseye, buster, sid, stretch, trixie
ruamel.yamlCVE-2019-20478In ruamel.yaml through 0.16.7, the load method allows remote code exec ...bookworm, bullseye, buster, sid, stretch, trixie
ruby-handlebars-assetsTEMP-0000000-345A3Bhandlebars: quoteless attributes in templates can lead to content injectionbookworm, bullseye, buster, jessie, sid, stretch, trixie
ruby-nokogiriCVE-2022-29181Nokogiri is an open source XML and HTML library for Ruby. Nokogiri pri ...bullseye, buster, jessie, stretch
ruby-oauthCVE-2016-11086lib/oauth/consumer.rb in the oauth-ruby gem through 0.5.4 for Ruby doe ...bookworm, bullseye, buster, sid, stretch, trixie
ruby2.1CVE-2014-3916The str_buf_cat function in string.c in Ruby 1.9.3, 2.0.0, and 2.1 all ...jessie
rust-failureCVE-2020-25575An issue was discovered in the failure crate through 0.1.5 for Rust. I ...bookworm, bullseye, buster, sid, trixie
rustcCVE-2021-42574An issue was discovered in the Bidirectional Algorithm in the Unicode ...bullseye, buster, stretch
s3dCVE-2014-1226The pipe_init_terminal function in main.c in s3dvt allows local users ...jessie
saltCVE-2021-22004An issue was discovered in SaltStack Salt before 3003.3. The salt mini ...bullseye, buster, jessie, stretch
sambaCVE-2019-3824A flaw was found in the way an LDAP search expression could crash the ...jessie, stretch
CVE-2020-27840A flaw was found in samba. Spaces used in a string around a domain nam ...bullseye, buster, jessie, stretch
CVE-2021-20277A flaw was found in Samba's libldb. Multiple, consecutive leading spac ...bullseye, buster, jessie, stretch
sane-backendsCVE-2023-46047An issue in Sane 1.2.1 allows a local attacker to execute arbitrary co ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-46052Sane 1.2.1 heap bounds overwrite in init_options() from backend/test.c ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
sargCVE-2019-18932log.c in Squid Analysis Report Generator (sarg) through 2.3.11 allows ...jessie, stretch
scalaCVE-2017-15288The compilation daemon in Scala before 2.10.7, 2.11.x before 2.11.12, ...jessie, stretch
schismCVE-2021-32419An issue in Schism Tracker v20200412 fixed in v.20200412 allows attack ...bullseye, buster, jessie, stretch
scikit-learnCVE-2020-13092scikit-learn (aka sklearn) through 0.23.0 can unserialize and execute ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
scilabCVE-2019-20005An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20006An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20007An issue was discovered in ezXML 0.8.2 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20198An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20199An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20200An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20201An issue was discovered in ezXML 0.8.3 through 0.8.6. The ezxml_parse_ ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-20202An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-26220The ezxml_toxml function in ezxml 0.8.6 and earlier is vulnerable to O ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-26221The ezxml_new function in ezXML 0.8.6 and earlier is vulnerable to OOB ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-26222The ezxml_new function in ezXML 0.8.6 and earlier is vulnerable to OOB ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2021-30485An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, trixie
CVE-2021-31229An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, trixie
CVE-2021-31347An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, trixie
CVE-2021-31348An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, trixie
CVE-2021-31598An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, trixie
CVE-2022-30045An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezx ...bookworm, bullseye, buster, sid, trixie
screenCVE-2023-24626socket.c in GNU Screen through 4.9.0, when installed setuid or setgid ...bookworm, bullseye, buster, jessie, stretch
scummvmCVE-2017-17528backends/platform/sdl/posix/posix.cpp in ScummVM 1.9.0 does not valida ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
seahorseCVE-2008-7320GNOME Seahorse through 3.30 allows physically proximate attackers to r ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
shadowCVE-2007-5686initscripts in rPath Linux 1 sets insecure permissions for the /var/lo ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2013-4235shadow: TOCTOU (time-of-check time-of-use) race condition when copying ...bullseye, buster, jessie, stretch
CVE-2019-19882shadow 4.8, in certain circumstances affecting at least Gentoo, Arch L ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
TEMP-0628843-DBAD28more related to CVE-2005-4890bookworm, bullseye, buster, jessie, sid, stretch, trixie
shadowsocks-libevCVE-2019-5152An exploitable information disclosure vulnerability exists in the netw ...bookworm, bullseye, buster, sid, stretch
shairport-syncCVE-2017-12087An exploitable heap overflow vulnerability exists in the tinysvcmdns l ...stretch
sharutilsTEMP-0000000-95CBBFuudecode: stack out of bounds read accessbookworm, bullseye, buster, jessie, sid, stretch, trixie
shibboleth-spCVE-2019-19191Shibboleth Service Provider (SP) 3.x before 3.1.0 shipped a spec file ...bookworm, bullseye, buster, sid, trixie
shotwellCVE-2017-1000024Shotwell version 0.24.4 or earlier and 0.25.3 or earlier is vulnerable ...jessie
simplesamlphpCVE-2016-3124The sanitycheck module in SimpleSAMLphp before 1.14.1 allows remote at ...jessie
singularCVE-2022-40299In Singular before 4.3.1, a predictable /tmp pathname is used (e.g., b ...bookworm, bullseye, buster, sid, stretch, trixie
sipcrackCVE-2017-11654An out-of-bounds read and write flaw was found in the way SIPcrack 0.2 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-11655A memory leak was found in the way SIPcrack 0.2 handled processing of ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
slang2CVE-2023-45927S-Lang 2.3.2 was discovered to contain an arithmetic exception via the ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-45929S-Lang 2.3.2 was discovered to contain a segmentation fault via the fu ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
sleuthkitCVE-2017-13755In The Sleuth Kit (TSK) 4.4.2, opening a crafted ISO 9660 image trigge ...jessie
CVE-2017-13756In The Sleuth Kit (TSK) 4.4.2, opening a crafted disk image triggers i ...jessie
CVE-2017-13760In The Sleuth Kit (TSK) 4.4.2, fls hangs on a corrupt exfat image in t ...jessie
CVE-2018-11737An issue was discovered in libtskfs.a in The Sleuth Kit (TSK) from rel ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-11738An issue was discovered in libtskfs.a in The Sleuth Kit (TSK) from rel ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-11739An issue was discovered in libtskimg.a in The Sleuth Kit (TSK) from re ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-11740An issue was discovered in libtskbase.a in The Sleuth Kit (TSK) from r ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-14531An issue was discovered in The Sleuth Kit (TSK) 4.6.6. There is an out ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-14532An issue was discovered in The Sleuth Kit (TSK) 4.6.6. There is an off ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-1010065The Sleuth Kit 4.6.0 and earlier is affected by: Integer Overflow. The ...jessie
CVE-2020-10233In version 4.8.0 and earlier of The Sleuth Kit (TSK), there is a heap- ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
slic3rCVE-2020-28590An out-of-bounds read vulnerability exists in the Obj File TriangleMes ...bookworm, bullseye, buster, sid
CVE-2020-28591An out-of-bounds read vulnerability exists in the AMF File AMFParserCo ...buster
CVE-2021-44961A memory leakage flaw exists in the class PerimeterGenerator of Slic3r ...bookworm, bullseye, buster, sid
CVE-2021-44962An out-of-bounds read vulnerability exists in the GCode::extrude() fun ...bookworm, bullseye, buster, sid
CVE-2021-45846A flaw in the AMF parser of Slic3r libslic3r 1.3.0 allows an attacker ...bookworm, bullseye, buster, sid
CVE-2021-45847Several missing input validations in the 3MF parser component of Slic3 ...bookworm, bullseye, buster, sid
slimTEMP-0537604-F35BD7insecure tmp file vulnerability in slimbookworm, bullseye, buster, jessie, sid, stretch, trixie
slurm-llnlCVE-2019-19727SchedMD Slurm before 18.08.9 and 19.x before 19.05.5 has weak slurmdbd ...buster, jessie, stretch
smsclientCVE-2008-5155mail2sms.sh in smsclient 2.0.8z allows local users to overwrite arbitr ...jessie
TEMP-0498901-F99C05unsafe use of tempfile in ssmclientjessie
snakeyamlCVE-2022-1471SnakeYaml's Constructor() class does not restrict types which can be i ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-38752Using snakeYAML to parse untrusted YAML files may be vulnerable to Den ...bullseye, buster, jessie, stretch
CVE-2022-41854Those using Snakeyaml to parse untrusted YAML files may be vulnerable ...bullseye
sngrepCVE-2023-31981Sngrep v1.6.0 was discovered to contain a stack buffer overflow via th ...bookworm, bullseye, buster
CVE-2023-31982Sngrep v1.6.0 was discovered to contain a heap buffer overflow via the ...bookworm, bullseye, buster
CVE-2023-36192Sngrep v1.6.0 was discovered to contain a heap buffer overflow via the ...bookworm, bullseye, buster, stretch
software-propertiesCVE-2020-15709Versions of add-apt-repository before 0.98.9.2, 0.96.24.32.14, 0.96.20 ...bookworm, bullseye, buster, sid, trixie
sosreportCVE-2014-0246SOSreport stores the md5 hash of the GRUB bootloader password in an ar ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2015-7529sosreport in SoS 3.x allows local users to obtain sensitive informatio ...jessie
sphinxsearchCVE-2019-14511Sphinx Technologies Sphinx 3.1.1 by default has no authentication and ...buster, stretch
spice-gtkCVE-2016-3066The spice-gtk widget allows remote authenticated users to obtain infor ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
spotwebCVE-2021-40968Cross-site scripting (XSS) vulnerability in templates/installer/step-0 ...buster, jessie, stretch
CVE-2021-40969Cross-site scripting (XSS) vulnerability in templates/installer/step-0 ...buster, jessie, stretch
CVE-2021-40970Cross-site scripting (XSS) vulnerability in templates/installer/step-0 ...buster, jessie, stretch
CVE-2021-40971Cross-site scripting (XSS) vulnerability in templates/installer/step-0 ...buster, jessie, stretch
CVE-2021-40972Cross-site scripting (XSS) vulnerability in templates/installer/step-0 ...buster, jessie, stretch
CVE-2021-40973Cross-site scripting (XSS) vulnerability in templates/installer/step-0 ...buster, jessie, stretch
sql-ledgerCVE-2007-0667The redirect function in Form.pm for (1) LedgerSMB before 1.1.5 and (2 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2007-1329Directory traversal vulnerability in SQL-Ledger, and LedgerSMB before ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2007-1923(1) LedgerSMB and (2) DWS Systems SQL-Ledger implement access control ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2007-5372Multiple SQL injection vulnerabilities in (a) LedgerSMB 1.0.0 through ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2008-4077The CGI scripts in (1) LedgerSMB (LSMB) before 1.2.15 and (2) SQL-Ledg ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2008-4078SQL injection vulnerability in the AR/AP transaction report in (1) Led ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2009-3580Cross-site request forgery (CSRF) vulnerability in am.pl in SQL-Ledger ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2009-3581Multiple cross-site scripting (XSS) vulnerabilities in SQL-Ledger 2.8. ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2009-3582Multiple SQL injection vulnerabilities in the delete subroutine in SQL ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2009-3583Directory traversal vulnerability in the Preferences menu item in SQL- ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2009-3584SQL-Ledger 2.8.24 does not set the secure flag for the session cookie ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2009-4402The default configuration of SQL-Ledger 2.8.24 allows remote attackers ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
sqliteCVE-2017-13685The dump_callback function in SQLite 3.20.0 allows remote attackers to ...buster, jessie, stretch
CVE-2021-45346A Memory Leak vulnerability exists in SQLite Project SQLite3 3.35.1 an ...buster, jessie, stretch
CVE-2022-35737SQLite 1.0.12 through 3.39.x before 3.39.2 sometimes allows an array-b ...buster, jessie, stretch
sqlite3CVE-2017-13685The dump_callback function in SQLite 3.20.0 allows remote attackers to ...jessie, stretch
CVE-2019-19244sqlite3Select in select.c in SQLite 3.30.1 allows a crash if a sub-sel ...buster
CVE-2020-11656In SQLite through 3.31.1, the ALTER TABLE implementation has a use-aft ...buster, jessie, stretch
CVE-2021-36690A segmentation fault can occur in the sqlite3.exe command-line compone ...bullseye, buster
CVE-2021-45346A Memory Leak vulnerability exists in SQLite Project SQLite3 3.35.1 an ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-35737SQLite 1.0.12 through 3.39.x before 3.39.2 sometimes allows an array-b ...bullseye, buster, jessie, stretch
sqliteodbcCVE-2020-12050SQLiteODBC 0.9996, as packaged for certain Linux distributions as 0.99 ...bookworm, bullseye, buster, sid, stretch, trixie
squidCVE-2019-12522An issue was discovered in Squid through 4.7. When Squid is run as roo ...bookworm, bullseye, buster, sid, trixie
CVE-2020-8517An issue was discovered in Squid before 4.10. Due to incorrect input v ...buster
CVE-2020-14058An issue was discovered in Squid before 4.12 and 5.x before 5.0.3. Due ...buster
squid3CVE-2018-1172This vulnerability allows remote attackers to deny service on vulnerab ...jessie, stretch
CVE-2018-19131Squid before 4.4 has XSS via a crafted X.509 certificate during HTTP(S ...jessie, stretch
CVE-2019-12522An issue was discovered in Squid through 4.7. When Squid is run as roo ...jessie, stretch
CVE-2020-8517An issue was discovered in Squid before 4.10. Due to incorrect input v ...jessie, stretch
CVE-2020-14058An issue was discovered in Squid before 4.12 and 5.x before 5.0.3. Due ...jessie, stretch
squidguardCVE-2015-8936Cross-site scripting (XSS) vulnerability in squidGuard.cgi in squidGua ...jessie
ssmtpCVE-2004-0423The log_event function in ssmtp 2.50.6 and earlier allows local users ...bookworm, bullseye, jessie, sid, stretch, trixie
CVE-2008-7258The standardise function in Anibal Monsalve Salazar sSMTP 2.61 and 2.6 ...bookworm, bullseye, jessie, sid, stretch, trixie
stalinCVE-2015-8697stalin 0.11-5 allows local users to write to arbitrary files.bookworm, bullseye, buster, jessie, sid, stretch, trixie
strongswanCVE-2018-5389The Internet Key Exchange v1 main mode is vulnerable to offline dictio ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
sudoCVE-2005-1119Sudo VISudo 1.6.8 and earlier allows local users to corrupt arbitrary ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-19232In Sudo through 1.8.29, an attacker with access to a Runas ALL sudoer ...buster, jessie, stretch
CVE-2019-19234In Sudo through 1.8.29, the fact that a user has been blocked (e.g., b ...buster, jessie, stretch
CVE-2021-23240selinux_edit_copy_tfiles in sudoedit in Sudo before 1.9.5 allows a loc ...buster, jessie, stretch
CVE-2022-43995Sudo 1.8.0 through 1.9.12, with the crypt() password backend, contains ...bullseye, buster, jessie, stretch
supervisorCVE-2019-12105In Supervisor through 4.0.2, an unauthenticated user can read log file ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
surfCVE-2014-3566The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other prod ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
svgppCVE-2019-6245An issue was discovered in Anti-Grain Geometry (AGG) 2.4 as used in SV ...bookworm, bullseye, sid, trixie
CVE-2019-6247An issue was discovered in Anti-Grain Geometry (AGG) 2.4 as used in SV ...bookworm, bullseye, sid, trixie
swfmillCVE-2022-36140SWFMill commit 53d7690 was discovered to contain a segmentation violat ...bullseye, buster, sid
CVE-2022-36141SWFMill commit 53d7690 was discovered to contain a segmentation violat ...bullseye, buster, sid
CVE-2022-36142SWFMill commit 53d7690 was discovered to contain a heap-buffer overflo ...bullseye, buster, sid
CVE-2022-36143SWFMill commit 53d7690 was discovered to contain a heap-buffer overflo ...bullseye, buster, sid
CVE-2022-36145SWFMill commit 53d7690 was discovered to contain a segmentation violat ...bullseye, buster, sid
CVE-2022-36146SWFMill commit 53d7690 was discovered to contain a memory allocation i ...bullseye, buster, sid
swftoolsCVE-2017-8401In SWFTools 0.9.2, an out-of-bounds read of heap data can occur in the ...jessie, stretch
CVE-2017-8420SWFTools 2013-04-09-1007 on Windows has a "Data from Faulting Address ...jessie, stretch
CVE-2017-9924In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attacker ...jessie, stretch
CVE-2017-9925In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attacker ...jessie, stretch
CVE-2017-9926In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attacker ...jessie, stretch
CVE-2017-9927In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attacker ...jessie, stretch
CVE-2017-10976When SWFTools 0.9.2 processes a crafted file in ttftool, it can lead t ...jessie, stretch
CVE-2017-11096When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lea ...jessie, stretch
CVE-2017-11097When SWFTools 0.9.2 processes a crafted file in swfc, it can lead to a ...jessie, stretch
CVE-2017-11098When SWFTools 0.9.2 processes a crafted file in png2swf, it can lead t ...jessie, stretch
CVE-2017-11099When SWFTools 0.9.2 processes a crafted file in wav2swf, it can lead t ...jessie, stretch
CVE-2017-11100When SWFTools 0.9.2 processes a crafted file in swfextract, it can lea ...jessie, stretch
CVE-2017-11101When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lea ...jessie, stretch
CVE-2017-16711The swf_DefineLosslessBitsTagToImage function in lib/modules/swfbits.c ...jessie, stretch
CVE-2017-16794The png_load function in lib/png.c in SWFTools 0.9.2 does not properly ...jessie, stretch
CVE-2017-16796In SWFTools 0.9.2, the png_load function in lib/png.c does not check t ...jessie, stretch
CVE-2017-16868In SWFTools 0.9.2, the wav_convert2mono function in lib/wav.c does not ...jessie, stretch
CVE-2017-16890SWFTools 0.9.2 has a divide-by-zero error in the wav_convert2mono func ...jessie, stretch
CVE-2017-1000174In SWFTools, an address access exception was found in swfdump swf_GetB ...jessie, stretch
CVE-2017-1000182In SWFTools, a memory leak was found in wav2swf.jessie, stretch
CVE-2017-1000186In SWFTools, a stack overflow was found in pdf2swf.jessie, stretch
CVE-2017-1000187In SWFTools, an address access exception was found in pdf2swf. FoFiTru ...jessie, stretch
CVE-2023-26991SWFTools v0.9.2 was discovered to contain a stack-use-after-scope in t ...jessie, stretch
CVE-2023-27249swfdump v0.9.2 was discovered to contain a heap buffer overflow in the ...jessie, stretch
CVE-2023-29950swfrender v0.9.2 was discovered to contain a heap buffer overflow in t ...jessie, stretch
swi-prologCVE-2017-17524library/www_browser.pl in SWI-Prolog 7.2.3 does not validate strings b ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
sylpheedCVE-2007-1267Sylpheed 2.2.7 and earlier does not properly use the --status-fd argum ...bookworm, bullseye, buster, jessie, sid, stretch
CVE-2017-17517libsylph/utils.c in Sylpheed through 3.6 does not validate strings bef ...bookworm, bullseye, buster, jessie, sid, stretch
symfonyCVE-2017-18343The debug handler in Symfony before v2.7.33, 2.8.x before v2.8.26, 3.x ...jessie, stretch
CVE-2018-12040Reflected Cross-site scripting (XSS) vulnerability in the web profiler ...jessie, stretch
systemdCVE-2013-4392systemd, when updating file permissions, allows local users to change ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-18078systemd-tmpfiles in systemd before 237 attempts to support ownership/p ...stretch
CVE-2017-1000082systemd v233 and earlier fails to safely parse usernames starting with ...stretch
CVE-2019-20386An issue was discovered in button_open in login/logind-button.c in sys ...buster, jessie, stretch
CVE-2020-13529An exploitable denial-of-service vulnerability exists in Systemd 245. ...bullseye, buster, jessie, stretch
CVE-2020-13776systemd through v245 mishandles numerical usernames such as ones compo ...jessie, stretch
CVE-2023-31437An issue was discovered in systemd 253. An attacker can modify a seale ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-31438An issue was discovered in systemd 253. An attacker can truncate a sea ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-31439An issue was discovered in systemd 253. An attacker can modify the con ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
sysvinitTEMP-0517018-A83CE6sysvinit: no-root option in expert installer exposes locally exploitable security flawbookworm, bullseye, buster, jessie, sid, stretch, trixie
t1utilsTEMP-0868134-294030out-of-bounds read in eexec_line()stretch
tarCVE-2005-2541Tar 1.15.1 does not properly warn the user when extracting setuid or s ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-9923pax_decode_header in sparse.c in GNU Tar before 1.32 had a NULL pointe ...buster, jessie, stretch
CVE-2021-20193A flaw was found in the src/list.c of tar 1.33 and earlier. This flaw ...buster, jessie, stretch
CVE-2022-48303GNU Tar through 1.34 has a one-byte out-of-bounds read that results in ...buster, jessie, stretch
TEMP-0290435-0B57B5tar's rmt command may have undesired side effectsbookworm, bullseye, buster, jessie, sid, stretch, trixie
tccCVE-2018-20374An issue was discovered in Tiny C Compiler (aka TinyCC or TCC) 0.9.27. ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-20375An issue was discovered in Tiny C Compiler (aka TinyCC or TCC) 0.9.27. ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-20376An issue was discovered in Tiny C Compiler (aka TinyCC or TCC) 0.9.27. ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
tcl8.5CVE-2021-35331In Tcl 8.6.11, a format string vulnerability in nmakehlp.c might allow ...jessie, stretch, bookworm, bullseye, buster, jessie, sid, stretch, trixie
tcpdumpCVE-2018-16301The command-line argument parser in tcpdump before 4.99.0 has a buffer ...buster, jessie, stretch
CVE-2018-19519In tcpdump 4.9.2, a stack-based buffer over-read exists in the print_p ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-1010220tcpdump.org tcpdump 4.9.2 is affected by: CWE-126: Buffer Over-read. T ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-1801The SMB protocol decoder in tcpdump version 4.99.3 can perform an out- ...bookworm, bullseye, buster, jessie, stretch
tcpflowCVE-2018-18409A stack-based buffer over-read exists in setbit() at iptree.h of TCPFL ...jessie, stretch
tcpreplayCVE-2019-8376An issue was discovered in Tcpreplay 4.3.1. A NULL pointer dereference ...buster, jessie, stretch
CVE-2019-8377An issue was discovered in Tcpreplay 4.3.1. A NULL pointer dereference ...buster, jessie, stretch
CVE-2019-8381An issue was discovered in Tcpreplay 4.3.1. An invalid memory access o ...buster, jessie, stretch
CVE-2020-12740tcprewrite in Tcpreplay through 4.3.2 has a heap-based buffer over-rea ...buster, stretch
CVE-2020-18976Buffer Overflow in Tcpreplay v4.3.2 allows attackers to cause a Denial ...buster, stretch
CVE-2020-23273Heap-buffer overflow in the randomize_iparp function in edit_packet.c. ...buster, jessie, stretch
CVE-2020-24265An issue was discovered in tcpreplay tcpprep v4.3.3. There is a heap b ...bullseye, buster, stretch
CVE-2020-24266An issue was discovered in tcpreplay tcpprep v4.3.3. There is a heap b ...bullseye, buster, stretch
CVE-2021-45386tcpreplay 4.3.4 has a Reachable Assertion in add_tree_ipv6() at tree.cbullseye, buster, stretch
CVE-2021-45387tcpreplay 4.3.4 has a Reachable Assertion in add_tree_ipv4() at tree.c ...bullseye, buster, stretch
CVE-2022-25484tcpprep v4.4.1 has a reachable assertion (assert(l2len > 0)) in packet ...bullseye, buster, jessie, stretch
CVE-2022-27416Tcpreplay v4.4.1 was discovered to contain a double-free via __interce ...bullseye, buster, jessie, stretch
CVE-2022-27418Tcpreplay v4.4.1 has a heap-based buffer overflow in do_checksum_math ...bullseye, buster, jessie, stretch
CVE-2022-27939tcprewrite in Tcpreplay 4.4.1 has a reachable assertion in get_layer4_ ...bullseye, buster, stretch
CVE-2022-27940tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get ...bullseye, buster, stretch
CVE-2022-27941tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get ...bullseye, buster, stretch
CVE-2022-27942tcpprep in Tcpreplay 4.4.1 has a heap-based buffer over-read in parse_ ...bullseye, buster, stretch
CVE-2022-28487Tcpreplay version 4.4.1 contains a memory leakage flaw in fix_ipv6_che ...bullseye, buster, stretch
CVE-2022-37047The component tcprewrite in Tcpreplay v4.4.1 was discovered to contain ...bullseye, buster
CVE-2022-37048The component tcprewrite in Tcpreplay v4.4.1 was discovered to contain ...bullseye, buster
CVE-2022-37049The component tcpprep in Tcpreplay v4.4.1 was discovered to contain a ...bullseye, buster, jessie, stretch
CVE-2023-4256Within tcpreplay's tcprewrite, a double free vulnerability has been id ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-27783An issue found in TCPreplay tcprewrite v.4.4.3 allows a remote attacke ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-27784An issue found in TCPReplay v.4.4.3 allows a remote attacker to cause ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-27785An issue found in TCPreplay TCPprep v.4.4.3 allows a remote attacker t ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-27786An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-27787An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-27788An issue found in TCPrewrite v.4.4.3 allows a remote attacker to cause ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-27789An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-43279Null Pointer Dereference in mask_cidr6 component at cidr.c in Tcprepla ...bookworm, bullseye, buster, sid, trixie
CVE-2024-3024A vulnerability was found in appneta tcpreplay up to 4.4.4. It has bee ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
telegram-desktopCVE-2018-17231Telegram Desktop (aka tdesktop) 1.3.14 might allow attackers to cause ...bookworm, bullseye, buster, sid
CVE-2018-17613Telegram Desktop (aka tdesktop) 1.3.16 alpha, when "Use proxy" is enab ...bookworm, bullseye, buster, sid
texlive-baseCVE-2017-17513TeX Live through 20170524 does not validate strings before launching t ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
texlive-binCVE-2016-10243TeX Live allows remote attackers to execute arbitrary commands by leve ...buster, jessie, stretch
CVE-2017-17513TeX Live through 20170524 does not validate strings before launching t ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-19601OpenDetex 2.8.5 has a Buffer Overflow in TexOpen in detex.l because of ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-33047OTFCC v0.10.4 was discovered to contain a heap buffer overflow after f ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35021OTFCC commit 617837b was discovered to contain a global buffer overflo ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35022OTFCC commit 617837b was discovered to contain a segmentation violatio ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35023OTFCC commit 617837b was discovered to contain a segmentation violatio ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35024OTFCC commit 617837b was discovered to contain a segmentation violatio ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35025OTFCC commit 617837b was discovered to contain a segmentation violatio ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35026OTFCC commit 617837b was discovered to contain a segmentation violatio ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35027OTFCC commit 617837b was discovered to contain a segmentation violatio ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35028OTFCC commit 617837b was discovered to contain a segmentation violatio ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35029OTFCC commit 617837b was discovered to contain a segmentation violatio ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35030OTFCC commit 617837b was discovered to contain a segmentation violatio ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35031OTFCC commit 617837b was discovered to contain a segmentation violatio ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35032OTFCC commit 617837b was discovered to contain a segmentation violatio ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35034OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35035OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35036OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35037OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35038OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35039OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35040OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35041OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35042OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35043OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35044OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35045OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35046OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35047OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35048OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35049OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35050OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35051OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35052OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35053OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35054OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35055OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35056OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35058OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35059OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35060OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35061OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35062OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35063OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35064OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35065OTFCC commit 617837b was discovered to contain a segmentation violatio ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35066OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35067OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35068OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35069OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35070OTFCC commit 617837b was discovered to contain a heap buffer overflow ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35447OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35448OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35449OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35450OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35451OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35452OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35453OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35454OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35455OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35456OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35458OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35459OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, sid, trixie
CVE-2022-35460OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35461OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35462OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35463OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35464OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35465OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35466OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35467OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, sid, trixie
CVE-2022-35468OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, sid, trixie
CVE-2022-35469OTFCC v0.10.4 was discovered to contain a segmentation violation via / ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35470OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35471OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, sid, trixie
CVE-2022-35472OTFCC v0.10.4 was discovered to contain a global overflow via /release ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35473OTFCC v0.10.4 was discovered to contain a segmentation violation via / ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35474OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35475OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /re ...bookworm, sid, trixie
CVE-2022-35476OTFCC v0.10.4 was discovered to contain a segmentation violation via / ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35477OTFCC v0.10.4 was discovered to contain a segmentation violation via / ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35478OTFCC v0.10.4 was discovered to contain a segmentation violation via / ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35479OTFCC v0.10.4 was discovered to contain a segmentation violation via / ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35481OTFCC v0.10.4 was discovered to contain a segmentation violation via / ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35482OTFCC v0.10.4 was discovered to contain a segmentation violation via / ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35483OTFCC v0.10.4 was discovered to contain a segmentation violation via / ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35484OTFCC v0.10.4 was discovered to contain a segmentation violation via / ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35485OTFCC v0.10.4 was discovered to contain a segmentation violation via / ...bookworm, jessie, sid, stretch, trixie
CVE-2022-35486OTFCC v0.10.4 was discovered to contain a segmentation violation via / ...bookworm, jessie, sid, stretch, trixie
CVE-2023-46048Tex Live 944e257 has a NULL pointer dereference in texk/web2c/pdftexdi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-46051TeX Live 944e257 allows a NULL pointer dereference in texk/web2c/pdfte ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
thrift-compilerCVE-2016-5397The Apache Thrift Go client library exposed the potential during code ...jessie, stretch
thunarCVE-2018-18398Xfce Thunar 1.6.15, when Xfce 4.12 is used, mishandles the IBus-Unikey ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
TEMP-0517020-915121thunar: potential exploits via application launchersbookworm, bullseye, buster, jessie, sid, stretch, trixie
thunderbirdCVE-2023-5217Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior ...jessie, stretch
tiffCVE-2010-2596The OJPEGPostDecode function in tif_ojpeg.c in LibTIFF 3.9.0 and 3.9.2 ...jessie
CVE-2014-8127LibTIFF 4.0.3 allows remote attackers to cause a denial of service (ou ...jessie
CVE-2014-8130The _TIFFmalloc function in tif_unix.c in LibTIFF 4.0.3 does not rejec ...jessie
CVE-2016-9539tools/tiffcrop.c in libtiff 4.0.6 has an out-of-bounds read in readCon ...jessie
CVE-2016-10268tools/tiffcp.c in LibTIFF 4.0.7 allows remote attackers to cause a den ...jessie
CVE-2017-5563LibTIFF version 4.0.7 is vulnerable to a heap-based buffer over-read i ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-9117In LibTIFF 4.0.7, the program processes BMP images without verifying t ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-16232LibTIFF 4.0.8 has multiple memory leak vulnerabilities, which allow at ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-17973In LibTIFF 4.0.8, there is a heap-based use-after-free in the t2p_writ ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-10126LibTIFF 4.0.9 has a NULL pointer dereference in the jpeg_fdct_16x16 fu ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18661An issue was discovered in LibTIFF 4.0.9. There is a NULL pointer dere ...stretch
CVE-2019-6128The TIFFFdOpen function in tif_unix.c in LibTIFF 4.0.10 has a memory l ...stretch
CVE-2020-35521A flaw was found in libtiff. Due to a memory allocation failure in tif ...buster, jessie, stretch
CVE-2020-35522In LibTIFF, there is a memory malloc failure in tif_pixarlog.c. A craf ...buster, jessie, stretch
CVE-2022-1056Out-of-bounds Read error in tiffcrop in libtiff 4.3.0 allows attackers ...bullseye, buster, jessie, stretch
CVE-2022-1210A vulnerability classified as problematic was found in LibTIFF 4.3.0. ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-2519There is a double free or corruption in rotateImage() at tiffcrop.c:88 ...buster, jessie, stretch
CVE-2022-2520A flaw was found in libtiff 4.4.0rc1. There is a sysmalloc assertion f ...buster, jessie, stretch
CVE-2022-2521It was found in libtiff 4.4.0rc1 that there is an invalid pointer free ...buster, jessie, stretch
CVE-2022-2953LibTIFF 4.4.0 has an out-of-bounds read in extractImageSection in tool ...buster, jessie, stretch
CVE-2023-1916A flaw was found in tiffcrop, a program distributed by the libtiff pac ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-3164A heap-buffer-overflow vulnerability was found in LibTIFF, in extractI ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-6228An issue was found in the tiffcp utility distributed by the libtiff pa ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-30775A vulnerability was found in the libtiff library. This security flaw c ...bullseye, buster, jessie, stretch
TEMP-0846838-9738BDtiffcrop: divide-by-zero in readSeparateStripsIntoBuffer when BitsPerSample is missingjessie
tilesCVE-2023-49735** UNSUPPORTED WHEN ASSIGNED ** The value set as the DefaultLocaleRes ...bookworm, bullseye, buster, sid, stretch, trixie
timidityCVE-2017-11546The insert_note_steps function in readmidi.c in TiMidity++ 2.14.0 allo ...jessie, stretch
CVE-2017-11547The resample_gauss function in resample.c in TiMidity++ 2.14.0 allows ...jessie, stretch
CVE-2017-11549The play_midi function in playmidi.c in TiMidity++ 2.14.0 allows remot ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
tinCVE-2017-17520tools/url_handler.pl in TIN 2.4.1 does not validate strings before lau ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
tinyexrCVE-2018-12687tinyexr 0.9.5 has an assertion failure in DecodePixelData in tinyexr.h ...bookworm, bullseye, sid, trixie
tinymuxCVE-2007-1959Unspecified vulnerability in the process_cmdent function in command.cp ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
tinysshCVE-2023-48795The SSH transport protocol with certain OpenSSH extensions, found in O ...bookworm, bullseye, buster
tinyxml2CVE-2018-11210TinyXML2 6.2.0 has a heap-based buffer over-read in the XMLDocument::P ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
tomcat7CVE-2012-5568Apache Tomcat through 7.0.x allows remote attackers to cause a denial ...jessie, stretch
CVE-2021-24122When serving resources from a network location using the NTFS file sys ...jessie, stretch
CVE-2022-34305In Apache Tomcat 10.1.0-M1 to 10.1.0-M16, 10.0.0-M1 to 10.0.22, 9.0.30 ...jessie, stretch
tomcat8CVE-2021-24122When serving resources from a network location using the NTFS file sys ...jessie
CVE-2022-34305In Apache Tomcat 10.1.0-M1 to 10.1.0-M16, 10.0.0-M1 to 10.0.22, 9.0.30 ...jessie, stretch
tomcat9CVE-2021-24122When serving resources from a network location using the NTFS file sys ...buster
CVE-2022-34305In Apache Tomcat 10.1.0-M1 to 10.1.0-M16, 10.0.0-M1 to 10.0.22, 9.0.30 ...bullseye, buster
torCVE-2006-6893Tor allows remote attackers to discover the IP address of a hidden ser ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2007-1103Tor does not verify a node's uptime and bandwidth advertisements, whic ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2009-0654Tor 0.2.0.28, and probably 0.2.0.34 and earlier, allows remote attacke ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-8516The daemon in Tor through 0.4.1.8 and 0.4.2.x through 0.4.2.6 does not ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2020-15572Tor before 0.4.3.6 has an out-of-bounds memory access that allows a re ...buster, jessie, stretch
transfigCVE-2019-19746make_arrow in arrow.c in Xfig fig2dev 3.2.7b allows a segmentation fau ...jessie
tripleaCVE-2018-1000546Triplea version <= 1.9.0.0.10291 contains a XML External Entity (XXE) ...bookworm, bullseye, jessie, sid, stretch, trixie
trousersCVE-2020-24330An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon ...bullseye, buster, jessie, stretch
CVE-2020-24331An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon ...bullseye, buster, jessie, stretch
CVE-2020-24332An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon ...bullseye, buster, jessie, stretch
twigCVE-2018-13818Twig before 2.4.4 allows Server-Side Template Injection (SSTI) via the ...jessie, stretch
twistedCVE-2016-1000111Twisted before 16.3.1 does not attempt to address RFC 3875 section 4.1 ...jessie
u-bootCVE-2017-3225Das U-Boot is a device bootloader that can read its configuration from ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-3226Das U-Boot is a device bootloader that can read its configuration from ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18439DENX U-Boot through 2018.09-rc1 has a remotely exploitable buffer over ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18440DENX U-Boot through 2018.09-rc1 has a locally exploitable buffer overf ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-1000205U-Boot contains a CWE-20: Improper Input Validation vulnerability in V ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
uclibcCVE-2016-2224The __decode_dotted function in libc/inet/resolv.c in uClibc-ng before ...jessie
CVE-2016-2225The __read_etc_hosts_r function in libc/inet/resolv.c in uClibc-ng bef ...jessie
CVE-2016-6264Integer signedness error in libc/string/arm/memset.S in uClibc and uCl ...jessie
CVE-2017-9728In uClibc 0.9.33.2, there is an out-of-bounds read in the get_subexp f ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-9729In uClibc 0.9.33.2, there is stack exhaustion (uncontrolled recursion) ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-27419uClibc-ng versions prior to 1.0.37 are vulnerable to integer wrap-arou ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-43523In uClibc and uClibc-ng before 1.0.39, incorrect handling of special c ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-29503A memory corruption vulnerability exists in the libpthread linuxthread ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2022-30295uClibc-ng through 1.0.40 and uClibc through 0.9.33.2 use predictable D ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
ufrawCVE-2018-19655A stack-based buffer overflow in the find_green() function of dcraw th ...jessie, stretch
uglify-jsCVE-2022-37598Prototype pollution vulnerability in function DEFNODE in ast.js in mis ...bookworm, bullseye, buster, sid, trixie
uglifyjsCVE-2015-8857The uglify-js package before 2.4.24 for Node.js does not properly acco ...jessie
CVE-2015-8858The uglify-js package before 2.6.0 for Node.js allows attackers to cau ...jessie
CVE-2022-37598Prototype pollution vulnerability in function DEFNODE in ast.js in mis ...bullseye, buster, jessie, sid, stretch, trixie
unboundCVE-2019-18934Unbound 1.6.4 through 1.9.4 contain a vulnerability in the ipsec modul ...buster
CVE-2019-25031Unbound before 1.9.5 allows configuration injection in create_unbound_ ...buster
CVE-2019-25032Unbound before 1.9.5 allows an integer overflow in the regional alloca ...buster
CVE-2019-25033Unbound before 1.9.5 allows an integer overflow in the regional alloca ...buster
CVE-2019-25034Unbound before 1.9.5 allows an integer overflow in sldns_str2wire_dnam ...buster
CVE-2019-25035Unbound before 1.9.5 allows an out-of-bounds write in sldns_bget_token ...buster
CVE-2019-25036Unbound before 1.9.5 allows an assertion failure and denial of service ...buster
CVE-2019-25037Unbound before 1.9.5 allows an assertion failure and denial of service ...buster
CVE-2019-25038Unbound before 1.9.5 allows an integer overflow in a size calculation ...buster
CVE-2019-25039Unbound before 1.9.5 allows an integer overflow in a size calculation ...buster
CVE-2019-25040Unbound before 1.9.5 allows an infinite loop via a compressed name in ...buster
CVE-2019-25041Unbound before 1.9.5 allows an assertion failure via a compressed name ...buster
CVE-2019-25042Unbound before 1.9.5 allows an out-of-bounds write via a compressed na ...buster
unixodbcCVE-2012-2657Buffer overflow in the SQLDriverConnect function in unixODBC 2.0.10, 2 ...jessie, stretch
CVE-2012-2658Buffer overflow in the SQLDriverConnect function in unixODBC 2.3.1 all ...jessie, stretch
CVE-2024-1013An out-of-bounds stack write flaw was found in unixODBC on 64-bit arch ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
unrar-freeCVE-2017-11189unrarlib.c in unrar-free 0.0.1 might allow remote attackers to cause a ...jessie, stretch
CVE-2017-11190unrarlib.c in unrar-free 0.0.1, when _DEBUG_LOG mode is enabled, might ...bullseye, buster, jessie, stretch
unzipCVE-2021-4217A flaw was found in unzip. The vulnerability occurs due to improper ha ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
upx-uclCVE-2017-15056p_lx_elf.cpp in UPX 3.94 mishandles ELF headers, which allows remote a ...jessie, stretch
CVE-2017-16869p_mach.cpp in UPX 3.94 allows remote attackers to cause a denial of se ...jessie, stretch
CVE-2019-14295An Integer overflow in the getElfSections function in p_vmlinx.cpp in ...buster, jessie, stretch
CVE-2019-14296canUnpack in p_vmlinx.cpp in UPX 3.95 allows remote attackers to cause ...buster, jessie, stretch
CVE-2019-20021A heap-based buffer over-read was discovered in canUnpack in p_mach.cp ...buster, jessie, stretch
CVE-2019-20051A floating-point exception was discovered in PackLinuxElf::elf_hash in ...buster, jessie, stretch
CVE-2019-20053An invalid memory address dereference was discovered in the canUnpack ...buster, jessie, stretch
CVE-2019-20805p_lx_elf.cpp in UPX before 3.96 has an integer overflow during unpacki ...buster, jessie, stretch
CVE-2020-24119A heap buffer overflow read was discovered in upx 4.0.0, because the c ...bullseye, buster, jessie, stretch
CVE-2020-27787A Segmentaation fault was found in UPX in invert_pt_dynamic() function ...buster, jessie, stretch
CVE-2020-27788An out-of-bounds read access vulnerability was discovered in UPX in Pa ...buster, jessie, stretch
CVE-2020-27790A floating point exception issue was discovered in UPX in PackLinuxElf ...buster, jessie, stretch
CVE-2020-27796A heap-based buffer over-read was discovered in the invert_pt_dynamic ...bullseye, buster, jessie, stretch
CVE-2020-27797An invalid memory address reference was discovered in the elf_lookup f ...bullseye, buster, jessie, stretch
CVE-2020-27798An invalid memory address reference was discovered in the adjABS funct ...bullseye, buster, jessie, stretch
CVE-2020-27799A heap-based buffer over-read was discovered in the acc_ua_get_be32 fu ...bullseye, buster, jessie, stretch
CVE-2020-27800A heap-based buffer over-read was discovered in the get_le32 function ...bullseye, buster, jessie, stretch
CVE-2020-27801A heap-based buffer over-read was discovered in the get_le64 function ...bullseye, buster, jessie, stretch
CVE-2020-27802An floating point exception was discovered in the elf_lookup function ...bullseye, buster, jessie, stretch
CVE-2021-20285A flaw was found in upx canPack in p_lx_elf.cpp in UPX 3.96. This flaw ...bullseye, buster, jessie, stretch
CVE-2021-30500Null pointer dereference was found in upx PackLinuxElf::canUnpack() in ...bullseye, buster, jessie, stretch
CVE-2021-30501An assertion abort was found in upx MemBuffer::alloc() in mem.cpp, in ...bullseye, buster, jessie, stretch
CVE-2021-43311A heap-based buffer overflow was discovered in upx, during the generic ...bullseye, buster
CVE-2021-43312A heap-based buffer overflow was discovered in upx, during the variabl ...bullseye, buster
CVE-2021-43313A heap-based buffer overflow was discovered in upx, during the variabl ...bullseye, buster
CVE-2021-43314A heap-based buffer overflows was discovered in upx, during the generi ...bullseye, buster
CVE-2021-43315A heap-based buffer overflows was discovered in upx, during the generi ...bullseye, buster
CVE-2021-43316A heap-based buffer overflow was discovered in upx, during the generic ...bullseye, buster
CVE-2021-43317A heap-based buffer overflows was discovered in upx, during the generi ...bullseye, buster
CVE-2021-46179Reachable Assertion vulnerability in upx before 4.0.0 allows attackers ...bullseye, buster
CVE-2023-23457A Segmentation fault was found in UPX in PackLinuxElf64::invert_pt_dyn ...bullseye, buster, jessie, stretch
util-linuxCVE-2015-5218Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before ...jessie
CVE-2015-5224The mkostemp function in login-utils in util-linux when used incorrect ...jessie
CVE-2017-2616A race condition was found in util-linux before 2.32.1 in the way su h ...jessie
CVE-2022-0563A flaw was found in the util-linux chfn and chsh utilities when compil ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
TEMP-0786804-C23D2Bhwclock(8) SUID privilege escalationjessie
uwsgiCVE-2020-11984Apache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure an ...bookworm, bullseye, buster, sid, trixie
CVE-2021-36160A carefully crafted request uri-path can cause mod_proxy_uwsgi to read ...bookworm, bullseye, buster, sid, trixie
uzblCVE-2014-3566The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other prod ...jessie, stretch
v4l2loopbackCVE-2022-2652Depending on the way the format strings in the card label are crafted ...bullseye, buster
varnishCVE-2009-4488Varnish 2.0.6 writes data to a log file without sanitizing non-printab ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
vimCVE-2008-4677autoload/netrw.vim (aka the Netrw Plugin) 109, 131, and other versions ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-1000382VIM version 8.0.1187 (and other versions most likely) ignores umask wh ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-3236vim 8.2.2348 is affected by null pointer dereference, allows local att ...buster, jessie, stretch
CVE-2021-3903vim is vulnerable to Heap-based Buffer Overflowbullseye, buster
CVE-2021-3927vim is vulnerable to Heap-based Buffer Overflowbullseye
CVE-2021-3928vim is vulnerable to Use of Uninitialized Variablebullseye
CVE-2021-3968vim is vulnerable to Heap-based Buffer Overflowbullseye
CVE-2021-3973vim is vulnerable to Heap-based Buffer Overflowbullseye, buster
CVE-2021-3974vim is vulnerable to Use After Freebullseye
CVE-2021-3984vim is vulnerable to Heap-based Buffer Overflowbullseye
CVE-2021-4069vim is vulnerable to Use After Freebullseye
CVE-2021-4136vim is vulnerable to Heap-based Buffer Overflowbullseye
CVE-2021-4166vim is vulnerable to Out-of-bounds Readbullseye, buster, stretch
CVE-2021-4192vim is vulnerable to Use After Freebullseye
CVE-2021-4193vim is vulnerable to Out-of-bounds Readbullseye
CVE-2022-0156vim is vulnerable to Use After Freebullseye
CVE-2022-0158vim is vulnerable to Heap-based Buffer Overflowbullseye
CVE-2022-0213vim is vulnerable to Heap-based Buffer Overflowbullseye
CVE-2022-0318Heap-based Buffer Overflow in vim/vim prior to 8.2.bullseye, jessie, stretch
CVE-2022-0319Out-of-bounds Read in vim/vim prior to 8.2.bullseye
CVE-2022-0368Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.bullseye
CVE-2022-0393Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.bullseye
CVE-2022-0407Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.bullseye
CVE-2022-0408Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.bullseye
CVE-2022-0413Use After Free in GitHub repository vim/vim prior to 8.2.bullseye
CVE-2022-0443Use After Free in GitHub repository vim/vim prior to 8.2.bullseye
CVE-2022-0554Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior ...bullseye
CVE-2022-0629Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.bullseye
CVE-2022-0685Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior ...bullseye
CVE-2022-0696NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.442 ...bullseye, jessie, stretch
CVE-2022-0714Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4 ...bullseye
CVE-2022-0729Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior ...bullseye
CVE-2022-0943Heap-based Buffer Overflow occurs in vim in GitHub repository vim/vim ...bullseye
CVE-2022-1154Use after free in utf_ptr2char in GitHub repository vim/vim prior to 8 ...bullseye
CVE-2022-1420Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior ...bullseye
CVE-2022-1619Heap-based Buffer Overflow in function cmdline_erase_chars in GitHub r ...bullseye
CVE-2022-1620NULL Pointer Dereference in function vim_regexec_string at regexp.c:27 ...bullseye, buster, jessie, stretch
CVE-2022-1621Heap buffer overflow in vim_strncpy find_word in GitHub repository vim ...bullseye
CVE-2022-1629Buffer Over-read in function find_next_quote in GitHub repository vim/ ...bullseye, buster, jessie, stretch
CVE-2022-1674NULL Pointer Dereference in function vim_regexec_string at regexp.c:27 ...bullseye, buster, jessie, stretch
CVE-2022-1720Buffer Over-read in function grab_file_name in GitHub repository vim/v ...bullseye
CVE-2022-1725NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.495 ...bullseye, buster, jessie, stretch
CVE-2022-1733Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4 ...bullseye, buster, jessie, stretch
CVE-2022-1735Classic Buffer Overflow in GitHub repository vim/vim prior to 8.2.4969 ...bullseye, buster, jessie, stretch
CVE-2022-1769Buffer Over-read in GitHub repository vim/vim prior to 8.2.4974.bullseye, buster, jessie, stretch
CVE-2022-1771Uncontrolled Recursion in GitHub repository vim/vim prior to 8.2.4975.bullseye, buster, jessie, stretch
CVE-2022-1796Use After Free in GitHub repository vim/vim prior to 8.2.4979.bullseye, buster, jessie, stretch
CVE-2022-1851Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.bullseye
CVE-2022-1886Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.bullseye, buster, jessie, stretch
CVE-2022-1898Use After Free in GitHub repository vim/vim prior to 8.2.bullseye
CVE-2022-1927Buffer Over-read in GitHub repository vim/vim prior to 8.2.bullseye, buster, jessie, stretch
CVE-2022-1968Use After Free in GitHub repository vim/vim prior to 8.2.bullseye
CVE-2022-2042Use After Free in GitHub repository vim/vim prior to 8.2.bullseye, buster, jessie, stretch
CVE-2022-2124Buffer Over-read in GitHub repository vim/vim prior to 8.2.bullseye, buster
CVE-2022-2125Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.bullseye, buster, jessie, stretch
CVE-2022-2126Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.bullseye, buster
CVE-2022-2175Buffer Over-read in GitHub repository vim/vim prior to 8.2.bullseye, buster, jessie, stretch
CVE-2022-2182Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.bullseye, buster, jessie, stretch
CVE-2022-2183Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.bullseye, buster, jessie, stretch
CVE-2022-2206Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.bullseye, buster, jessie, stretch
CVE-2022-2207Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.bullseye, buster, jessie, stretch
CVE-2022-2208NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.516 ...bullseye, buster, jessie, stretch
CVE-2022-2210Out-of-bounds Write in GitHub repository vim/vim prior to 8.2.bullseye, buster, jessie, stretch
CVE-2022-2231NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.bullseye, buster, jessie, stretch
CVE-2022-2257Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.bullseye, buster, jessie, stretch
CVE-2022-2264Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.bullseye, buster, jessie, stretch
CVE-2022-2284Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.bullseye, buster, jessie, stretch
CVE-2022-2285Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9 ...bullseye
CVE-2022-2286Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.bullseye, buster, jessie, stretch
CVE-2022-2287Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.bullseye, buster, jessie, stretch
CVE-2022-2289Use After Free in GitHub repository vim/vim prior to 9.0.bullseye, buster, jessie, stretch
CVE-2022-2343Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0 ...bullseye, buster, jessie, stretch
CVE-2022-2344Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0 ...bullseye, buster, jessie, stretch
CVE-2022-2345Use After Free in GitHub repository vim/vim prior to 9.0.0046.bullseye, buster, jessie, stretch
CVE-2022-2522Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0 ...bullseye, buster, jessie, stretch
CVE-2022-2571Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0 ...bullseye, jessie, stretch
CVE-2022-2581Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.0104.bullseye, buster, jessie, stretch
CVE-2022-2598Out-of-bounds Write to API in GitHub repository vim/vim prior to 9.0.0 ...bullseye, jessie, stretch
CVE-2022-2816Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.0212.bullseye, buster, jessie, stretch
CVE-2022-2817Use After Free in GitHub repository vim/vim prior to 9.0.0213.bullseye, jessie, stretch
CVE-2022-2819Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0 ...bullseye, jessie, stretch
CVE-2022-2845Improper Validation of Specified Quantity in Input in GitHub repositor ...bullseye, buster, jessie, stretch
CVE-2022-2849Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0 ...bullseye, buster, jessie, stretch
CVE-2022-2862Use After Free in GitHub repository vim/vim prior to 9.0.0221.bullseye, jessie, stretch
CVE-2022-2874NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.022 ...bullseye, buster, jessie, stretch
CVE-2022-2889Use After Free in GitHub repository vim/vim prior to 9.0.0225.bullseye, buster, jessie, stretch
CVE-2022-2923NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.024 ...bullseye, buster, jessie, stretch
CVE-2022-2946Use After Free in GitHub repository vim/vim prior to 9.0.0246.bullseye
CVE-2022-2980NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.025 ...bullseye, buster, jessie, stretch
CVE-2022-2982Use After Free in GitHub repository vim/vim prior to 9.0.0260.bullseye
CVE-2022-3016Use After Free in GitHub repository vim/vim prior to 9.0.0286.bullseye, buster, jessie, stretch
CVE-2022-3037Use After Free in GitHub repository vim/vim prior to 9.0.0322.bullseye
CVE-2022-3153NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.040 ...bullseye, buster, jessie, stretch
CVE-2022-3234Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0 ...bullseye
CVE-2022-3235Use After Free in GitHub repository vim/vim prior to 9.0.0490.bullseye
CVE-2022-3256Use After Free in GitHub repository vim/vim prior to 9.0.0530.bullseye
CVE-2022-3278NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.055 ...bullseye, buster, jessie, stretch
CVE-2022-3296Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0. ...bullseye, buster, jessie, stretch
CVE-2022-3297Use After Free in GitHub repository vim/vim prior to 9.0.0579.bullseye, buster, jessie, stretch
CVE-2022-3352Use After Free in GitHub repository vim/vim prior to 9.0.0614.bullseye, jessie
CVE-2022-3491Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0 ...bullseye, buster, jessie, stretch
CVE-2022-3520Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0 ...bullseye, buster, jessie, stretch
CVE-2022-3591Use After Free in GitHub repository vim/vim prior to 9.0.0789.bullseye, buster, jessie, stretch
CVE-2022-3705A vulnerability was found in vim and classified as problematic. Affect ...bullseye, jessie, stretch
CVE-2022-4292Use After Free in GitHub repository vim/vim prior to 9.0.0882.bullseye, buster, jessie, stretch
CVE-2022-4293Floating Point Comparison with Incorrect Operator in GitHub repository ...bullseye, buster, jessie, stretch
CVE-2022-47024A null pointer dereference issue was discovered in function gui_x11_cr ...bullseye, buster, jessie, stretch
CVE-2023-0049Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.1143.bullseye, buster, jessie, stretch
CVE-2023-0051Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1 ...bullseye, buster, jessie, stretch
CVE-2023-0288Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1 ...bullseye, buster, jessie, stretch
CVE-2023-0433Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1 ...bullseye, buster, jessie, stretch
CVE-2023-0512Divide By Zero in GitHub repository vim/vim prior to 9.0.1247.bullseye, buster, jessie, stretch
CVE-2023-1127Divide By Zero in GitHub repository vim/vim prior to 9.0.1367.jessie, stretch
CVE-2023-1170Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1 ...bullseye, buster, jessie, stretch
CVE-2023-1264NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.139 ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-1355NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.140 ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-2609NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.153 ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-3896Divide By Zero in vim/vim from9.0.1367-1 to9.0.1367-3bookworm, bullseye
CVE-2023-4733Use After Free in GitHub repository vim/vim prior to 9.0.1840.bookworm, bullseye, buster, jessie, stretch
CVE-2023-4734Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9 ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-4735Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.1847.bookworm, bullseye, buster, jessie, stretch
CVE-2023-4750Use After Free in GitHub repository vim/vim prior to 9.0.1857.bookworm, bullseye, buster, jessie, stretch
CVE-2023-4751Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1 ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-5441NULL Pointer Dereference in GitHub repository vim/vim prior to 20d161a ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-5535Use After Free in GitHub repository vim/vim prior to v9.0.2010.bookworm, bullseye, buster, jessie, stretch
CVE-2023-46246Vim is an improved version of the good old UNIX editor Vi. Heap-use-af ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-48231Vim is an open source command line text editor. When closing a window, ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-48232Vim is an open source command line text editor. A floating point excep ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-48233Vim is an open source command line text editor. If the count after the ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-48234Vim is an open source command line text editor. When getting the count ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-48235Vim is an open source command line text editor. When parsing relative ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-48236Vim is an open source command line text editor. When using the z= comm ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-48237Vim is an open source command line text editor. In affected versions w ...bookworm, bullseye, buster, jessie, stretch
CVE-2023-48706Vim is a UNIX editor that, prior to version 9.0.2121, has a heap-use-a ...bookworm, bullseye, buster, jessie, stretch
vinoCVE-2011-1164Vino before 2.99.4 can connect external networks contrary to the state ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2011-1165Vino, possibly before 3.2, does not properly document that it opens po ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
vnc4CVE-2014-0011Multiple heap-based buffer overflows in the ZRLE_DECODE function in co ...jessie
CVE-2015-2305Integer overflow in the regcomp implementation in the Henry Spencer BS ...jessie
vorbis-toolsCVE-2017-11331The wav_open function in oggenc/audio.c in Xiph.Org vorbis-tools 1.4.0 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-43361Buffer Overflow vulnerability in Vorbis-tools v.1.4.2 allows a local a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
vteCVE-2005-0023gnome-pty-helper in GNOME libzvt2 and libvte4 allows local users to sp ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
w3mCVE-2018-6198w3m through 0.5.3 does not properly handle temporary files when the ~/ ...jessie
CVE-2023-38252An out-of-bounds read flaw was found in w3m, in the Strnew_size functi ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-38253An out-of-bounds read flaw was found in w3m, in the growbuf_to_Str fun ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
TEMP-0532514-9137E0predictable random number generator used in web browsersbookworm, bullseye, buster, jessie, sid, stretch, trixie
wabtCVE-2022-43280wasm-interp v1.0.29 was discovered to contain an out-of-bounds read vi ...bullseye, buster
CVE-2022-43281wasm-interp v1.0.29 was discovered to contain a heap overflow via the ...bullseye, buster
CVE-2022-43282wasm-interp v1.0.29 was discovered to contain an out-of-bounds read vi ...bullseye, buster
CVE-2022-43283wasm2c v1.0.29 was discovered to contain an abort in CWriter::Write.bullseye, buster
CVE-2023-27115WebAssembly v1.0.29 was discovered to contain a segmentation fault via ...bookworm, bullseye, buster, sid, trixie
CVE-2023-27116WebAssembly v1.0.29 discovered to contain an abort in CWriter::MangleT ...bookworm, bullseye, buster
CVE-2023-27117WebAssembly v1.0.29 was discovered to contain a heap overflow via the ...bookworm, bullseye, buster, sid, trixie
CVE-2023-27119WebAssembly v1.0.29 was discovered to contain a segmentation fault via ...bookworm, bullseye, buster, sid, trixie
CVE-2023-30300An issue in the component hang.wasm of WebAssembly 1.0 causes an infin ...bookworm, bullseye, buster
CVE-2023-31669WebAssembly wat2wasm v1.0.32 allows attackers to cause a libc++abi.dyl ...bookworm, bullseye, buster
CVE-2023-31670An issue in wasm2c 1.0.32, wasm2wat 1.0.32, wasm-decompile 1.0.32, and ...bookworm, bullseye, buster
CVE-2023-46331WebAssembly wabt 1.0.33 has an Out-of-Bound Memory Read in in DataSegm ...bookworm, bullseye, buster, sid, trixie
wavpackCVE-2021-44269An out of bounds read was found in Wavpack 5.4.0 in processing *.WAV f ...bullseye, buster, jessie, stretch
web2pyCVE-2013-6837Cross-site scripting (XSS) vulnerability in the setTimeout function in ...jessie
webkit2gtkCVE-2015-7096WebKit in Apple iOS before 9.2, Safari before 9.0.2, and tvOS before 9 ...jessie
CVE-2015-7098WebKit in Apple iOS before 9.2, Safari before 9.0.2, and tvOS before 9 ...jessie
CVE-2016-4590WebKit in Apple iOS before 9.3.3 and Safari before 9.1.2 mishandles ab ...jessie
CVE-2016-4591WebKit in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before ...jessie
CVE-2016-4622WebKit in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before ...jessie
CVE-2016-4624WebKit in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before ...jessie
CVE-2016-4692An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-4743An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7586An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7587An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7589An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7592An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7598An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7599An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7610An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7611An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7623An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7632An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7635An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7639An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7640An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7641An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7642An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7645An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7646An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7648An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7649An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7652An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7654An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2016-7656An issue was discovered in certain Apple products. iOS before 10.2 is ...jessie
CVE-2017-2350An issue was discovered in certain Apple products. iOS before 10.2.1 i ...jessie
CVE-2017-2354An issue was discovered in certain Apple products. iOS before 10.2.1 i ...jessie
CVE-2017-2355An issue was discovered in certain Apple products. iOS before 10.2.1 i ...jessie
CVE-2017-2356An issue was discovered in certain Apple products. iOS before 10.2.1 i ...jessie
CVE-2017-2362An issue was discovered in certain Apple products. iOS before 10.2.1 i ...jessie
CVE-2017-2363An issue was discovered in certain Apple products. iOS before 10.2.1 i ...jessie
CVE-2017-2364An issue was discovered in certain Apple products. iOS before 10.2.1 i ...jessie
CVE-2017-2365An issue was discovered in certain Apple products. iOS before 10.2.1 i ...jessie
CVE-2017-2366An issue was discovered in certain Apple products. iOS before 10.2.1 i ...jessie
CVE-2017-2369An issue was discovered in certain Apple products. iOS before 10.2.1 i ...jessie
CVE-2017-2371An issue was discovered in certain Apple products. iOS before 10.2.1 i ...jessie
CVE-2017-2373An issue was discovered in certain Apple products. iOS before 10.2.1 i ...jessie
CVE-2017-2376An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2377An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2386An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2392An issue was discovered in certain Apple products. Safari before 10.1 ...jessie
CVE-2017-2394An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2395An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2396An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2405An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2415An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2419An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2424An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2433An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2442An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2445An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2446An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2447An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2454An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2455An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2457An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2459An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2460An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2464An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2465An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2466An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2468An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2469An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2470An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2471An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2475An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2476An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2481An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie
CVE-2017-2496An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2504An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2505An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2506An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2508An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2510An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2514An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2515An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2521An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2525An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2526An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2528An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2530An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2531An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2536An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2538An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2539An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2544An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2547An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-2549An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-6980An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-6984An issue was discovered in certain Apple products. iOS before 10.3.2 i ...jessie
CVE-2017-7006An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7011An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7012An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7018An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7019An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7020An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7030An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7034An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7037An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7038A DOMParser XSS issue was discovered in certain Apple products. iOS be ...jessie
CVE-2017-7039An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7040An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7041An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7042An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7043An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7046An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7048An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7049An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7052An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7055An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7056An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7059A DOMParser XSS issue was discovered in certain Apple products. iOS be ...jessie
CVE-2017-7061An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7064An issue was discovered in certain Apple products. iOS before 10.3.3 i ...jessie
CVE-2017-7081An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7087An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7089An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7090An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7091An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7092An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7093An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7094An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7095An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7096An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7098An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7099An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7100An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7102An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7104An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7107An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7109An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7111An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7117An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7120An issue was discovered in certain Apple products. iOS before 11 is af ...jessie
CVE-2017-7142An issue was discovered in certain Apple products. Safari before 11 is ...jessie
CVE-2017-7153An issue was discovered in certain Apple products. iOS before 11.2 is ...jessie
CVE-2017-7156An issue was discovered in certain Apple products. iOS before 11.2 is ...jessie
CVE-2017-7157An issue was discovered in certain Apple products. iOS before 11.2 is ...jessie
CVE-2017-7160An issue was discovered in certain Apple products. iOS before 11.2 is ...jessie
CVE-2017-7161An issue was discovered in certain Apple products. Safari before 11.0. ...jessie
CVE-2017-7165An issue was discovered in certain Apple products. iOS before 11.2 is ...jessie
CVE-2017-13783An issue was discovered in certain Apple products. iOS before 11.1 is ...jessie
CVE-2017-13784An issue was discovered in certain Apple products. iOS before 11.1 is ...jessie
CVE-2017-13785An issue was discovered in certain Apple products. iOS before 11.1 is ...jessie
CVE-2017-13788An issue was discovered in certain Apple products. iOS before 11.1 is ...jessie
CVE-2017-13791An issue was discovered in certain Apple products. iOS before 11.1 is ...jessie
CVE-2017-13792An issue was discovered in certain Apple products. iOS before 11.1 is ...jessie
CVE-2017-13793An issue was discovered in certain Apple products. iOS before 11.1 is ...jessie
CVE-2017-13794An issue was discovered in certain Apple products. iOS before 11.1 is ...jessie
CVE-2017-13795An issue was discovered in certain Apple products. iOS before 11.1 is ...jessie
CVE-2017-13796An issue was discovered in certain Apple products. iOS before 11.1 is ...jessie
CVE-2017-13798An issue was discovered in certain Apple products. iOS before 11.1 is ...jessie
CVE-2017-13802An issue was discovered in certain Apple products. iOS before 11.1 is ...jessie
CVE-2017-13803An issue was discovered in certain Apple products. iOS before 11.1 is ...jessie
CVE-2017-13856An issue was discovered in certain Apple products. iOS before 11.2 is ...jessie
CVE-2017-13866An issue was discovered in certain Apple products. iOS before 11.2 is ...jessie
CVE-2017-13870An issue was discovered in certain Apple products. iOS before 11.2 is ...jessie
CVE-2017-13884An issue was discovered in certain Apple products. iOS before 11.2 is ...jessie
CVE-2017-13885An issue was discovered in certain Apple products. iOS before 11.2 is ...jessie
CVE-2017-17821WTF/wtf/FastBitVector.h in WebKit, as distributed in Safari Technology ...jessie, stretch
CVE-2017-1000121The UNIX IPC layer in WebKit, including WebKitGTK+ prior to 2.16.3, do ...jessie
CVE-2017-1000122The UNIX IPC layer in WebKit, including WebKitGTK+ prior to 2.16.3, do ...jessie
CVE-2018-4088An issue was discovered in certain Apple products. iOS before 11.2.5 i ...jessie
CVE-2018-4089An issue was discovered in certain Apple products. iOS before 11.2.5 i ...jessie
CVE-2018-4096An issue was discovered in certain Apple products. iOS before 11.2.5 i ...jessie
CVE-2018-4101An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4113An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4114An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4117An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4118An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4119An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4120An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4121An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4122An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4125An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4127An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4128An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4129An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4133An issue was discovered in certain Apple products. Safari before 11.1 ...jessie, stretch
CVE-2018-4146An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4161An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4162An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4163An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4165An issue was discovered in certain Apple products. iOS before 11.3 is ...jessie, stretch
CVE-2018-4190An issue was discovered in certain Apple products. iOS before 11.4 is ...jessie, stretch
CVE-2018-4191A memory corruption issue was addressed with improved validation. This ...jessie, stretch
CVE-2018-4192An issue was discovered in certain Apple products. iOS before 11.4 is ...jessie, stretch
CVE-2018-4197A use after free issue was addressed with improved memory management. ...jessie, stretch
CVE-2018-4199An issue was discovered in certain Apple products. iOS before 11.4 is ...jessie, stretch
CVE-2018-4200An issue was discovered in certain Apple products. iOS before 11.3.1 i ...jessie, stretch
CVE-2018-4201An issue was discovered in certain Apple products. iOS before 11.4 is ...jessie, stretch
CVE-2018-4204An issue was discovered in certain Apple products. iOS before 11.4 is ...jessie, stretch
CVE-2018-4207In iOS before 11.3, Safari before 11.1, iCloud for Windows before 7.4, ...jessie, stretch
CVE-2018-4208In iOS before 11.3, Safari before 11.1, iCloud for Windows before 7.4, ...jessie, stretch
CVE-2018-4209In iOS before 11.3, Safari before 11.1, iCloud for Windows before 7.4, ...jessie, stretch
CVE-2018-4210In iOS before 11.3, Safari before 11.1, tvOS before 11.3, watchOS befo ...jessie, stretch
CVE-2018-4212In iOS before 11.3, Safari before 11.1, iCloud for Windows before 7.4, ...jessie, stretch
CVE-2018-4213In iOS before 11.3, Safari before 11.1, iCloud for Windows before 7.4, ...jessie, stretch
CVE-2018-4214An issue was discovered in certain Apple products. iOS before 11.4 is ...jessie, stretch
CVE-2018-4218An issue was discovered in certain Apple products. iOS before 11.4 is ...jessie, stretch
CVE-2018-4222An issue was discovered in certain Apple products. iOS before 11.4 is ...jessie, stretch
CVE-2018-4232An issue was discovered in certain Apple products. iOS before 11.4 is ...jessie, stretch
CVE-2018-4233An issue was discovered in certain Apple products. iOS before 11.4 is ...jessie, stretch
CVE-2018-4246An issue was discovered in certain Apple products. iOS before 11.4 is ...jessie, stretch
CVE-2018-4261Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4262In Safari before 11.1.2, iTunes before 12.8 for Windows, iOS before 11 ...jessie, stretch
CVE-2018-4263Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4264Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4265Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4266A race condition was addressed with additional validation. This issue ...jessie, stretch
CVE-2018-4267Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4270A memory corruption issue was addressed with improved memory handling. ...jessie, stretch
CVE-2018-4271Multiple memory corruption issues were addressed with improved input v ...jessie, stretch
CVE-2018-4272Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4273Multiple memory corruption issues were addressed with improved input v ...jessie, stretch
CVE-2018-4278In Safari before 11.1.2, iTunes before 12.8 for Windows, iOS before 11 ...jessie, stretch
CVE-2018-4284A type confusion issue was addressed with improved memory handling. Th ...jessie, stretch
CVE-2018-4299Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4306A use after free issue was addressed with improved memory management. ...jessie, stretch
CVE-2018-4309A cross-site scripting issue existed in Safari. This issue was address ...jessie, stretch
CVE-2018-4311The issue was addressed by removing origin information. This issue aff ...jessie, stretch
CVE-2018-4312A use after free issue was addressed with improved memory management. ...jessie, stretch
CVE-2018-4314A use after free issue was addressed with improved memory management. ...jessie, stretch
CVE-2018-4315A use after free issue was addressed with improved memory management. ...jessie, stretch
CVE-2018-4316A memory corruption issue was addressed with improved state management ...jessie, stretch
CVE-2018-4317A use after free issue was addressed with improved memory management. ...jessie, stretch
CVE-2018-4318A use after free issue was addressed with improved memory management. ...jessie, stretch
CVE-2018-4319A cross-origin issue existed with "iframe" elements. This was addresse ...jessie, stretch
CVE-2018-4323Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4328Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4345A cross-site scripting issue existed in Safari. This issue was address ...jessie, stretch
CVE-2018-4358Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4359Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4361A memory consumption issue was addressed with improved memory handling ...jessie, stretch
CVE-2018-4372Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4373Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4375Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4376Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4378A memory corruption issue was addressed with improved validation. This ...jessie, stretch
CVE-2018-4382Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4386Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4392Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4416Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4437Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-4438A logic issue existed resulting in memory corruption. This was address ...jessie, stretch
CVE-2018-4441A memory corruption issue was addressed with improved memory handling. ...jessie, stretch
CVE-2018-4442A memory corruption issue was addressed with improved memory handling. ...jessie, stretch
CVE-2018-4443A memory corruption issue was addressed with improved memory handling. ...jessie, stretch
CVE-2018-4464Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2018-11646webkitFaviconDatabaseSetIconForPageURL and webkitFaviconDatabaseSetIco ...jessie, stretch
CVE-2018-11712WebCore/platform/network/soup/SocketStreamHandleImplSoup.cpp in the li ...jessie, stretch
CVE-2018-11713WebCore/platform/network/soup/SocketStreamHandleImplSoup.cpp in the li ...jessie, stretch
CVE-2018-12293The getImageData function in the ImageBufferCairo class in WebCore/pla ...jessie, stretch
CVE-2018-12294WebCore/platform/graphics/texmap/TextureMapperLayer.cpp in WebKit, as ...jessie, stretch
CVE-2018-12911WebKitGTK+ 2.20.3 has an off-by-one error, with a resultant out-of-bou ...jessie, stretch
CVE-2019-6212Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2019-6215A type confusion issue was addressed with improved memory handling. Th ...jessie, stretch
CVE-2019-6216Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2019-6217Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2019-6226Multiple memory corruption issues were addressed with improved memory ...jessie, stretch
CVE-2019-6227A memory corruption issue was addressed with improved memory handling. ...jessie, stretch
CVE-2019-6229A logic issue was addressed with improved validation. This issue is fi ...jessie, stretch
CVE-2019-6233A memory corruption issue was addressed with improved memory handling. ...jessie, stretch
CVE-2019-6234A memory corruption issue was addressed with improved memory handling. ...jessie, stretch
CVE-2019-8375The UIProcess subsystem in WebKit, as used in WebKitGTK through 2.23.9 ...jessie, stretch
CVE-2022-2294Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.11 ...jessie, stretch
CVE-2023-32409The issue was addressed with improved bounds checks. This issue is fix ...buster, jessie, stretch
webkitgtkCVE-2016-1856WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tv ...jessie, stretch
CVE-2016-1857WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tv ...jessie, stretch
CVE-2016-4657WebKit in Apple iOS before 9.3.5 allows remote attackers to execute ar ...jessie, stretch
CVE-2016-4761WebKitGTK+ before 2.14.0: A use-after-free vulnerability can allow rem ...jessie, stretch
CVE-2016-9642JavaScriptCore in WebKit allows attackers to cause a denial of service ...jessie, stretch
CVE-2016-9643The regex code in Webkit 2.4.11 allows remote attackers to cause a den ...jessie, stretch
CVE-2016-10222runtime/JSONObject.cpp in JavaScriptCore in WebKit, as distributed in ...jessie, stretch
CVE-2016-10226JavaScriptCore in WebKit, as distributed in Safari Technology Preview ...jessie, stretch
CVE-2017-2367An issue was discovered in certain Apple products. iOS before 10.3 is ...jessie, stretch
CVE-2017-5949JavaScriptCore in WebKit, as distributed in Safari Technology Preview ...jessie, stretch
wheelCVE-2022-40898An issue discovered in Python Packaging Authority (PyPA) Wheel 0.37.1 ...bullseye, buster, jessie, stretch
whiteduneCVE-2017-17518swt/motif/browser.c in White_dune (aka whitedune) 0.30.10 does not val ...bookworm, bullseye, buster, jessie, sid, stretch
whohasCVE-2021-4258A vulnerability was found in whohas. It has been rated as problematic. ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
wineTEMP-0816034-9C45DCunsafe use of /tmpjessie, stretch, jessie, stretch
wkhtmltopdfCVE-2022-35583wkhtmlTOpdf 0.12.6 is vulnerable to SSRF which allows an attacker to g ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
wordpressCVE-2006-0733Cross-site scripting (XSS) vulnerability in WordPress 2.0.0 allows rem ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2008-0191WordPress 2.2.x and 2.3.x allows remote attackers to obtain sensitive ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2011-4898wp-admin/setup-config.php in the installation component in WordPress 3 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2011-4899wp-admin/setup-config.php in the installation component in WordPress 3 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2012-0782Multiple cross-site scripting (XSS) vulnerabilities in wp-admin/setup- ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2012-0937wp-admin/setup-config.php in the installation component in WordPress 3 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2012-5868WordPress 3.4.2 does not invalidate a wordpress_sec session cookie upo ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2013-7233Cross-site request forgery (CSRF) vulnerability in the retrospam compo ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2017-6514WordPress 4.7.2 mishandles listings of post authors, which allows remo ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-6389In WordPress through 4.9.2, unauthenticated attackers can cause a deni ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
wpaCVE-2016-10743hostapd before 2.6 does not prevent use of the low-quality PRNG that i ...stretch
CVE-2017-13084Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Sta ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2019-5061An exploitable denial-of-service vulnerability exists in the hostapd 2 ...buster, jessie, stretch
CVE-2019-5062An exploitable denial-of-service vulnerability exists in the 802.11w s ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-30004In wpa_supplicant and hostapd 2.9, forging attacks may occur because A ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
wpewebkitCVE-2023-32409The issue was addressed with improved bounds checks. This issue is fix ...bookworm, bullseye
xbindkeys-configCVE-2014-9513Insecure use of temporary files in xbindkeys-config 0.1.3-2 allows rem ...bookworm, bullseye, buster, jessie, stretch
xbmcCVE-2013-1438Unspecified vulnerability in dcraw 0.8.x through 0.8.9, as used in lib ...jessie
xcfaCVE-2014-5254xcfa before 5.0.1 creates temporary files insecurely which could allow ...jessie
CVE-2014-5255xcfa before 5.0.1 creates temporary files insecurely which could allow ...jessie
xchatCVE-2011-5129Heap-based buffer overflow in XChat 2.8.9 and earlier allows remote at ...buster, jessie
xdg-user-dirsCVE-2017-15131It was found that system umask policy is not being honored when creati ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
xenCVE-2014-9066Xen 4.4.x and earlier, when using a large number of VCPUs, does not pr ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-28689x86: Speculative vulnerabilities with bare (non-shim) 32-bit PV guests ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-34323When a transaction is committed, C Xenstored will first check the quot ...jessie, stretch
xerces-cCVE-2012-0880Apache Xerces-C++ allows remote attackers to cause a denial of service ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
xfigCVE-2009-4228Stack consumption vulnerability in u_bound.c in Xfig 3.2.5b and earlie ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-45920Xfig v3.2.8 was discovered to contain a NULL pointer dereference when ...bookworm, bullseye, buster, jessie, stretch
xloadimageCVE-2006-4484Buffer overflow in the LWZReadByte_ function in ext/gd/libgd/gd_gif_in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
xorg-serverCVE-2022-3553A vulnerability, which was classified as problematic, was found in X.o ...bullseye, buster, jessie, stretch
CVE-2024-31082A heap-based buffer over-read vulnerability was found in the X.org ser ...buster, jessie, stretch
xpdfCVE-2010-0206xpdf allows remote attackers to cause a denial of service (NULL pointe ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2010-0207In xpdf, the xref table contains an infinite loop which allows remote ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2013-4472The openTempFile function in goo/gfile.cc in Xpdf and Poppler 0.24.3 a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-7173A large loop in JBIG2Stream::readSymbolDictSeg in xpdf 4.00 allows an ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-7174An issue was discovered in xpdf 4.00. An infinite loop in XRef::Xref a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-7175An issue was discovered in xpdf 4.00. A NULL pointer dereference in re ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-7452A NULL pointer dereference in JPXStream::fillReadBuf in JPXStream.cc i ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-7453Infinite recursion in AcroForm::scanField in AcroForm.cc in xpdf 4.00 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-7454A NULL pointer dereference in XFAForm::scanFields in XFAForm.cc in xpd ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-7455An out-of-bounds read in JPXStream::readTilePart in JPXStream.cc in xp ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-8100The JPXStream::readTilePart function in JPXStream.cc in xpdf 4.00 allo ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-8101The JPXStream::inverseTransformLevel function in JPXStream.cc in xpdf ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-8102The JBIG2MMRDecoder::getBlackCode function in JBIG2Stream.cc in xpdf 4 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-8103The JBIG2Stream::readGenericBitmap function in JBIG2Stream.cc in xpdf ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-8104The BufStream::lookChar function in Stream.cc in xpdf 4.00 allows atta ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-8105The JPXStream::fillReadBuf function in JPXStream.cc in xpdf 4.00 allow ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-8106The JPXStream::readTilePartData function in JPXStream.cc in xpdf 4.00 ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-8107The JPXStream::close function in JPXStream.cc in xpdf 4.00 allows atta ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-11033The DCTStream::readHuffSym function in Stream.cc in the DCT decoder in ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-16368SplashXPath::strokeAdjust in splash/SplashXPath.cc in Xpdf 4.00 allows ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-16369XRef::fetch in XRef.cc in Xpdf 4.00 allows remote attackers to cause a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18454CCITTFaxStream::readRow() in Stream.cc in Xpdf 4.00 allows remote atta ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18455The GfxImageColorMap class in GfxState.cc in Xpdf 4.00 allows remote a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18456The function Object::isName() in Object.h (called from Gfx::opSetFillC ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18457The function DCTStream::readScan in Stream.cc in Xpdf 4.00 allows remo ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18458The function DCTStream::decodeImage in Stream.cc in Xpdf 4.00 allows r ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-18459The function DCTStream::getBlock in Stream.cc in Xpdf 4.00 allows remo ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
xserver-xorg-video-nouveauCVE-2018-3979A remote denial-of-service vulnerability exists in the way the Nouveau ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
xtermCVE-2006-4447X.Org and XFree86, including libX11, xdm, xf86dga, xinit, xload, xtran ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-40359xterm before 380 supports ReGIS reporting for character-set names even ...bookworm, bullseye, buster, jessie, stretch
yabasicCVE-2019-19720Yabasic 2.86.1 has a heap-based buffer overflow in the yylex() functio ...bookworm, bullseye, buster, sid, stretch, trixie
CVE-2019-19796Yabasic 2.86.2 has a heap-based buffer overflow in myformat in functio ...bookworm, bullseye, buster, sid, stretch, trixie
yaraCVE-2019-19648In the macho_parse_file functionality in macho/macho.c of YARA 3.11.0, ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
yasmCVE-2021-33454An issue was discovered in yasm version 1.3.0. There is a NULL pointer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33455An issue was discovered in yasm version 1.3.0. There is a NULL pointer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33456An issue was discovered in yasm version 1.3.0. There is a NULL pointer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33457An issue was discovered in yasm version 1.3.0. There is a NULL pointer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33458An issue was discovered in yasm version 1.3.0. There is a NULL pointer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33459An issue was discovered in yasm version 1.3.0. There is a NULL pointer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33460An issue was discovered in yasm version 1.3.0. There is a NULL pointer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33461An issue was discovered in yasm version 1.3.0. There is a use-after-fr ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33462An issue was discovered in yasm version 1.3.0. There is a use-after-fr ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33463An issue was discovered in yasm version 1.3.0. There is a NULL pointer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33465An issue was discovered in yasm version 1.3.0. There is a NULL pointer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33466An issue was discovered in yasm version 1.3.0. There is a NULL pointer ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33467An issue was discovered in yasm version 1.3.0. There is a use-after-fr ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2021-33468An issue was discovered in yasm version 1.3.0. There is a use-after-fr ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-29580yasm 1.3.0.55.g101bc was discovered to contain a segmentation violatio ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-29581yasm 1.3.0.55.g101bc has a segmentation violation in the function dele ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-29582yasm 1.3.0.55.g101bc was discovered to contain a stack overflow via th ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-29583yasm 1.3.0.55.g101bc was discovered to contain a stack overflow via th ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-30402YASM v1.3.0 was discovered to contain a heap overflow via the function ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-31723yasm 1.3.0.55.g101bc was discovered to contain a segmentation violatio ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-31724yasm 1.3.0.55.g101bc was discovered to contain a segmentation violatio ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-31725yasm 1.3.0.55.g101bc was discovered to contain a heap-use-after-free v ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-31972yasm v1.3.0 was discovered to contain a use after free via the functio ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-31973yasm v1.3.0 was discovered to contain a use after free via the functio ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-31974yasm v1.3.0 was discovered to contain a use after free via the functio ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-31975yasm v1.3.0 was discovered to contain a memory leak via the function y ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-37732Yasm v1.3.0.78 was found prone to NULL Pointer Dereference in /libyasm ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-49554Use After Free vulnerability in YASM 1.3.0.86.g9def allows a remote at ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-49555An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a de ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-49556Buffer Overflow vulnerability in YASM 1.3.0.86.g9def allows a remote a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-49557An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a de ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-49558An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a de ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2023-51258A memory leak issue discovered in YASM v.1.3.0 allows a local attacker ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
yawsCVE-2009-4495Yaws 1.85 writes data to a log file without sanitizing non-printable c ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
yumCVE-2013-1910yum does not properly handle bad metadata, which allows an attacker to ...buster, jessie, stretch
zabbixCVE-2023-29453Templates do not properly consider backticks (`) as Javascript string ...bookworm, bullseye, buster, jessie, stretch
zangbandCVE-2021-40589ZAngband zangband-data 2.7.5 is affected by an integer underflow vulne ...bookworm, bullseye, buster, sid, stretch, trixie
zeekCVE-2021-41732An issue was discovered in zeek version 4.1.0. There is a HTTP request ...sid
zimCVE-2020-10870Zim through 0.72.1 creates temporary directories with predictable name ...buster, jessie, stretch
zipCVE-2018-13410Info-ZIP Zip 3.0, when the -T and -TT command-line options are used, a ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
zoneminderCVE-2019-7350Session fixation exists in ZoneMinder through 1.32.3, as an attacker c ...bookworm, bullseye, sid
CVE-2019-7351Log Injection exists in ZoneMinder through 1.32.3, as an attacker can ...bookworm, bullseye, sid
CVE-2019-8423ZoneMinder through 1.32.3 has SQL Injection via the skins/classic/view ...bookworm, bullseye, sid
CVE-2019-8425includes/database.php in ZoneMinder before 1.32.3 has XSS in the const ...bookworm, bullseye, sid
CVE-2019-8427daemonControl in includes/functions.php in ZoneMinder before 1.32.3 al ...bookworm, bullseye, sid
CVE-2019-8429ZoneMinder before 1.32.3 has SQL Injection via the ajax/status.php fil ...bookworm, bullseye, sid
CVE-2022-1726Bootstrap Tables XSS vulnerability with Table Export plug-in when expo ...bookworm, bullseye, sid
CVE-2022-29806ZoneMinder before 1.36.13 allows remote code execution via an invalid ...bullseye
CVE-2022-30768A Stored Cross Site Scripting (XSS) issue in ZoneMinder 1.36.12 allows ...bookworm, bullseye, sid
CVE-2022-30769Session fixation exists in ZoneMinder through 1.36.12 as an attacker c ...bookworm, bullseye, sid
CVE-2022-39285ZoneMinder is a free, open source Closed-circuit television software a ...bullseye
CVE-2022-39289ZoneMinder is a free, open source Closed-circuit television software a ...bullseye
CVE-2022-39290ZoneMinder is a free, open source Closed-circuit television software a ...bullseye
CVE-2022-39291ZoneMinder is a free, open source Closed-circuit television software a ...bullseye
CVE-2023-25825ZoneMinder is a free, open source Closed-circuit television software a ...bullseye
CVE-2023-26032ZoneMinder is a free, open source Closed-circuit television software a ...bullseye
CVE-2023-26034ZoneMinder is a free, open source Closed-circuit television software a ...bullseye
CVE-2023-26035ZoneMinder is a free, open source Closed-circuit television software a ...bullseye
CVE-2023-26036ZoneMinder is a free, open source Closed-circuit television software a ...bullseye
CVE-2023-26037ZoneMinder is a free, open source Closed-circuit television software a ...bullseye
CVE-2023-26038ZoneMinder is a free, open source Closed-circuit television software a ...bullseye
CVE-2023-26039ZoneMinder is a free, open source Closed-circuit television software a ...bullseye
zophCVE-2014-9235Multiple SQL injection vulnerabilities in Zoph (aka Zoph Organizes Pho ...bookworm, bullseye, buster, sid, trixie
CVE-2014-9236Cross-site scripting (XSS) vulnerability in php/edit_photos.php in Zop ...bookworm, bullseye, buster, sid, trixie
zshCVE-2017-18205In builtin.c in zsh before 5.4, when sh compatibility mode is used, th ...jessie, stretch
CVE-2018-7548In subst.c in zsh through 5.4.2, there is a NULL pointer dereference w ...jessie, stretch
CVE-2018-7549In params.c in zsh through 5.4.2, there is a crash during a copy of an ...jessie, stretch
zziplibCVE-2018-6542In ZZIPlib 0.13.67, there is a bus error (when handling a disk64_trail ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
CVE-2018-7727An issue was discovered in ZZIPlib 0.13.68. There is a memory leak tri ...bookworm, bullseye, buster, jessie, sid, stretch, trixie
zziplibCVE-2018-17828Directory traversal vulnerability in ZZIPlib 0.13.69 allows attackers ...bookworm, bullseye, buster, jessie, sid, stretch, trixie

Search for package or bug name: Reporting problems