Vulnerability index

Browse CVEs

598 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2013-2739 MiniDLNA has heap-based buffer overflow Debian Linux 1.1.0+ Fix from $2,3002019-11-01 CRITICAL 9.8 CVE-2013-1910 yum does not properly handle bad metadata, which allows an attacker to cause a denial of service and possibly have other unspecified impact via a Tro… Debian Linux Mitigation only Fix from $2,3002019-10-31 CRITICAL 9.8 CVE-2009-5041 overkill has buffer overflow via long player names that can corrupt data on the server machine Overkill 0.16-14.1+ Fix from $2,3002019-10-31 CRITICAL 9.8 CVE-2009-5043 burn allows file names to escape via mishandled quotation marks Debian Linux No fix yet Fix from $2,3002019-10-31 CRITICAL 9.1 CVE-2009-5042 python-docutils allows insecure usage of temporary files Debian Linux Mitigation only Fix from $2,3002019-10-31 CRITICAL 9.8 CVE-2019-18425 An issue was discovered in Xen through 4.12.x allowing 32-bit PV guest OS users to gain guest OS privileges by installing and using descriptors. Ther… Debian Linux after 4.12.1 Fix from $2,3002019-10-31 CRITICAL 9.8 CVE-2010-0748 Transmission before 1.92 allows an attacker to cause a denial of service (crash) or possibly have other unspecified impact via a large number of tr a… Debian Linux 1.92+ Fix from $2,3002019-10-30 CRITICAL 9.8 CVE-2019-17545 GDAL through 3.0.1 has a poolDestroy double free in OGRExpatRealloc in ogr/ogr_expat.cpp when the 10MB threshold is exceeded. Debian Linux after 3.0.1 Fix from $2,3002019-10-14 CRITICAL 9.8 CVE-2019-17539 In FFmpeg before 4.2, avcodec_open2 in libavcodec/utils.c allows a NULL pointer dereference and possibly unspecified other impact when there is no va… Debian Linux 3.4.7 / 4.0.5+ Fix from $2,3002019-10-14 CRITICAL 9.8 CVE-2019-17531EPSS 5% A Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.0.0 through 2.9.10. When Default Typing is enabled (either globally or for … Debian Linux 2.6.7.3 / 2.8.11.5+ Fix from $2,3002019-10-12 CRITICAL 9.8 CVE-2019-17455 Libntlm through 1.5 relies on a fixed buffer size for tSmbNtlmAuthRequest, tSmbNtlmAuthChallenge, and tSmbNtlmAuthResponse read and write operations,… Debian Linux after 1.5 Fix from $2,3002019-10-10 CRITICAL 9.1 CVE-2019-17362 In LibTomCrypt through 1.18.2, the der_decode_utf8_string function (in der_decode_utf8_string.c) does not properly detect certain invalid UTF-8 seque… Debian Linux after 1.18.2 Fix from $2,3002019-10-09 CRITICAL 9.8 CVE-2019-17041 An issue was discovered in Rsyslog v8.1908.0. contrib/pmaixforwardedfrom/pmaixforwardedfrom.c has a heap overflow in the parser for AIX log messages.… Debian Linux Patch available Fix from $2,3002019-10-07 CRITICAL 9.8 CVE-2019-16942EPSS 6% A Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.0.0 through 2.9.10. When Default Typing is enabled (either globally or for … Debian Linux 2.6.7.3 / 2.8.11.5+ Fix from $2,3002019-10-01 CRITICAL 9.8 CVE-2019-16943 A Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.0.0 through 2.9.10. When Default Typing is enabled (either globally or for … Debian Linux 2.6.7.3 / 2.8.11.5+ Fix from $2,3002019-10-01 CRITICAL 9.8 CVE-2019-15941 OpenID Connect Issuer in LemonLDAP::NG 2.x through 2.0.5 may allow an attacker to bypass access control rules via a crafted OpenID Connect authorizat… Debian Linux after 2.0.5 Fix from $2,3002019-09-25 CRITICAL 9.8 CVE-2019-16378 OpenDMARC through 1.3.2 and 1.4.x through 1.4.0-Beta1 is prone to a signature-bypass vulnerability with multiple From: addresses, which might affect … Debian Linux after 1.3.2 Fix from $2,3002019-09-17 CRITICAL 9.8 CVE-2019-15846EPSS 28% Exim before 4.92.2 allows remote attackers to execute arbitrary code as root via a trailing backslash. Debian Linux 4.92.2+ Fix from $2,3002019-09-06 CRITICAL 9.8 CVE-2019-11500EPSS 63% In Dovecot before 2.2.36.4 and 2.3.x before 2.3.7.2 (and Pigeonhole before 0.5.7.2), protocol processing can fail for quoted strings. This occurs bec… Debian Linux 0.5.7.2 / 2.2.36.4+ Fix from $2,3002019-08-29 CRITICAL 9.8 CVE-2019-13273 In Xymon through 4.3.28, a buffer overflow vulnerability exists in the csvinfo CGI script. The overflow may be exploited by sending a crafted GET req… Debian Linux after 4.3.28 Fix from $2,3002019-08-27 CRITICAL 9.8 CVE-2019-13451 In Xymon through 4.3.28, a buffer overflow vulnerability exists in history.c. Debian Linux after 4.3.28 Fix from $2,3002019-08-27 CRITICAL 9.8 CVE-2019-13452 In Xymon through 4.3.28, a buffer overflow vulnerability exists in reportlog.c. Debian Linux after 4.3.28 Fix from $2,3002019-08-27 CRITICAL 9.8 CVE-2019-13455 In Xymon through 4.3.28, a stack-based buffer overflow vulnerability exists in the alert acknowledgment CGI tool because of   expansion in ackno… Debian Linux after 4.3.28 Fix from $2,3002019-08-27 CRITICAL 9.8 CVE-2019-13484 In Xymon through 4.3.28, a buffer overflow exists in the status-log viewer CGI because of   expansion in appfeed.c. Debian Linux after 4.3.28 Fix from $2,3002019-08-27 CRITICAL 9.8 CVE-2019-13485 In Xymon through 4.3.28, a stack-based buffer overflow vulnerability exists in the history viewer component via a long hostname or service parameter … Debian Linux after 4.3.28 Fix from $2,3002019-08-27 CRITICAL 9.8 CVE-2019-13486 In Xymon through 4.3.28, a stack-based buffer overflow exists in the status-log viewer component because of   expansion in svcstatus.c. Debian Linux after 4.3.28 Fix from $2,3002019-08-27 CRITICAL 9.8 CVE-2019-11187 Incorrect Access Control in the LDAP class of GONICUS GOsa through 2019-04-11 allows an attacker to log into any account with a username containing t… Debian Linux after 2019-04-11 Fix from $2,3002019-08-15 CRITICAL 9.8 CVE-2019-14379EPSS 8% SubTypeValidator.java in FasterXML jackson-databind before 2.9.9.2 mishandles default typing when ehcache is used (because of net.sf.ehcache.transact… Debian Linux 2.6.7.3 / 2.7.9.6+ Fix from $2,3002019-07-29 CRITICAL 9.8 CVE-2019-13917EPSS 8% Exim 4.85 through 4.92 (fixed in 4.92.1) allows remote code execution as root in some unusual configurations that use the ${sort } expansion for item… Debian Linux after 4.92 Fix from $2,3002019-07-25 CRITICAL 9.8 CVE-2019-1010174 CImg The CImg Library v.2.3.3 and earlier is affected by: command injection. The impact is: RCE. The component is: load_network() function. The attac… Debian Linux 2.3.4+ Fix from $2,3002019-07-25