Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2013-2739
MiniDLNA has heap-based buffer overflow
Debian Linux
1.1.0+
CRITICAL 9.8
CVE-2013-1910
yum does not properly handle bad metadata, which allows an attacker to cause a denial of service and possibly have other unspecified impact via a Tro…
Debian Linux
Mitigation only
CRITICAL 9.8
CVE-2009-5041
overkill has buffer overflow via long player names that can corrupt data on the server machine
Overkill
0.16-14.1+
CRITICAL 9.8
CVE-2009-5043
burn allows file names to escape via mishandled quotation marks
Debian Linux
No fix yet
CRITICAL 9.1
CVE-2009-5042
python-docutils allows insecure usage of temporary files
Debian Linux
Mitigation only
CRITICAL 9.8
CVE-2019-18425
An issue was discovered in Xen through 4.12.x allowing 32-bit PV guest OS users to gain guest OS privileges by installing and using descriptors. Ther…
Debian Linux
after 4.12.1
CRITICAL 9.8
CVE-2010-0748
Transmission before 1.92 allows an attacker to cause a denial of service (crash) or possibly have other unspecified impact via a large number of tr a…
Debian Linux
1.92+
CRITICAL 9.8
CVE-2019-17545
GDAL through 3.0.1 has a poolDestroy double free in OGRExpatRealloc in ogr/ogr_expat.cpp when the 10MB threshold is exceeded.
Debian Linux
after 3.0.1
CRITICAL 9.8
CVE-2019-17539
In FFmpeg before 4.2, avcodec_open2 in libavcodec/utils.c allows a NULL pointer dereference and possibly unspecified other impact when there is no va…
Debian Linux
3.4.7 / 4.0.5+
CRITICAL 9.8
CVE-2019-17531EPSS 5%
A Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.0.0 through 2.9.10. When Default Typing is enabled (either globally or for …
Debian Linux
2.6.7.3 / 2.8.11.5+
CRITICAL 9.8
CVE-2019-17455
Libntlm through 1.5 relies on a fixed buffer size for tSmbNtlmAuthRequest, tSmbNtlmAuthChallenge, and tSmbNtlmAuthResponse read and write operations,…
Debian Linux
after 1.5
CRITICAL 9.1
CVE-2019-17362
In LibTomCrypt through 1.18.2, the der_decode_utf8_string function (in der_decode_utf8_string.c) does not properly detect certain invalid UTF-8 seque…
Debian Linux
after 1.18.2
CRITICAL 9.8
CVE-2019-17041
An issue was discovered in Rsyslog v8.1908.0. contrib/pmaixforwardedfrom/pmaixforwardedfrom.c has a heap overflow in the parser for AIX log messages.…
Debian Linux
Patch available
CRITICAL 9.8
CVE-2019-16942EPSS 6%
A Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.0.0 through 2.9.10. When Default Typing is enabled (either globally or for …
Debian Linux
2.6.7.3 / 2.8.11.5+
CRITICAL 9.8
CVE-2019-16943
A Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.0.0 through 2.9.10. When Default Typing is enabled (either globally or for …
Debian Linux
2.6.7.3 / 2.8.11.5+
CRITICAL 9.8
CVE-2019-15941
OpenID Connect Issuer in LemonLDAP::NG 2.x through 2.0.5 may allow an attacker to bypass access control rules via a crafted OpenID Connect authorizat…
Debian Linux
after 2.0.5
CRITICAL 9.8
CVE-2019-16378
OpenDMARC through 1.3.2 and 1.4.x through 1.4.0-Beta1 is prone to a signature-bypass vulnerability with multiple From: addresses, which might affect …
Debian Linux
after 1.3.2
CRITICAL 9.8
CVE-2019-15846EPSS 28%
Exim before 4.92.2 allows remote attackers to execute arbitrary code as root via a trailing backslash.
Debian Linux
4.92.2+
CRITICAL 9.8
CVE-2019-11500EPSS 63%
In Dovecot before 2.2.36.4 and 2.3.x before 2.3.7.2 (and Pigeonhole before 0.5.7.2), protocol processing can fail for quoted strings. This occurs bec…
Debian Linux
0.5.7.2 / 2.2.36.4+
CRITICAL 9.8
CVE-2019-13273
In Xymon through 4.3.28, a buffer overflow vulnerability exists in the csvinfo CGI script. The overflow may be exploited by sending a crafted GET req…
Debian Linux
after 4.3.28
CRITICAL 9.8
CVE-2019-13451
In Xymon through 4.3.28, a buffer overflow vulnerability exists in history.c.
Debian Linux
after 4.3.28
CRITICAL 9.8
CVE-2019-13452
In Xymon through 4.3.28, a buffer overflow vulnerability exists in reportlog.c.
Debian Linux
after 4.3.28
CRITICAL 9.8
CVE-2019-13455
In Xymon through 4.3.28, a stack-based buffer overflow vulnerability exists in the alert acknowledgment CGI tool because of expansion in ackno…
Debian Linux
after 4.3.28
CRITICAL 9.8
CVE-2019-13484
In Xymon through 4.3.28, a buffer overflow exists in the status-log viewer CGI because of expansion in appfeed.c.
Debian Linux
after 4.3.28
CRITICAL 9.8
CVE-2019-13485
In Xymon through 4.3.28, a stack-based buffer overflow vulnerability exists in the history viewer component via a long hostname or service parameter …
Debian Linux
after 4.3.28
CRITICAL 9.8
CVE-2019-13486
In Xymon through 4.3.28, a stack-based buffer overflow exists in the status-log viewer component because of expansion in svcstatus.c.
Debian Linux
after 4.3.28
CRITICAL 9.8
CVE-2019-11187
Incorrect Access Control in the LDAP class of GONICUS GOsa through 2019-04-11 allows an attacker to log into any account with a username containing t…
Debian Linux
after 2019-04-11
CRITICAL 9.8
CVE-2019-14379EPSS 8%
SubTypeValidator.java in FasterXML jackson-databind before 2.9.9.2 mishandles default typing when ehcache is used (because of net.sf.ehcache.transact…
Debian Linux
2.6.7.3 / 2.7.9.6+
CRITICAL 9.8
CVE-2019-13917EPSS 8%
Exim 4.85 through 4.92 (fixed in 4.92.1) allows remote code execution as root in some unusual configurations that use the ${sort } expansion for item…
Debian Linux
after 4.92
CRITICAL 9.8
CVE-2019-1010174
CImg The CImg Library v.2.3.3 and earlier is affected by: command injection. The impact is: RCE. The component is: load_network() function. The attac…
Debian Linux
2.3.4+