Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2024-39496 In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix use-after-free due to race with dev replace While loading a z… Debian Linux 6.1.95 / 6.6.35+ Fix from $1,9502024-07-12 CRITICAL 9.1 CVE-2024-37371 In MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can cause invalid memory reads during GSS message token handling by sending message tokens wi… Debian Linux 1.21.3+ Fix from $2,3002024-06-28 HIGH 7.8 CVE-2024-38588 In the Linux kernel, the following vulnerability has been resolved: ftrace: Fix possible use-after-free issue in ftrace_location() KASAN reports a … Debian Linux 5.4.286 / 5.10.227+ Fix from $1,9502024-06-19 MEDIUM 6.7 CVE-2024-35235 OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.8 and earlier, when starting the… Debian Linux after 2.4.8 Fix from $1,6002024-06-11 HIGH 7.8 CVE-2024-36971 KEV In the Linux kernel, the following vulnerability has been resolved: net: fix __dst_negative_advice() race __dst_negative_advice() does not enforce … Debian Linux 4.19.316 / 5.4.278+ Fix from $1,9502024-06-10 MEDIUM 6.1 CVE-2024-37383 KEVEPSS 73% Roundcube Webmail before 1.5.7 and 1.6.x before 1.6.7 allows XSS via SVG animate attributes. Debian Linux 1.5.7 / 1.6.7+ Fix from $1,6002024-06-07 MEDIUM 6.1 CVE-2024-37384 Roundcube Webmail before 1.5.7 and 1.6.x before 1.6.7 allows XSS via list columns from user preferences. Debian Linux 1.5.7 / 1.6.7+ Fix from $1,6002024-06-07 CRITICAL 9.1 CVE-2024-5197 There exists interger overflows in libvpx in versions prior to 1.14.1. Calling vpx_img_alloc() with a large value of the d_w, d_h, or align parameter… Debian Linux 1.14.1+ Fix from $2,3002024-06-03 CRITICAL 9.3 CVE-2024-36913 In the Linux kernel, the following vulnerability has been resolved: Drivers: hv: vmbus: Leak pages if set_memory_encrypted() fails In CoCo VMs it i… Debian Linux 6.1.143 / 6.6.31+ Fix from $2,3002024-05-30 HIGH 7.8 CVE-2024-4453 GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary… Debian Linux Patch available Fix from $1,9502024-05-22 HIGH 7.8 CVE-2021-47489 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix even more out of bound writes from debugfs CVE-2021-42327 was f… Debian Linux 5.10.236 / 5.14.16+ Fix from $1,9502024-05-22 HIGH 7.8 CVE-2023-52812 In the Linux kernel, the following vulnerability has been resolved: drm/amd: check num of link levels when update pcie param In SR-IOV environment,… Debian Linux 6.1.119 / 6.5.13+ Fix from $1,9502024-05-21 HIGH 7.8 CVE-2023-52757 In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential deadlock when releasing mids All release_mid() calle… Debian Linux 5.10.237 / 5.15.181+ Fix from $1,9502024-05-21 HIGH 7.8 CVE-2023-52752 In the Linux kernel, the following vulnerability has been resolved: smb: client: fix use-after-free bug in cifs_debug_data_proc_show() Skip SMB ses… Debian Linux 5.10.237 / 5.15.181+ Fix from $1,9502024-05-21 HIGH 7.8 CVE-2021-47247 In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix use-after-free of encap entry in neigh update handler Function m… Debian Linux 5.10.237 / 5.12.13+ Fix from $1,9502024-05-21 HIGH 7.8 CVE-2024-35866 In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_dump_full_key() Skip sessions that are b… Debian Linux 5.15.181 / 6.1.132+ Fix from $1,9502024-05-19 HIGH 7.8 CVE-2024-35867 In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_stats_proc_show() Skip sessions that are… Debian Linux 5.10.237 / 5.15.181+ Fix from $1,9502024-05-19 MEDIUM 5.5 CVE-2024-35829 In the Linux kernel, the following vulnerability has been resolved: drm/lima: fix a memleak in lima_heap_alloc When lima_vm_map_bo fails, the resou… Debian Linux 5.10.214 / 5.15.153+ Fix from $1,6002024-05-17 MEDIUM 5.5 CVE-2024-35821 In the Linux kernel, the following vulnerability has been resolved: ubifs: Set page uptodate in the correct place Page cache reads are lockless, so… Debian Linux 4.19.312 / 5.4.274+ Fix from $1,6002024-05-17 MEDIUM 5.2 CVE-2024-34397 An issue was discovered in GNOME GLib before 2.78.5, and 2.79.x and 2.80.x before 2.80.1. When a GDBus-based client subscribes to signals from a trus… Debian Linux 2.78.5 / 2.80.1+ Fix from $1,6002024-05-07 HIGH 8.1 CVE-2024-33599 nscd: Stack-based buffer overflow in netgroup cache If the Name Service Cache Daemon's (nscd) fixed size cache is exhausted by client requests then … Debian Linux 2.40+ Fix from $1,9502024-05-06 HIGH 7.4 CVE-2024-33602 nscd: netgroup cache assumes NSS callback uses in-buffer strings The Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory when the N… Debian Linux 2.40+ Fix from $1,9502024-05-06 HIGH 7.3 CVE-2024-33601 nscd: netgroup cache may terminate daemon on memory allocation failure The Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or xreallo… Debian Linux 2.40+ Fix from $1,9502024-05-06 MEDIUM 5.9 CVE-2024-33600 nscd: Null pointer crashes after notfound response If the Name Service Cache Daemon's (nscd) cache fails to add a not-found netgroup response to the… Debian Linux 2.40+ Fix from $1,6002024-05-06 HIGH 7.5 CVE-2024-34069 Werkzeug is a comprehensive WSGI web application library. The debugger in affected versions of Werkzeug can allow an attacker to execute code on a de… Debian Linux 3.0.3+ Fix from $1,9502024-05-06 MEDIUM 5.3 CVE-2024-34509 dcmdata in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message. Debian Linux 3.6.9+ Fix from $1,6002024-05-05 HIGH 7.8 CVE-2024-26928 In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_debug_files_proc_show() Skip sessions th… Debian Linux 5.10.237 / 5.15.180+ Fix from $1,9502024-04-28 HIGH 7.5 CVE-2024-28130 An incorrect type conversion vulnerability exists in the DVPSSoftcopyVOI_PList::createFromImage functionality of OFFIS DCMTK 3.6.8. A specially craft… Debian Linux No fix yet Fix from $1,9502024-04-23 HIGH 7.3 CVE-2024-2961EPSS 88% The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting string… Debian Linux 2.40+ Fix from $1,9502024-04-17 HIGH 7.8 CVE-2024-26883 In the Linux kernel, the following vulnerability has been resolved: bpf: Fix stackmap overflow check on 32-bit arches The stackmap code relies on r… Debian Linux 4.10 / 4.15+ Fix from $1,9502024-04-17