Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.3
CVE-2013-2012
autojump before 21.5.8 allows local users to gain privileges via a Trojan horse custom_install directory in the current working directory.
Debian Linux
21.5.8+
MEDIUM 6.1
CVE-2013-1951
A cross-site scripting (XSS) vulnerability in MediaWiki before 1.19.5 and 1.20.x before 1.20.4 and allows remote attackers to inject arbitrary web sc…
Debian Linux
1.19.5 / 1.20.4+
MEDIUM 5.4
CVE-2013-1934
A cross-site scripting (XSS) vulnerability in the configuration report page (adm_config_report.php) in MantisBT 1.2.0rc1 before 1.2.14 allows remote …
Debian Linux
after 1.2.14
CRITICAL 9.8
CVE-2013-1910
yum does not properly handle bad metadata, which allows an attacker to cause a denial of service and possibly have other unspecified impact via a Tro…
Debian Linux
Mitigation only
CRITICAL 9.8
CVE-2009-5041
overkill has buffer overflow via long player names that can corrupt data on the server machine
Overkill
0.16-14.1+
CRITICAL 9.8
CVE-2009-5043
burn allows file names to escape via mishandled quotation marks
Debian Linux
No fix yet
CRITICAL 9.1
CVE-2009-5042
python-docutils allows insecure usage of temporary files
Debian Linux
Mitigation only
MEDIUM 6.5
CVE-2010-2490
Mumble: murmur-server has DoS due to malformed client query
Debian Linux
Patch available
CRITICAL 9.8
CVE-2019-18425
An issue was discovered in Xen through 4.12.x allowing 32-bit PV guest OS users to gain guest OS privileges by installing and using descriptors. Ther…
Debian Linux
after 4.12.1
MEDIUM 6.8
CVE-2019-18424
An issue was discovered in Xen through 4.12.x allowing attackers to gain host OS privileges via DMA in a situation where an untrusted domain has acce…
Debian Linux
after 4.12.1
HIGH 8.8
CVE-2019-18423
An issue was discovered in Xen through 4.12.x allowing ARM guest OS users to cause a denial of service via a XENMEM_add_to_physmap hypercall. p2m->ma…
Debian Linux
after 4.12.1
HIGH 8.8
CVE-2019-18422
An issue was discovered in Xen through 4.12.x allowing ARM guest OS users to cause a denial of service or gain privileges by leveraging the erroneous…
Debian Linux
after 4.12.1
HIGH 7.5
CVE-2019-18421
An issue was discovered in Xen through 4.12.x allowing x86 PV guest OS users to gain host OS privileges by leveraging race conditions in pagetable pr…
Debian Linux
after 4.12.1
MEDIUM 6.5
CVE-2019-18420
An issue was discovered in Xen through 4.12.x allowing x86 PV guest OS users to cause a denial of service via a VCPUOP_initialise hypercall. hypercal…
Debian Linux
after 4.12.1
CRITICAL 9.8
CVE-2010-0748
Transmission before 1.92 allows an attacker to cause a denial of service (crash) or possibly have other unspecified impact via a large number of tr a…
Debian Linux
1.92+
MEDIUM 5.3
CVE-2010-0749
Transmission before 1.92 allows attackers to prevent download of a file by corrupted data during the endgame.
Debian Linux
1.92+
HIGH 8.2
CVE-2011-1408
ikiwiki before 3.20110608 allows remote attackers to hijack root's tty and run symlink attacks.
Debian Linux
3.20110608+
HIGH 7.5
CVE-2019-18602
OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to an information disclosure vulnerability because uninitialized scalars are sent over the netw…
Debian Linux
1.6.24 / 1.8.5+
MEDIUM 5.9
CVE-2019-18603
OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to information leakage upon certain error conditions because uninitialized RPC output variables…
Debian Linux
1.6.24 / 1.8.5+
HIGH 7.5
CVE-2011-4931
gpw generates shorter passwords than required
Debian Linux
No fix yet
HIGH 7.5
CVE-2009-3723
asterisk allows calls on prohibited networks
Debian Linux
1.6.1.8+
MEDIUM 5.5
CVE-2010-3373
paxtest handles temporary files insecurely
Debian Linux
No fix yet
HIGH 7.5
CVE-2019-18408
archive_read_format_rar_read_data in archive_read_support_format_rar.c in libarchive before 3.4.0 has a use-after-free in a certain ARCHIVE_FAILED si…
Debian Linux
3.4.0+
HIGH 7.8
CVE-2019-18218
cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer overflow (…
Debian Linux
after 5.37
MEDIUM 6.8
CVE-2019-2949
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Kerberos). Supported versions that are affected are Java SE: 7u2…
Debian Linux
after 11.50.2
MEDIUM 5.9
CVE-2019-2958
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u…
Debian Linux
after 11.50.2
CRITICAL 9.8
CVE-2019-17545
GDAL through 3.0.1 has a poolDestroy double free in OGRExpatRealloc in ogr/ogr_expat.cpp when the 10MB threshold is exceeded.
Debian Linux
after 3.0.1
CRITICAL 9.8
CVE-2019-17539
In FFmpeg before 4.2, avcodec_open2 in libavcodec/utils.c allows a NULL pointer dereference and possibly unspecified other impact when there is no va…
Debian Linux
3.4.7 / 4.0.5+
HIGH 8.8
CVE-2019-17540
ImageMagick before 7.0.8-54 has a heap-based buffer overflow in ReadPSInfo in coders/ps.c.
Debian Linux
6.9.10-55 / 7.0.8-54+
HIGH 8.2
CVE-2019-17533
Mat_VarReadNextInfo4 in mat4.c in MATIO 1.5.17 omits a certain '\0' character, leading to a heap-based buffer over-read in strdup_vprintf when uninit…
Debian Linux
Patch available