Skip to main content

Vendor/product archive

debian / debian_linux CVEs

Beta · best-effort

10,010 CVEs tagged to debian / debian_linux1,096 Critical, 4,214 High, 4,280 Medium, 418 Low, 2 Unrated.

CVE-2012-1149

Published Jun 21, 2012

Integer overflow in the vclmi.dll module in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of se…

CVSS 7.5 · High

CVE-2012-0037

Published Jun 17, 2012

Redland Raptor (aka libraptor) before 2.0.7, as used by OpenOffice 3.3 and 3.4 Beta, LibreOffice before 3.4.6 and 3.5.x before 3.5.1, and other products, allows user-assisted remo…

CVSS 6.5 · Medium

CVE-2012-0507

Published Jun 7, 2012

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier, and 5.0 Update 33 and earlier allows r…

CVSS 9.8 · Critical
evidence mentions
36
Buzz score
66.0
KEV listed

CVE-2012-1798

Published Jun 5, 2012

The TIFFGetEXIFProperties function in coders/tiff.c in ImageMagick before 6.7.6-3 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted…

CVSS 6.5 · Medium

CVE-2012-0260

Published Jun 5, 2012

The JPEGWarningHandler function in coders/jpeg.c in ImageMagick before 6.7.6-3 allows remote attackers to cause a denial of service (memory consumption) via a JPEG image with a cr…

CVSS 6.5 · Medium

CVE-2012-0248

Published Jun 5, 2012

ImageMagick 6.7.5-7 and earlier allows remote attackers to cause a denial of service (infinite loop and hang) via a crafted image whose IFD contains IOP tags that all reference th…

CVSS 5.5 · Medium

CVE-2012-0247

Published Jun 5, 2012

ImageMagick 6.7.5-7 and earlier allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted offset and count values in…

CVSS 8.8 · High

CVE-2012-1823

Published May 11, 2012

sapi/cgi/cgi_main.c in PHP before 5.3.12 and 5.4.x before 5.4.2, when configured as a CGI script (aka php-cgi), does not properly handle query strings that lack an = (equals sign)…

CVSS 9.8 · Critical
evidence mentions
18
Buzz score
75.4
KEV listedPublic PoC observed

CVE-2012-0216

Published Apr 22, 2012

The default configuration of the apache2 package in Debian GNU/Linux squeeze before 2.2.16-6+squeeze7, wheezy before 2.2.22-4, and sid before 2.2.22-4, when mod_php or mod_rivet i…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-3045

Published Mar 22, 2012

Integer signedness error in the png_inflate function in pngrutil.c in libpng before 1.4.10beta01, as used in Google Chrome before 17.0.963.83 and other products, allows remote att…

CVSS 8.8 · High

CVE-2012-0444

Published Feb 1, 2012

Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 do not properly initialize nsChildView data structures,…

CVSS 10.0 · Critical

CVE-2012-0053

Published Jan 28, 2012

protocol.c in the Apache HTTP Server 2.2.x through 2.2.21 does not properly restrict header information during construction of Bad Request (aka 400) error documents, which allows…

CVSS 4.3 · Medium

CVE-2011-4361

Published Jan 8, 2012

MediaWiki before 1.17.1 does not check for read permission before handling action=ajax requests, which allows remote attackers to obtain sensitive information by (1) leveraging th…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 9,401-9,425 of 10,010 CVEsPage 377 of 401