CVE Browser

More filters (active)

Page 1 (more results available)

Vendor: Debian Remove filter Clear all
CVE-2026-89169 MEDIUM

live-boot ff8867c allows attackers to bypass the dm-verity-enforce-roothash-signature protection mechanism when the .verity file is missing.

CVSS 4.1 EPSS 0.15% Sep 11, 2026
CVE-2026-77118 HIGH

Out-of-bounds write in GraphicsMagick PCD decoder

CVSS 8.4 EPSS 0.17% Aug 20, 2026
CVE-2026-12996 MEDIUM

OpenVPN: OpenVPN: Denial of Service or memory leak via crafted packets

CVSS 6.0 EPSS 0.81% Jul 30, 2026
CVE-2026-14355 MEDIUM

ext/openssl: Memory corruption in openssl_encrypt with AES-WRAP-PAD

CVSS 5.6 EPSS 0.28% Jul 3, 2026
CVE-2026-56968 MEDIUM

GNU SASL before 2.2.4 lacks sanitization of a short challenge in _gsasl_ntlm_client_step in the NTLM client, which could result in memory disclosure via a craf…

CVSS 5.3 EPSS 0.41% Jun 23, 2026
CVE-2026-11853 MEDIUM

Debusine is an integrated solution to build, distribute and maintain a Debian-based distribution. Debian source packages (.dsc) and upload artifacts (.changes)…

CVSS 6.5 EPSS 0.27% Jun 10, 2026
CVE-2026-11852 MEDIUM

Debusine is an integrated solution to build, distribute and maintain a Debian-based distribution. Files managed by debusine are organized into artifacts. The e…

CVSS 6.5 EPSS 0.20% Jun 10, 2026
CVE-2026-49975 HIGH

Apache HTTP Server: mod_http2 denial of service

CVSS 7.5 EPSS 4.17% Jun 8, 2026
CVE-2026-9256 CRITICAL

NGINX ngx_http_rewrite_module vulnerability

CVSS 9.2 EPSS 2.70% May 22, 2026
CVE-2026-46333 HIGH

ptrace: slightly saner 'get_dumpable()' logic

CVSS 7.8 EPSS 0.51% May 15, 2026
CVE-2026-31431 KEV HIGH

crypto: algif_aead - Revert to operating out-of-place

CVSS 7.8 EPSS 3.44% Apr 22, 2026
CVE-2026-41082 HIGH

ocaml-opam: path traversal via the .install field

CVSS 7.8 EPSS 0.22% Apr 16, 2026
CVE-2026-34757 MEDIUM

LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure

CVSS 5.1 EPSS 0.16% Apr 9, 2026
CVE-2026-4775 HIGH

Libtiff: libtiff: arbitrary code execution or denial of service via signed integer overflow in tiff file processing

CVSS 7.8 EPSS 0.38% Mar 24, 2026
CVE-2026-1940 HIGH

Gstreamer: incomplete fix of cve-2026-1940

CVSS 7.5 EPSS 0.22% Mar 23, 2026
CVE-2025-63261 HIGH

AWStats 8.0 is vulnerable to Command Injection via the open function

CVSS 7.8 EPSS 1.05% Mar 20, 2026
CVE-2026-3497 MEDIUM

openssh: OpenSSH GSSAPI: Information disclosure or denial of service due to uninitialized variables

CVSS 6.9 EPSS 1.25% Mar 12, 2026
CVE-2026-2219 HIGH

It was discovered that dpkg-deb (a component of dpkg, the Debian package management system) does not properly validate the end of the data stream when uncompre…

CVSS 7.5 EPSS 0.43% Mar 7, 2026
CVE-2026-25506 HIGH

MUNGE has a buffer overflow in message unpacking allows key leakage and credential forgery

CVSS 7.8 EPSS 0.28% Feb 10, 2026
CVE-2025-64098 LOW

FastDDS has Out-of-memory in readOctetVector via Manipulated DATA Submessage when DDS Security is enabled

CVSS 1.7 EPSS 0.49% Feb 3, 2026
CVE-2025-62799 HIGH

FastDDS's heap buffer overflow in RTPS DATA_FRAG enables unauthenticated DoS (potential RCE)

CVSS 7.2 EPSS 0.55% Feb 3, 2026
CVE-2025-62603 LOW

FastDDS has Out-of-memory while parsing GenericMessage when DDS Security is enabled

CVSS 1.7 EPSS 0.56% Feb 3, 2026
CVE-2025-62602 LOW

FastDDS has heap buffer overflow in readData via Manipulated DATA Submessage when DDS Security is enabled

CVSS 1.7 EPSS 0.55% Feb 3, 2026
CVE-2025-62600 HIGH

eprosima Fast DDS affected by Out-of-Memory in readBinaryPropertySeq via Manipulated DATA Submessage when DDS Security is enabled

CVSS 8.6 EPSS 0.46% Feb 3, 2026
CVE-2025-62599 HIGH

eprosima Fast DDS affected by Out-of-Memory in readPropertySeq via Manipulated DATA Submessage when DDS Security is enabled

CVSS 8.6 EPSS 0.41% Feb 3, 2026

Showing 1 to 25 CVEs · page 1 (more available)