Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Debian_linux
(Debian)Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2019-09-30 | CVE-2019-16993 | In phpBB before 3.1.7-PL1, includes/acp/acp_bbcodes.php has improper verification of a CSRF token on the BBCode page in the Administration Control Panel. An actual CSRF attack is possible if an attacker also manages to retrieve the session id of a reauthenticated administrator prior to targeting them. | Debian_linux, Phpbb | N/A | ||
2019-11-20 | CVE-2013-1817 | MediaWiki before 1.19.4 and 1.20.x before 1.20.3 contains an error in the api.php script which allows remote attackers to obtain sensitive information. | Debian_linux, Fedora, Mediawiki, Enterprise_linux | N/A | ||
2019-11-20 | CVE-2013-1816 | MediaWiki before 1.19.4 and 1.20.x before 1.20.3 allows remote attackers to cause a denial of service (application crash) by sending a specially crafted request. | Debian_linux, Fedora, Mediawiki, Enterprise_linux | N/A | ||
2019-11-19 | CVE-2012-0842 | surf: cookie jar has read access from other local user | Debian_linux, Surf | N/A | ||
2019-11-14 | CVE-2011-1490 | A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages are logged when multiple rulesets were used and some output batches contained messages belonging to more than one ruleset. A local attacker could cause denial of the rsyslogd daemon service via a log message belonging to more than one ruleset | Debian_linux, Opensuse, Rsyslog | N/A | ||
2019-11-14 | CVE-2011-1489 | A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages were logged when multiple rulesets were used and some output batches contained messages belonging to more than one ruleset. A local attacker could cause denial of the rsyslogd daemon service via a log message belonging to more than one ruleset. | Debian_linux, Opensuse, Rsyslog | N/A | ||
2019-11-15 | CVE-2013-7089 | ClamAV before 0.97.7: dbg_printhex possible information leak | Clamav, Debian_linux, Fedora | N/A | ||
2019-11-15 | CVE-2013-7088 | ClamAV before 0.97.7 has buffer overflow in the libclamav component | Clamav, Debian_linux, Fedora | N/A | ||
2019-11-15 | CVE-2013-7087 | ClamAV before 0.97.7 has WWPack corrupt heap memory | Clamav, Debian_linux, Fedora | N/A | ||
2019-11-14 | CVE-2011-1930 | In klibc 1.5.20 and 1.5.21, the DHCP options written by ipconfig to /tmp/net-$DEVICE.conf are not properly escaped. This may allow a remote attacker to send a specially crafted DHCP reply which could execute arbitrary code with the privileges of any process which sources DHCP options. | Debian_linux, Klibc | N/A |