Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Debian_linux
(Debian)Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2019-11-29 | CVE-2015-0837 | The mpi_powm function in Libgcrypt before 1.6.3 and GnuPG before 1.4.19 allows attackers to obtain sensitive information by leveraging timing differences when accessing a pre-computed table during modular exponentiation, related to a "Last-Level Cache Side-Channel Attack." | Debian_linux, Gnupg, Libgcrypt | N/A | ||
2019-12-11 | CVE-2013-4245 | Orca has arbitrary code execution due to insecure Python module load | Debian_linux, Orca | N/A | ||
2019-12-05 | CVE-2013-0326 | OpenStack nova base images permissions are world readable | Debian_linux, Nova | N/A | ||
2019-12-05 | CVE-2012-1114 | A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the filter parameter to cmd.php in an export and exporter_id action. and the filteruid parameter to list.php. | Debian_linux, Fedora, Ldap_account_manager | N/A | ||
2019-11-27 | CVE-2011-2207 | dirmngr before 2.1.0 improperly handles certain system calls, which allows remote attackers to cause a denial of service (DOS) via a specially-crafted certificate. | Debian_linux, Gnupg, Enterprise_linux | N/A | ||
2019-11-27 | CVE-2011-2515 | PackageKit 0.6.17 allows installation of unsigned RPM packages as though they were signed which may allow installation of non-trusted packages and execution of arbitrary code. | Debian_linux, Packagekit, Enterprise_linux_server | N/A | ||
2017-09-20 | CVE-2017-14604 | GNOME Nautilus before 3.23.90 allows attackers to spoof a file type by using the .desktop file extension, as demonstrated by an attack in which a .desktop file's Name field ends in .pdf but this file's Exec field launches a malicious "sh -c" command. In other words, Nautilus provides no UI indication that a file actually has the potentially unsafe .desktop extension; instead, the UI only shows the .pdf extension. One (slightly) mitigating factor is that an attack requires the .desktop file... | Debian_linux, Nautilus | N/A | ||
2019-12-02 | CVE-2012-4576 | FreeBSD: Input Validation Flaw allows local users to gain elevated privileges | Debian_linux, Freebsd | N/A | ||
2019-11-26 | CVE-2011-4082 | A local file inclusion flaw was found in the way the phpLDAPadmin before 0.9.8 processed certain values of the "Accept-Language" HTTP header. A remote attacker could use this flaw to cause a denial of service via specially-crafted request. | Debian_linux, Phpldapadmin | N/A | ||
2019-11-26 | CVE-2011-3617 | Tahoe-LAFS v1.3.0 through v1.8.2 could allow unauthorized users to delete immutable files in some cases. | Debian_linux, Tahoe\-Lafs | N/A |