Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Debian_linux
(Debian)Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
1998-01-01 | CVE-1999-0341 | Buffer overflow in the Linux mail program "deliver" allows local users to gain root access. | Debian_linux, Slackware_linux | N/A | ||
1999-02-01 | CVE-1999-0373 | Buffer overflow in the "Super" utility in Debian GNU/Linux, and other operating systems, allows local users to execute commands as root. | Debian_linux | N/A | ||
1999-02-09 | CVE-1999-0368 | Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto. | Openlinux, Debian_linux, Proftpd, Linux, Openserver, Unixware, Slackware_linux, Wu\-Ftpd | N/A | ||
1999-02-16 | CVE-1999-0374 | Debian GNU/Linux cfengine package is susceptible to a symlink attack. | Debian_linux | N/A | ||
1999-06-12 | CVE-1999-0730 | The zsoelim program in the Debian man-db package allows local users to overwrite files via a symlink attack. | Debian_linux | N/A | ||
1999-08-19 | CVE-1999-0732 | The logging facility of the Debian smtp-refuser package allows local users to delete arbitrary files using symbolic links. | Debian_linux | N/A | ||
2000-02-05 | CVE-2000-0145 | The libguile.so library file used by gnucash in Debian GNU/Linux is installed with world-writable permissions. | Debian_linux | N/A | ||
2015-03-30 | CVE-2015-2305 | Integer overflow in the regcomp implementation in the Henry Spencer BSD regex library (aka rxspencer) alpha3.8.g5 on 32-bit platforms, as used in NetBSD through 6.1.5 and other products, might allow context-dependent attackers to execute arbitrary code via a large regular expression that leads to a heap-based buffer overflow. | Ubuntu_linux, Debian_linux, Opensuse, Php, Rxspencer | N/A | ||
2014-03-05 | CVE-2013-6668 | Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, as used in Google Chrome before 33.0.1750.146, allow attackers to cause a denial of service or possibly have other impact via unknown vectors. | Debian_linux, Chrome, V8, Node\.js | N/A | ||
2015-04-24 | CVE-2015-3414 | SQLite before 3.8.9 does not properly implement the dequoting of collation-sequence names, which allows context-dependent attackers to cause a denial of service (uninitialized memory access and application crash) or possibly have unspecified other impact via a crafted COLLATE clause, as demonstrated by COLLATE"""""""" at the end of a SELECT statement. | Mac_os_x, Watchos, Ubuntu_linux, Debian_linux, Php, Sqlite | N/A |