VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Debian
>
Debian Linux
> 11.0
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2023-12-19
CVE-2023-6860
The `VideoBridge` allowed any content process to use textures produced by remote decoders.
network
low complexity
mozilla
debian
6.5
6.5
2023-12-19
CVE-2023-6861
Out-of-bounds Write vulnerability in multiple products
The `nsWindow::PickerOpen(void)` method was susceptible to a heap buffer overflow when running in headless mode.
network
low complexity
mozilla
debian
CWE-787
8.8
8.8
2023-12-19
CVE-2023-6862
Use After Free vulnerability in multiple products
A use-after-free was identified in the `nsDNSService::Init`.
network
low complexity
mozilla
debian
CWE-416
8.8
8.8
2023-12-19
CVE-2023-6863
The `ShutdownObserver()` was susceptible to potentially undefined behavior due to its reliance on a dynamic type that lacked a virtual destructor.
network
low complexity
mozilla
debian
8.8
8.8
2023-12-19
CVE-2023-6864
Out-of-bounds Write vulnerability in multiple products
Memory safety bugs present in Firefox 120, Firefox ESR 115.5, and Thunderbird 115.5.
network
low complexity
mozilla
debian
CWE-787
8.8
8.8
2023-12-19
CVE-2023-6865
`EncryptingOutputStream` was susceptible to exposing uninitialized data.
network
low complexity
mozilla
debian
6.5
6.5
2023-12-19
CVE-2023-6867
Improper Restriction of Rendered UI Layers or Frames vulnerability in multiple products
The timing of a button click causing a popup to disappear was approximately the same length as the anti-clickjacking delay on permission prompts.
network
low complexity
mozilla
debian
CWE-1021
6.1
6.1
2023-12-19
CVE-2023-6873
Out-of-bounds Write vulnerability in multiple products
Memory safety bugs present in Firefox 120.
network
low complexity
mozilla
debian
CWE-787
8.8
8.8
2023-12-18
CVE-2023-51384
In ssh-agent in OpenSSH before 9.6, certain destination constraints can be incompletely applied.
local
low complexity
openbsd
debian
5.5
5.5
2023-12-18
CVE-2023-51385
OS Command Injection vulnerability in multiple products
In ssh in OpenSSH before 9.6, OS command injection might occur if a user name or host name has shell metacharacters, and this name is referenced by an expansion token in certain situations.
network
low complexity
openbsd
debian
CWE-78
6.5
6.5
«
Previous
1
2
3
(current)
4
5
...
120
121
»
Next