Vulnerabilities > Debian > Debian Linux > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2017-03-18 | CVE-2017-7178 | Cross-Site Request Forgery (CSRF) vulnerability in multiple products CSRF was discovered in the web UI in Deluge before 1.3.14. | 8.8 |
2017-03-17 | CVE-2017-6960 | Integer Overflow or Wraparound vulnerability in multiple products An issue was discovered in apng2gif 1.7. | 7.5 |
2017-03-16 | CVE-2017-5617 | Server-Side Request Forgery (SSRF) vulnerability in multiple products The SVG Salamander (aka svgSalamander) library, when used in a web application, allows remote attackers to conduct server-side request forgery (SSRF) attacks via an xlink:href attribute in an SVG file. | 7.4 |
2017-03-15 | CVE-2016-10197 | Out-of-bounds Read vulnerability in multiple products The search_make_new function in evdns.c in libevent before 2.1.6-beta allows attackers to cause a denial of service (out-of-bounds read) via an empty hostname. | 7.5 |
2017-03-15 | CVE-2016-10196 | Out-of-bounds Write vulnerability in multiple products Stack-based buffer overflow in the evutil_parse_sockaddr_port function in evutil.c in libevent before 2.1.6-beta allows attackers to cause a denial of service (segmentation fault) via vectors involving a long string in brackets in the ip_as_string argument. | 7.5 |
2017-03-15 | CVE-2017-6060 | Out-of-bounds Write vulnerability in multiple products Stack-based buffer overflow in jstest_main.c in mujstest in Artifex Software, Inc. | 7.8 |
2017-03-10 | CVE-2017-6802 | Out-of-bounds Read vulnerability in multiple products An issue was discovered in ytnef before 1.9.2. | 7.5 |
2017-03-10 | CVE-2017-6801 | Out-of-bounds Read vulnerability in multiple products An issue was discovered in ytnef before 1.9.2. | 7.5 |
2017-03-10 | CVE-2017-6800 | Out-of-bounds Read vulnerability in multiple products An issue was discovered in ytnef before 1.9.2. | 7.5 |
2017-03-10 | CVE-2016-8714 | Classic Buffer Overflow vulnerability in multiple products An exploitable buffer overflow vulnerability exists in the LoadEncoding functionality of the R programming language version 3.3.0. | 8.8 |