Vulnerabilities > Debian > Debian Linux > High

DATE CVE VULNERABILITY TITLE RISK
2021-09-08 CVE-2021-21996 An issue was discovered in SaltStack Salt before 3003.3.
network
high complexity
saltstack fedoraproject debian
7.5
2021-09-08 CVE-2021-28701 Race Condition vulnerability in multiple products
Another race in XENMAPSPACE_grant_table handling Guests are permitted access to certain Xen-owned pages of memory.
local
high complexity
xen debian fedoraproject CWE-362
7.8
2021-09-07 CVE-2020-19131 Out-of-bounds Write vulnerability in multiple products
Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a denial of service via the "invertImage()" function in the component "tiffcrop".
network
low complexity
simplesystems debian CWE-787
7.5
2021-09-07 CVE-2021-33286 Out-of-bounds Write vulnerability in multiple products
In NTFS-3G versions < 2021.8.22, when a specially crafted unicode string is supplied in an NTFS image a heap buffer overflow can occur and allow for code execution.
local
low complexity
tuxera debian CWE-787
7.8
2021-09-07 CVE-2021-33287 Out-of-bounds Write vulnerability in multiple products
In NTFS-3G versions < 2021.8.22, when specially crafted NTFS attributes are read in the function ntfs_attr_pread_i, a heap buffer overflow can occur and allow for writing to arbitrary memory or denial of service of the application.
local
low complexity
tuxera debian fedoraproject CWE-787
7.8
2021-09-07 CVE-2021-35266 Out-of-bounds Write vulnerability in multiple products
In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode pathname is supplied in an NTFS image a heap buffer overflow can occur resulting in memory disclosure, denial of service and even code execution.
local
low complexity
tuxera debian fedoraproject CWE-787
7.8
2021-09-07 CVE-2021-35267 Out-of-bounds Write vulnerability in multiple products
NTFS-3G versions < 2021.8.22, a stack buffer overflow can occur when correcting differences in the MFT and MFTMirror allowing for code execution or escalation of privileges when setuid-root.
local
low complexity
tuxera debian fedoraproject CWE-787
7.8
2021-09-07 CVE-2021-39251 NULL Pointer Dereference vulnerability in multiple products
A crafted NTFS image can cause a NULL pointer dereference in ntfs_extent_inode_open in NTFS-3G < 2021.8.22.
local
low complexity
tuxera debian redhat fedoraproject CWE-476
7.8
2021-09-07 CVE-2021-39252 Out-of-bounds Read vulnerability in multiple products
A crafted NTFS image can cause an out-of-bounds read in ntfs_ie_lookup in NTFS-3G < 2021.8.22.
local
low complexity
tuxera debian fedoraproject CWE-125
7.8
2021-09-07 CVE-2021-39253 Out-of-bounds Read vulnerability in multiple products
A crafted NTFS image can cause an out-of-bounds read in ntfs_runlists_merge_i in NTFS-3G < 2021.8.22.
local
low complexity
tuxera debian fedoraproject CWE-125
7.8