Vulnerabilities > Debian > Debian Linux > Low
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2017-01-23 | CVE-2016-9401 | Use After Free vulnerability in multiple products popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address. | 2.1 |
2017-01-06 | CVE-2016-2367 | Information Exposure vulnerability in multiple products An information leak exists in the handling of the MXIT protocol in Pidgin. | 3.5 |
2016-12-29 | CVE-2016-9776 | Infinite Loop vulnerability in multiple products QEMU (aka Quick Emulator) built with the ColdFire Fast Ethernet Controller emulator support is vulnerable to an infinite loop issue. | 2.1 |
2016-12-29 | CVE-2016-2198 | NULL Pointer Dereference vulnerability in multiple products QEMU (aka Quick Emulator) built with the USB EHCI emulation support is vulnerable to a null pointer dereference flaw. | 2.1 |
2016-12-29 | CVE-2016-1922 | NULL Pointer Dereference vulnerability in multiple products QEMU (aka Quick Emulator) built with the TPR optimization for 32-bit Windows guests support is vulnerable to a null pointer dereference flaw. | 2.1 |
2016-12-29 | CVE-2015-8743 | Out-of-bounds Read vulnerability in multiple products QEMU (aka Quick Emulator) built with the NE2000 device emulation support is vulnerable to an OOB r/w access issue. | 3.6 |
2016-12-09 | CVE-2016-9104 | Integer Overflow or Wraparound vulnerability in multiple products Multiple integer overflows in the (1) v9fs_xattr_read and (2) v9fs_xattr_write functions in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allow local guest OS administrators to cause a denial of service (QEMU process crash) via a crafted offset, which triggers an out-of-bounds access. | 2.1 |
2016-12-09 | CVE-2016-9101 | Missing Release of Resource after Effective Lifetime vulnerability in multiple products Memory leak in hw/net/eepro100.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption and QEMU process crash) by repeatedly unplugging an i8255x (PRO100) NIC device. | 2.1 |
2016-11-04 | CVE-2016-8667 | Divide By Zero vulnerability in multiple products The rc4030_write function in hw/dma/rc4030.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (divide-by-zero error and QEMU process crash) via a large interval timer reload value. | 2.1 |
2016-11-04 | CVE-2016-8578 | The v9fs_iov_vunmarshal function in fsdev/9p-iov-marshal.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process crash) by sending an empty string parameter to a 9P operation. | 2.1 |