VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
> Debian
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2022-03-30
CVE-2022-28202
Cross-site Scripting vulnerability in multiple products
An XSS issue was discovered in MediaWiki before 1.35.6, 1.36.x before 1.36.4, and 1.37.x before 1.37.2.
network
low complexity
mediawiki
fedoraproject
debian
CWE-79
6.1
6.1
2022-03-29
CVE-2022-1122
A flaw was found in the opj2_decompress program in openjpeg2 2.4.0 in the way it handles an input directory with a large number of files.
local
low complexity
uclouvain
fedoraproject
debian
5.5
5.5
2022-03-28
CVE-2022-26291
Use After Free vulnerability in multiple products
lrzip v0.641 was discovered to contain a multiple concurrency use-after-free between the functions zpaq_decompress_buf() and clear_rulist().
local
low complexity
long-range-zip-project
debian
CWE-416
5.5
5.5
2022-03-25
CVE-2021-3582
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device.
local
low complexity
qemu
debian
CWE-119
6.5
6.5
2022-03-25
CVE-2021-3933
An integer overflow could occur when OpenEXR processes a crafted file on systems where size_t < 64 bits.
local
low complexity
openexr
fedoraproject
debian
5.5
5.5
2022-03-25
CVE-2021-3941
In ImfChromaticities.cpp routine RGBtoXYZ(), there are some division operations such as `float Z = (1 - chroma.white.x - chroma.white.y) * Y / chroma.white.y;` and `chroma.green.y * (X + Z))) / d;` but the divisor is not checked for a 0 value.
local
low complexity
openexr
redhat
fedoraproject
debian
6.5
6.5
2022-03-25
CVE-2022-0494
Use of Uninitialized Resource vulnerability in multiple products
A kernel information leak flaw was identified in the scsi_ioctl function in drivers/scsi/scsi_ioctl.c in the Linux kernel.
local
low complexity
linux
debian
CWE-908
4.4
4.4
2022-03-25
CVE-2022-1049
A flaw was found in the Pacemaker configuration tool (pcs).
network
low complexity
clusterlabs
debian
8.8
8.8
2022-03-25
CVE-2018-25032
Out-of-bounds Write vulnerability in multiple products
zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.
network
low complexity
zlib
debian
fedoraproject
apple
python
mariadb
netapp
siemens
azul
goto
CWE-787
7.5
7.5
2022-03-24
CVE-2022-24769
Moby is an open-source project created by Docker to enable and accelerate software containerization.
local
low complexity
mobyproject
fedoraproject
linuxfoundation
debian
5.9
5.9
«
Previous
1
2
...
126
127
128
(current)
129
130
...
768
769
»
Next