Vulnerabilities > Debian

DATE CVE VULNERABILITY TITLE RISK
2022-10-21 CVE-2022-3598 Out-of-bounds Write vulnerability in multiple products
LibTIFF 4.4.0 has an out-of-bounds write in extractContigSamplesShifted24bits in tools/tiffcrop.c:3604, allowing attackers to cause a denial-of-service via a crafted tiff file.
network
low complexity
libtiff netapp debian CWE-787
6.5
2022-10-21 CVE-2022-3599 Out-of-bounds Read vulnerability in multiple products
LibTIFF 4.4.0 has an out-of-bounds read in writeSingleSection in tools/tiffcrop.c:7345, allowing attackers to cause a denial-of-service via a crafted tiff file.
network
low complexity
libtiff netapp debian CWE-125
6.5
2022-10-21 CVE-2022-3626 Out-of-bounds Write vulnerability in multiple products
LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemset in libtiff/tif_unix.c:340 when called from processCropSelections, tools/tiffcrop.c:7619, allowing attackers to cause a denial-of-service via a crafted tiff file.
network
low complexity
libtiff netapp debian CWE-787
6.5
2022-10-21 CVE-2022-3627 Out-of-bounds Write vulnerability in multiple products
LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemcpy in libtiff/tif_unix.c:346 when called from extractImageSection, tools/tiffcrop.c:6860, allowing attackers to cause a denial-of-service via a crafted tiff file.
network
low complexity
libtiff netapp debian CWE-787
6.5
2022-10-21 CVE-2022-3640 A vulnerability, which was classified as critical, was found in Linux Kernel.
low complexity
linux fedoraproject debian
8.8
2022-10-21 CVE-2022-3633 A vulnerability classified as problematic has been found in Linux Kernel.
local
low complexity
linux debian
3.3
2022-10-21 CVE-2022-3635 Race Condition vulnerability in multiple products
A vulnerability, which was classified as critical, has been found in Linux Kernel.
local
high complexity
linux debian CWE-362
7.0
2022-10-21 CVE-2022-3636 A vulnerability, which was classified as critical, was found in Linux Kernel.
local
low complexity
linux debian
7.8
2022-10-21 CVE-2022-37454 Integer Overflow or Wraparound vulnerability in multiple products
The Keccak XKCP SHA-3 reference implementation before fdc6fef has an integer overflow and resultant buffer overflow that allows attackers to execute arbitrary code or eliminate expected cryptographic properties.
9.8
2022-10-21 CVE-2022-3625 A vulnerability was found in Linux Kernel.
local
low complexity
linux debian
7.8