Vulnerabilities > Debian > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-07-31 CVE-2019-14464 Out-of-bounds Write vulnerability in multiple products
XMFile::read in XMFile.cpp in milkyplay in MilkyTracker 1.02.00 has a heap-based buffer overflow.
5.5
2019-07-30 CVE-2019-10156 A flaw was discovered in the way Ansible templating was implemented in versions before 2.6.18, 2.7.12 and 2.8.2, causing the possibility of information disclosure through unexpected variable substitution.
network
low complexity
redhat debian
5.4
2019-07-30 CVE-2019-14380 Out-of-bounds Read vulnerability in multiple products
libopenmpt before 0.4.5 allows a crash during playback due to an out-of-bounds read in XM and MT2 files.
network
low complexity
openmpt debian CWE-125
6.5
2019-07-30 CVE-2019-14443 Divide By Zero vulnerability in multiple products
An issue was discovered in Libav 12.3.
network
low complexity
libav debian CWE-369
6.5
2019-07-30 CVE-2019-14442 Infinite Loop vulnerability in multiple products
In mpc8_read_header in libavformat/mpc8.c in Libav 12.3, an input file can result in an avio_seek infinite loop and hang, with 100% CPU consumption.
network
low complexity
libav debian CWE-835
6.5
2019-07-28 CVE-2019-14370 Out-of-bounds Read vulnerability in multiple products
In Exiv2 0.27.99.0, there is an out-of-bounds read in Exiv2::MrwImage::readMetadata() in mrwimage.cpp.
network
low complexity
exiv2 debian CWE-125
6.5
2019-07-28 CVE-2019-14369 Out-of-bounds Read vulnerability in multiple products
Exiv2::PngImage::readMetadata() in pngimage.cpp in Exiv2 0.27.99.0 allows attackers to cause a denial of service (heap-based buffer over-read) via a crafted image file.
network
low complexity
exiv2 debian CWE-125
6.5
2019-07-26 CVE-2019-13057 An issue was discovered in the server in OpenLDAP before 2.4.48. 4.9
2019-07-26 CVE-2019-14275 Out-of-bounds Write vulnerability in multiple products
Xfig fig2dev 3.2.7a has a stack-based buffer overflow in the calc_arrow function in bound.c.
local
low complexity
xfig-project debian opensuse CWE-787
5.5
2019-07-23 CVE-2019-2816 Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Networking).
network
high complexity
oracle debian opensuse hp mcafee canonical redhat
4.8