Vulnerabilities > Debian > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-10-04 CVE-2021-32672 Out-of-bounds Read vulnerability in multiple products
Redis is an open source, in-memory database that persists on disk.
4.3
2021-09-29 CVE-2021-22947 Insufficient Verification of Data Authenticity vulnerability in multiple products
When curl >= 7.20.0 and <= 7.78.0 connects to an IMAP or POP3 server to retrieve data using STARTTLS to upgrade to TLS security, the server can respond and send back multiple responses at once that curl caches.
5.9
2021-09-27 CVE-2021-20317 A flaw was found in the Linux kernel.
local
low complexity
linux debian
4.4
2021-09-20 CVE-2021-32276 NULL Pointer Dereference vulnerability in multiple products
An issue was discovered in faad2 through 2.10.0.
local
low complexity
faad2-project debian CWE-476
5.5
2021-09-20 CVE-2021-32280 NULL Pointer Dereference vulnerability in multiple products
An issue was discovered in fig2dev before 3.2.8..
local
low complexity
xfig-project debian CWE-476
5.5
2021-09-20 CVE-2020-21913 Use After Free vulnerability in multiple products
International Components for Unicode (ICU-20850) v66.1 was discovered to contain a use after free bug in the pkg_createWithAssemblyCode function in the file tools/pkgdata/pkgdata.cpp.
local
low complexity
unicode debian CWE-416
5.5
2021-09-16 CVE-2020-21596 Classic Buffer Overflow vulnerability in multiple products
libde265 v1.0.4 contains a global buffer overflow in the decode_CABAC_bit function, which can be exploited via a crafted a file.
network
low complexity
struktur debian CWE-120
6.5
2021-09-16 CVE-2020-21597 Out-of-bounds Write vulnerability in multiple products
libde265 v1.0.4 contains a heap buffer overflow in the mc_chroma function, which can be exploited via a crafted a file.
network
low complexity
struktur debian CWE-787
6.5
2021-09-16 CVE-2020-21599 Out-of-bounds Write vulnerability in multiple products
libde265 v1.0.4 contains a heap buffer overflow in the de265_image::available_zscan function, which can be exploited via a crafted a file.
network
low complexity
struktur debian CWE-787
6.5
2021-09-16 CVE-2020-21529 Out-of-bounds Write vulnerability in multiple products
fig2dev 3.2.7b contains a stack buffer overflow in the bezier_spline function in genepic.c.
local
low complexity
xfig-project debian CWE-787
5.5