Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Debian_linux
(Debian)Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2021-11-08 | CVE-2021-41771 | ImportedSymbols in debug/macho (for Open or OpenFat) in Go before 1.16.10 and 1.17.x before 1.17.3 Accesses a Memory Location After the End of a Buffer, aka an out-of-bounds slice situation. | Debian_linux, Fedora, Go | 7.5 | ||
2021-11-12 | CVE-2021-43331 | In GNU Mailman before 2.1.36, a crafted URL to the Cgi/options.py user options page can execute arbitrary JavaScript for XSS. | Debian_linux, Mailman | 6.1 | ||
2021-11-12 | CVE-2021-43332 | In GNU Mailman before 2.1.36, the CSRF token for the Cgi/admindb.py admindb page contains an encrypted version of the list admin password. This could potentially be cracked by a moderator via an offline brute-force attack. | Debian_linux, Mailman | 6.5 | ||
2021-11-17 | CVE-2021-43975 | In the Linux kernel through 5.15.2, hw_atl_utils_fw_rpc_wait in drivers/net/ethernet/aquantia/atlantic/hw_atl/hw_atl_utils.c allows an attacker (who can introduce a crafted device) to trigger an out-of-bounds write via a crafted length value. | Debian_linux, Fedora, Linux_kernel, Cloud_backup, H300e_firmware, H410c_firmware, H410s_firmware, H500e_firmware, H500s_firmware, H700e_firmware, H700s_firmware | 6.7 | ||
2021-11-18 | CVE-2021-39928 | NULL pointer exception in the IEEE 802.11 dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file | Debian_linux, Fedora, Wireshark | 7.5 | ||
2021-11-19 | CVE-2021-44025 | Roundcube before 1.3.17 and 1.4.x before 1.4.12 is prone to XSS in handling an attachment's filename extension when displaying a MIME type warning message. | Debian_linux, Fedora, Webmail | 6.1 | ||
2021-11-19 | CVE-2021-3974 | vim is vulnerable to Use After Free | Debian_linux, Fedora, Vim | 7.8 | ||
2021-11-19 | CVE-2021-3973 | vim is vulnerable to Heap-based Buffer Overflow | Debian_linux, Fedora, Vim | 7.8 | ||
2021-11-19 | CVE-2021-39921 | NULL pointer exception in the Modbus dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file | Debian_linux, Fedora, Wireshark | 7.5 | ||
2021-11-19 | CVE-2021-39922 | Buffer overflow in the C12.22 dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file | Debian_linux, Fedora, Wireshark | 7.5 |