Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
debian dpkg vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv2
CVE-2014-8625
Multiple format string vulnerabilities in the parse_error_msg function in parsehelp.c in dpkg prior to 1.17.22 allow remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the (1) package or (2) architecture...
Debian Dpkg
6.8
CVSSv2
CVE-2011-0402
dpkg-source in dpkg prior to 1.14.31 and 1.15.x allows user-assisted remote malicious users to modify arbitrary files via a symlink attack on unspecified files in the .pc directory.
Debian Dpkg 1.14.16.3
Debian Dpkg 1.14.16.2
Debian Dpkg 1.14.21
Debian Dpkg 1.14.20
Debian Dpkg 1.13.9
Debian Dpkg 1.13.8
Debian Dpkg 1.13.15
Debian Dpkg 1.13.18
Debian Dpkg 1.13.24
Debian Dpkg 1.13.25
Debian Dpkg 1.14.6
Debian Dpkg 1.14.7
Debian Dpkg 1.14.8
Debian Dpkg 1.13.5
Debian Dpkg 1.13.4
Debian Dpkg 1.10.26
Debian Dpkg 1.10.25
Debian Dpkg 1.14.15
Debian Dpkg 1.14.14
Debian Dpkg 1.14.17
Debian Dpkg 1.14.16.6
Debian Dpkg 1.14.26
6.8
CVSSv2
CVE-2010-1679
Directory traversal vulnerability in dpkg-source in dpkg prior to 1.14.31 and 1.15.x allows user-assisted remote malicious users to modify arbitrary files via directory traversal sequences in a patch for a source-format 3.0 package.
Debian Dpkg 1.14.16
Debian Dpkg 1.14.15
Debian Dpkg 1.14.18
Debian Dpkg 1.14.17
Debian Dpkg 1.14.16.6
Debian Dpkg 1.14.26
Debian Dpkg 1.14.23
Debian Dpkg 1.13.12
Debian Dpkg 1.13.11.1
Debian Dpkg 1.13.19
Debian Dpkg 1.13.22
Debian Dpkg 1.14.2
Debian Dpkg 1.14.3
Debian Dpkg 1.14.10
Debian Dpkg 1.14.11
Debian Dpkg 1.13.1
Debian Dpkg 1.13.0
Debian Dpkg 1.14.14
Debian Dpkg 1.14.13
Debian Dpkg 1.14.16.5
Debian Dpkg 1.14.22
Debian Dpkg 1.14.24
6.4
CVSSv2
CVE-2014-3227
dpkg 1.15.9, 1.16.x prior to 1.16.14, and 1.17.x prior to 1.17.9 expect the patch program to be compliant with a need for the "C-style encoded filenames" feature, but is supported in environments with noncompliant patch programs, which triggers an interaction error that...
Debian Dpkg 1.16.0.1
Debian Dpkg 1.16.0.2
Debian Dpkg 1.16.0.3
Debian Dpkg 1.16.1
Debian Dpkg 1.16.7
Debian Dpkg 1.16.8
Debian Dpkg 1.16.9
Debian Dpkg 1.17.0
Debian Dpkg 1.16.12
Debian Dpkg 1.16.2
Debian Dpkg 1.16.3
Debian Dpkg 1.16.4
Debian Dpkg 1.16.4.1
Debian Dpkg 1.17.5
Debian Dpkg 1.17.6
Debian Dpkg 1.17.7
Debian Dpkg 1.17.8
Debian Dpkg 1.15.9
Debian Dpkg 1.16.1.2
Debian Dpkg 1.16.11
Debian Dpkg 1.16.4.3
Debian Dpkg 1.16.6
6.4
CVSSv2
CVE-2014-3864
Directory traversal vulnerability in dpkg-source in dpkg-dev 1.3.0 allows remote malicious users to modify files outside of the intended directories via a crafted source package that lacks a --- header line.
Debian Dpkg-dev 1.3.0
6.4
CVSSv2
CVE-2014-3865
Multiple directory traversal vulnerabilities in dpkg-source in dpkg-dev 1.3.0 allow remote malicious users to modify files outside of the intended directories via a source package with a crafted Index: pseudo-header in conjunction with (1) missing --- and +++ header lines or (2) ...
Debian Dpkg-dev 1.3.0
1 EDB exploit
5.8
CVSSv2
CVE-2010-0396
Directory traversal vulnerability in the dpkg-source component in dpkg prior to 1.14.29 allows remote malicious users to modify arbitrary files via a crafted Debian source archive.
Debian Dpkg
Debian Dpkg 1.14.27
Debian Dpkg 1.14.19
Debian Dpkg 1.14.18
Debian Dpkg 1.14.16.1
Debian Dpkg 1.14.16
Debian Dpkg 1.14.9
Debian Dpkg 1.14.8
Debian Dpkg 1.14.7
Debian Dpkg 1.14.0
Debian Dpkg 1.13.25
Debian Dpkg 1.13.18
Debian Dpkg 1.13.17
Debian Dpkg 1.13.11
Debian Dpkg 1.13.10
Debian Dpkg 1.13.9
Debian Dpkg 1.13.2
Debian Dpkg 1.13.1
Debian Dpkg 1.10.23
Debian Dpkg 1.10.22
Debian Dpkg 1.10.15
Debian Dpkg 1.10.14
5
CVSSv2
CVE-2014-0471
Directory traversal vulnerability in the unpacking functionality in dpkg prior to 1.15.9, 1.16.x prior to 1.16.13, and 1.17.x prior to 1.17.8 allows remote malicious users to write arbitrary files via a crafted source package, related to "C-style filename quoting."
Canonical Ubuntu Linux 10.04
Debian Dpkg 1.10.11
Debian Dpkg 1.10.13
Debian Dpkg 1.10.19
Debian Dpkg 1.10.20
Debian Dpkg 1.10.25
Debian Dpkg 1.10.27
Debian Dpkg 1.10.8
Debian Dpkg 1.13.0
Debian Dpkg 1.13.14
Debian Dpkg 1.13.16
Debian Dpkg 1.13.20
Debian Dpkg 1.13.22
Debian Dpkg 1.13.6
Debian Dpkg 1.13.8
Debian Dpkg 1.14.13
Debian Dpkg 1.14.15
Debian Dpkg 1.14.16.4
Debian Dpkg 1.14.16.6
Debian Dpkg 1.14.22
Debian Dpkg 1.14.24
Debian Dpkg 1.14.30
5
CVSSv2
CVE-2006-1173
Sendmail prior to 8.13.7 allows remote malicious users to cause a denial of service via deeply nested, malformed multipart MIME messages that exhaust the stack during the recursive mime8to7 function for performing 8-bit to 7-bit conversion, which prevents Sendmail from delivering...
Sendmail Sendmail 8.10.1
Sendmail Sendmail 8.10.2
Sendmail Sendmail 8.11.6
Sendmail Sendmail 8.11.7
Sendmail Sendmail 8.12.4
Sendmail Sendmail 8.12.5
Sendmail Sendmail 8.12
Sendmail Sendmail 8.9.2
Sendmail Sendmail 8.9.3
Sendmail Sendmail 8.11.0
Sendmail Sendmail 8.11.1
Sendmail Sendmail 8.12.0
Sendmail Sendmail 8.12.1
Sendmail Sendmail 8.12.6
Sendmail Sendmail 8.12.7
Sendmail Sendmail 8.12.8
Sendmail Sendmail 8.13.3
Sendmail Sendmail 8.13.4
Sendmail Sendmail 8.13.0
Sendmail Sendmail 8.13.1
Sendmail Sendmail 8.10
Sendmail Sendmail 8.11.4
4.3
CVSSv2
CVE-2018-0360
ClamAV prior to 0.100.1 has an HWP integer overflow with a resultant infinite loop via a crafted Hangul Word Processor file. This is in parsehwp3_paragraph() in libclamav/hwp.c.
Clamav Clamav
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 12.04
Canonical Ubuntu Linux 14.04
Debian Debian Linux 8.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33228
CVE-2024-20361
log injection
bypass
CVE-2024-4985
CVE-2024-35223
CVE-2024-29849
CVE-2024-31893
IMAP
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »