Debian LTS Essential and Critical Security Patch Updates - Page 7
Find the information you need for your favorite open source distribution .
Find the information you need for your favorite open source distribution .
A vulnerability was discovered in MariaDB, a SQL database server compatible with MySQL. An attacker could generate a malicious dump file which could execute shell commands from the MariaDB client.
A new stable version was released for galera-4, a synchronous multimaster replication engine for MySQL and MariaDB. This fixes several issues detailed at:
pymongo a python interface to the MongoDB document-oriented database was vulnerable. An out-of-bounds read in the 'bson' module allowed deserialization of
A possible sandbox bypass has been fixed in php-twig, a template engine for PHP For Debian 11 bullseye, this problem has been fixed in version
Node.js a JavaScript runtime environment that executes JavaScript code outside a web browser (server side) was vulnerable. CVE-2023-30589
It was discovered that there were a number of issues in Redis, a popular key-value database: * CVE-2023-45145: On startup, Redis began listening on a Unix
Cacti, a web interface for graphing of monitoring systems, was vulnerable. CVE-2022-41444
It was discovered that there was a potential denial of service (DoS) attack in python-jwcrypto, an implementation of JSON Web Encryption and similar object signing standards.
Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For Debian 11 bullseye, these problems have been fixed in version
Integer overflows have been fixed in aom, an AV1 Codec Library. For Debian 11 bullseye, this problem has been fixed in version 1.0.0.errata1-3+deb11u2.
Multiple vulnerabilities have been fixed in the Amanda backup system. CVE-2022-37703
Multiple vulnerabilities have been fixed in bluez library, tools and daemons for using Bluetooth devices. CVE-2021-3658
Two vulnerabilities have been fixed in the XML library libxml2. CVE-2016-3709
Sinatra is an open source web framework for Ruby programming language. CVE-2022-29970
Vulnerabilities have been found in GnuTLS, which could lead to information disclosure or Denial of Service. CVE-2024-28834
Martin Kaesberger discovered a vulnerability which affects multiple OpenStack components (Nova, Glance and Cinder): Malformed QCOW2 disk images may result in the disclosure of arbitrary files.
Martin Kaesberger discovered a vulnerability which affects multiple OpenStack components (Nova, Glance and Cinder): Malformed QCOW2 disk images may result in the disclosure of arbitrary files.
Martin Kaesberger discovered a vulnerability which affects multiple OpenStack components (Nova, Glance and Cinder): Malformed QCOW2 disk images may result in the disclosure of arbitrary files.
python-oslo.utils, a set of utilities used by OpenStack, was updated as a requirement to fix CVE-2024-32498 in the cinder, glance and nova OpenStack components.