Known Vulnerabilities for products from Debian

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Debian".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-43407 json Not Provided 2026-05-08 2026-05-11
CVE-2026-43252 json Not Provided 2026-05-06 2026-05-06
CVE-2026-43080 json Not Provided 2026-05-06 2026-05-06
CVE-2026-43046 json Not Provided 2026-05-01 2026-05-02
CVE-2026-31654 json Not Provided 2026-04-24 2026-04-24
CVE-2026-31505 json Not Provided 2026-04-22 2026-04-27
CVE-2026-23462 json Not Provided 2026-04-03 2026-04-27
CVE-2026-23428 json Not Provided 2026-04-03 2026-04-27
CVE-2026-23427 json Not Provided 2026-04-03 2026-04-27
CVE-2026-23407 json Not Provided 2026-04-01 2026-04-18
CVE-2026-4775 json A flaw was found in the libtiff library. A remote attacker could exploit a signed integer overflow vulnerability in the putco... Not Provided 2026-03-24 2026-05-11
CVE-2026-1940 json An incomplete fix for CVE-2024-47778 allows an out-of-bounds read in gst_wavparse_adtl_chunk() function. The patch added a si... Not Provided 2026-03-23 2026-05-04
CVE-2025-63261 json AWStats 8.0 is vulnerable to Command Injection via the open function Not Provided 2026-03-20 2026-04-07
CVE-2025-27363 json An out of bounds write exists in FreeType versions 2.13.0 and below (newer versions of FreeType are not vulnerable) when atte... Not Provided 2025-03-11 2026-04-20
CVE-2025-26465 json A vulnerability was found in OpenSSH when the VerifyHostKeyDNS option is enabled. A machine-in-the-middle attack can be perfo... Not Provided 2025-02-18 2026-05-12
CVE-2024-50302 json In the Linux kernel, the following vulnerability has been resolved: HID: core: zero-initialize the report buffer Since the ... Not Provided 2024-11-19 2026-05-12
CVE-2024-49884 json In the Linux kernel, the following vulnerability has been resolved: ext4: fix slab-use-after-free in ext4_split_extent_at() ... Not Provided 2024-10-21 2026-05-12
CVE-2024-49883 json In the Linux kernel, the following vulnerability has been resolved: ext4: aovid use-after-free in ext4_ext_insert_extent() ... Not Provided 2024-10-21 2026-05-12
CVE-2024-49882 json In the Linux kernel, the following vulnerability has been resolved: ext4: fix double brelse() the buffer of the extents path... Not Provided 2024-10-21 2026-05-12
CVE-2024-47745 json In the Linux kernel, the following vulnerability has been resolved: mm: call the security_mmap_file() LSM hook in remap_file... Not Provided 2024-10-21 2026-05-12

Known software with vulnerabilities from Debian

Type Vendor Product Version
ApplicationDebianAdequate0.1
ApplicationDebianAdvanced Package Tool0.7.0
ApplicationDebianAmaya-
ApplicationDebianApache-
ApplicationDebianApt0.7.0
ApplicationDebianApt-cacher-
ApplicationDebianApt-listchanges-
ApplicationDebianApt-setup-
ApplicationDebianAxiom20100701-1.1
ApplicationDebianBackupninja-
ApplicationDebianBase-config-
ApplicationDebianBsdmainutils6.0
ApplicationDebianBsmtpd-
ApplicationDebianCfingerd1.4.3-3
ApplicationDebianCifs-utils6.3
ApplicationDebianCron1.0
ApplicationDebianCrossroads2.81
ApplicationDebianDebian-goodies-
ApplicationDebianDebian-lan-config-
Operating
System
DebianDebian Linux-