Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Debian Number Of NVD 8839 CRITICAL 973 HIGH 3883 MEDIUM 3640 LOW 343
URL https://www.debian.org/
Explanation It will be supported for about 5 years after release, including the LTS period.
After 5 years, you will need to use a company that provides paid support or update to a newer version.
Tag
  • Linux

Add Information URL
No Type Name URL
1 https://www.debian.org/releases/index.en.html
2 https://wiki.debian.org/LTS
3 https://www.debian.org/lts/security/
4 https://wiki.debian.org/DebianReleases
5 https://wiki.debian.org/LTS/Extended
6 https://www.debian.org/security/

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
101 Debian 12 12.7 Aug. 31, 2024 Jan. 1, 2023 July 11, 2026 June 30, 2028 June 30, 2033 7 149 116 10
102 Debian 11 11.11 Aug. 31, 2024 Aug. 14, 2021 Aug. 14, 2024 Aug. 31, 2026 June 30, 2031 124 641 478 23
103 Debian 10 10.13 Sept. 10, 2022 July 6, 2019 Aug. 31, 2022 326 1404 1210 111
104 Debian 9 9.13 July 18, 2020 June 17, 2017 June 30, 2022 569 1739 1553 134
105 Debian 8 8.0 April 25, 2015 June 17, 2018 June 30, 2020 498 1437 1431 106
106 Debian 7 7.1 May 4, 2013 April 25, 2016 May 31, 2018 112 494 587 62
107 Debian 5 5.0.9 Feb. 14, 2009 Feb. 6, 2012 5 70 85 25
108 Debian 4 4.0 April 8, 2007 Feb. 15, 2010 5 92 72 10
109 Debian 3 3.0.23 July 19, 2002 March 31, 2008 7 86 74 24
110 Debian 2 2.5.3-3 July 24, 1998 June 30, 2003 0 48 27 15
111 Debian 1 1.3.1 May 17, 1996 Jan. 1, 2000 365 1656 1389 115
112 Debian 0 0.93 Jan. 1, 1900 Jan. 1, 2000 0 8 1 1
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
101 6.3
-
MEDIUM
Network
An absolute path traversal attack exists in the Ansible automation platform. This flaw allows an attacker to craft a malicious Ansible role and make the victim execute the role. A symlink can be used… CWE-22
Path Traversal
CVE-2023-5115 cpe:2.3:o:debian:debian_linux:10.0:* 2024-11-21 17:41
2023-12-18
Show GitHub Exploit DB Packet Storm
102 7.5
-
HIGH
Network
A flaw was found in xorg-server. A specially crafted request to RRChangeProviderProperty or RRChangeOutputProperty can trigger an integer overflow which may lead to a disclosure of sensitive informat… CWE-190
 Integer Overflow or Wraparound
CVE-2023-6478 cpe:2.3:o:debian:debian_linux:12.0:*
cpe:2.3:o:debian:debian_linux:11.0:*
cpe:2.3:o:debian:debian_linux:10.0:*
2024-11-21 17:43
2023-12-13
Show GitHub Exploit DB Packet Storm
103 7.8
-
HIGH
Local
A flaw was found in xorg-server. Querying or changing XKB button actions such as moving from a touchpad to a mouse can result in out-of-bounds memory reads and writes. This may allow local privilege … CWE-125
Out-of-bounds Read
CVE-2023-6377 cpe:2.3:o:debian:debian_linux:12.0:*
cpe:2.3:o:debian:debian_linux:11.0:*
cpe:2.3:o:debian:debian_linux:10.0:*
2024-11-21 17:43
2023-12-13
Show GitHub Exploit DB Packet Storm
104 5.5
-
MEDIUM
Local
The issue was addressed with improved memory handling. This issue is fixed in Safari 17.2, macOS Sonoma 14.2, iOS 17.2 and iPadOS 17.2, watchOS 10.2, tvOS 17.2, iOS 16.7.3 and iPadOS 16.7.3. Processi… NVD-CWE-noinfo
CVE-2023-42883 cpe:2.3:o:debian:debian_linux:12.0:*
cpe:2.3:o:debian:debian_linux:11.0:*
2024-11-21 17:23
2023-12-12
Show GitHub Exploit DB Packet Storm
105 8.8
-
HIGH
Network
Insufficient macro permission validation of The Document Foundation LibreOffice allows an attacker to execute built-in macros without warning. In affected versions LibreOffice supports hyperlinks wi… CWE-281
 Improper Preservation of Permissions
CVE-2023-6186 cpe:2.3:o:debian:debian_linux:12.0:*
cpe:2.3:o:debian:debian_linux:11.0:*
2024-11-21 17:43
2023-12-11
Show GitHub Exploit DB Packet Storm
106 8.8
-
HIGH
Network
Improper Input Validation vulnerability in GStreamer integration of The Document Foundation LibreOffice allows an attacker to execute arbitrary GStreamer plugins. In affected versions the filename o… NVD-CWE-noinfo
CVE-2023-6185 cpe:2.3:o:debian:debian_linux:12.0:*
cpe:2.3:o:debian:debian_linux:11.0:*
2024-11-21 17:43
2023-12-11
Show GitHub Exploit DB Packet Storm
107 6.3
-
MEDIUM
Adjacent
Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting inject… CWE-287
Improper Authentication
CVE-2023-45866 cpe:2.3:o:debian:debian_linux:10.0:* 2024-11-21 17:27
2023-12-8
Show GitHub Exploit DB Packet Storm
108 6.5
-
MEDIUM
Network
Inappropriate implementation in Web Browser UI in Google Chrome prior to 120.0.6099.62 allowed a remote attacker to potentially spoof the contents of an iframe dialog context menu via a crafted HTML … NVD-CWE-noinfo
CVE-2023-6512 cpe:2.3:o:debian:debian_linux:12.0:*
cpe:2.3:o:debian:debian_linux:11.0:*
2024-11-21 17:44
2023-12-6
Show GitHub Exploit DB Packet Storm
109 4.3
-
MEDIUM
Network
Inappropriate implementation in Autofill in Google Chrome prior to 120.0.6099.62 allowed a remote attacker to bypass Autofill restrictions via a crafted HTML page. (Chromium security severity: Low) NVD-CWE-noinfo
CVE-2023-6511 cpe:2.3:o:debian:debian_linux:12.0:*
cpe:2.3:o:debian:debian_linux:11.0:*
2024-11-21 17:44
2023-12-6
Show GitHub Exploit DB Packet Storm
110 8.8
-
HIGH
Network
Use after free in Media Capture in Google Chrome prior to 120.0.6099.62 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via … CWE-416
 Use After Free
CVE-2023-6510 cpe:2.3:o:debian:debian_linux:12.0:*
cpe:2.3:o:debian:debian_linux:11.0:*
2024-11-21 17:44
2023-12-6
Show GitHub Exploit DB Packet Storm