vciy

CVEs we hold for Debian

Records whose assigning authority named Debian as the affected vendor. Newest identifiers first, capped at 200.

CVE-2026-89169no title heldDebian live-boot
CVE-2026-2219no title heldDebian dpkg
CVE-2026-11853no title heldDebian debusine
CVE-2026-11852no title heldDebian debusine
CVE-2025-8454no title heldDebian devscripts
CVE-2025-68462no title heldDebian FreedomBox
CVE-2025-6297dpkg-deb: Fix cleanup for control member with restricted directoriesDebian dpkg
CVE-2025-53391no title heldDebian zulucrypt
CVE-2025-47153no title heldDebian trixie
CVE-2024-2312no title heldDebian based GNU GRUB
CVE-2023-7207no title heldDebian cpio
CVE-2022-2787stricter rules on chroot namesDebian schroot
CVE-2022-1664directory traversal for in-place extracts with untrusted v2 and v3 source packages with debian.tarDebian dpkg
CVE-2022-0543no title heldDebian redis
CVE-2021-20001no title helddebian-edu-config
CVE-2020-3812no title heldDebian netqmail
CVE-2020-3811no title heldDebian netqmail
CVE-2020-3810no title heldDebian apt
CVE-2019-3467no title heldDebian Edu
CVE-2019-3464no title heldDebian GNU/Linux rssh
CVE-2019-3463no title heldDebian GNU/Linux rssh
CVE-2019-3462no title heldDebian Stretch and Ubuntu
CVE-2019-3461no title heldDebian GNU/Linux tmpreaper
CVE-2018-5735Backport of the fix for CVE-2017-3137 leads to assertion failure in validator.c:1858Debian BIND9
CVE-2017-8805no title heldn/a Debian ftpsync before 20171017
CVE-2017-5333no title heldDebian icoutils
CVE-2017-5332no title heldDebian icoutils
CVE-2017-5331no title heldDebian icoutils
CVE-2017-0359diffoscope writes to arbitrary locations on disk based on the contents of an untrusted archiveDebian diffoscope
CVE-2016-1239no title heldDebian duck
CVE-2014-7210no title heldDebian pdns
CVE-2012-1093no title heldDebian x11-common

32 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.