Security Bugs
(Total: 1769, 1-20, 19.4236 ms)
| # | Comment | Popcon | Updated | Title |
|---|---|---|---|---|
|
important |
37 |
26257 |
about 1 year ago |
chromium Chromium calls home even in incognito mode with safe browsing turned off
stable
testing
unstable
|
|
important |
27 |
206021 |
over 2 years ago |
src:openssh OpenSSH should use stronger crypto algo and parameters respectively disable others
stable
testing
unstable
|
|
important |
26 |
71396 |
almost 5 years ago |
gnome-settings-daemon gnome-packagekit: Update information is not refreshed
stable
testing
unstable
|
|
normal
|
25 |
15 |
about 12 hours ago |
src:keystone lp-2159643: Delegated tokens (like ec2credential, application_credential, ...) can GET/PATCH/DELETE any credential including TOTP seeds (CVE-2026-pending)
|
|
normal |
24 |
1301 |
about 2 years ago |
freeradius Backport some security settings from upstream 3.2.5 release to mitigate BlastRADIUS
|
|
serious done |
21 |
75 |
over 4 years ago |
nvidia-graphics-drivers-tesla-470 CVE-2022-28181, CVE-2022-28183, CVE-2022-28184, CVE-2022-28185, CVE-2022-28191, CVE-2022-28192
|
|
wishlist |
20 |
695 |
over 1 year ago |
live-build live-build should authenticate files it downloads
stable
testing
unstable
|
|
normal |
19 |
0 |
3 days ago |
src:golang-github-google-cel-go golang-github-google-cel-go: CVE-2026-83530
|
|
normal |
17 |
0 |
4 months ago |
libglycin-2-0 WARNING: Glycin running without sandbox
|
|
normal |
17 |
108983 |
about 1 year ago |
firefox-esr Please package a fork that respects users privacy
|
|
normal done |
16 |
39 |
4 months ago |
src:nova CVE-2026-46448 / OSSN-2026-022: Authenticated placement bypass in Nova via malicious os:scheduler_hints
|
|
normal
|
16 |
999 |
over 1 year ago |
src:checksecurity ITS: checksecurity
|
|
normal |
14 |
7875 |
about 1 month ago |
src:freeimage freeimage: dead upstream, open security issues
|
|
important |
14 |
5079 |
over 4 years ago |
firefox WebExtensions process sometimes consumes 100% CPU indefinitely on Firefox 87
|
|
wishlist done |
14 |
153 |
over 4 years ago |
quassel-client Client configuration is world readable and contains password in plain text
|
|
wishlist |
14 |
63148 |
almost 5 years ago |
apache2 Please don't grant localhost unconditional access to mod_status
stable
testing
unstable
|
|
grave done |
14 |
373 |
over 4 years ago |
varnish CVE-2022-23959: VSV00008 Varnish HTTP/1 Request Smuggling Vulnerability
|
|
normal done |
13 |
56022 |
4 months ago |
screen hardcopy and screen-exchange are insecure by default
|
|
wishlist pending-fixed |
13 |
6118 |
about 1 year ago |
pristine-tar please add -S (sign commit) option
stable
testing
unstable
|
|
normal done |
13 |
28116 |
9 months ago |
src:amd64-microcode amd64-microcode: 2024-36350/TSA-SQ and CVE-2024-36357/TSA-L1
|
(Total: 1769, 1-20, 19.4236 ms)