Debian

Debian Linux

9140 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.27%
  • Veröffentlicht 17.05.2024 14:15:17
  • Zuletzt bearbeitet 07.04.2025 19:06:14

In the Linux kernel, the following vulnerability has been resolved: vt: fix unicode buffer corruption when deleting characters This is the same issue that was fixed for the VGA text buffer in commit 39cdb68c64d8 ("vt: fix memory overlapping when de...

  • EPSS 0.01%
  • Veröffentlicht 17.05.2024 14:15:15
  • Zuletzt bearbeitet 14.01.2025 14:23:38

In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach This is the candidate patch of CVE-2023-47233 : https://nvd.nist.gov/vuln/detail/CVE-2023-47233 In brcm80211 driver...

  • EPSS 0.01%
  • Veröffentlicht 17.05.2024 14:15:14
  • Zuletzt bearbeitet 10.01.2025 18:11:39

In the Linux kernel, the following vulnerability has been resolved: soc: fsl: qbman: Always disable interrupts when taking cgr_lock smp_call_function_single disables IRQs when executing the callback. To prevent deadlocks, we must disable IRQs when ...

  • EPSS 0.23%
  • Veröffentlicht 17.05.2024 12:15:10
  • Zuletzt bearbeitet 08.04.2025 15:53:55

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: ncm: Avoid dropping datagrams of properly parsed NTBs It is observed sometimes when tethering is used over NCM with Windows 11 as host, at some instances, the gadget_g...

  • EPSS 0.66%
  • Veröffentlicht 14.05.2024 18:15:16
  • Zuletzt bearbeitet 13.03.2025 17:15:33

Memory safety bugs present in Firefox 125, Firefox ESR 115.10, and Thunderbird 115.10. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This ...

  • EPSS 0.69%
  • Veröffentlicht 14.05.2024 18:15:14
  • Zuletzt bearbeitet 01.04.2025 17:46:33

When importing resources using Web Workers, error messages would distinguish the difference between `application/javascript` responses and non-script responses. This could have been abused to learn information cross-origin. This vulnerability affect...

Exploit
  • EPSS 0.71%
  • Veröffentlicht 14.05.2024 18:15:14
  • Zuletzt bearbeitet 01.04.2025 18:00:09

A bug in popup notifications' interaction with WebAuthn made it easier for an attacker to trick a user into granting permissions. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.

Exploit
  • EPSS 0.56%
  • Veröffentlicht 14.05.2024 18:15:13
  • Zuletzt bearbeitet 01.04.2025 17:47:50

If the `browser.privatebrowsing.autostart` preference is enabled, IndexedDB files were not properly deleted when the window was closed. This preference is disabled by default in Firefox. This vulnerability affects Firefox < 126, Firefox ESR < 115.11,...

  • EPSS 37.17%
  • Veröffentlicht 14.05.2024 18:15:12
  • Zuletzt bearbeitet 24.04.2025 19:15:46

A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execution in the PDF.js context. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.

  • EPSS 0.01%
  • Veröffentlicht 14.05.2024 15:12:27
  • Zuletzt bearbeitet 14.01.2025 14:26:09

In the Linux kernel, the following vulnerability has been resolved: net: gtp: Fix Use-After-Free in gtp_dellink Since call_rcu, which is called in the hlist_for_each_entry_rcu traversal of gtp_dellink, is not part of the RCU read critical section, ...