Debian

Debian Linux

9922 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.34%
  • Veröffentlicht 19.03.2024 12:15:08
  • Zuletzt bearbeitet 01.04.2025 17:15:20

Return registers were overwritten which could have allowed an attacker to execute arbitrary code. *Note:* This issue only affected Armv7-A systems. Other operating systems are unaffected. This vulnerability affects Firefox < 124, Firefox ESR < 115.9,...

Exploit
  • EPSS 0.15%
  • Veröffentlicht 19.03.2024 12:15:08
  • Zuletzt bearbeitet 01.04.2025 17:18:20

`AppendEncodedAttributeValue(), ExtraSpaceNeededForAttrEncoding()` and `AppendEncodedCharacters()` could have experienced integer overflows, causing underallocation of an output buffer leading to an out of bounds write. This vulnerability affects Fir...

Exploit
  • EPSS 1.11%
  • Veröffentlicht 19.03.2024 12:15:08
  • Zuletzt bearbeitet 01.04.2025 17:19:51

The permission prompt input delay could expire while the window is not in focus. This makes it vulnerable to clickjacking by malicious websites. This vulnerability affects Firefox < 124, Firefox ESR < 115.10, and Thunderbird < 115.10.

  • EPSS 0.18%
  • Veröffentlicht 19.03.2024 12:15:07
  • Zuletzt bearbeitet 04.11.2025 19:16:23

NSS was susceptible to a timing side-channel attack when performing RSA decryption. This attack could potentially allow an attacker to recover the private data. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.

  • EPSS 0.06%
  • Veröffentlicht 18.03.2024 13:15:08
  • Zuletzt bearbeitet 09.04.2025 15:36:43

A NULL pointer dereference flaw was found in the udevConnectListAllInterfaces() function in libvirt. This issue can occur when detaching a host interface while at the same time collecting the list of interfaces via virConnectListAllInterfaces API. Th...

  • EPSS 0.01%
  • Veröffentlicht 18.03.2024 11:15:11
  • Zuletzt bearbeitet 10.03.2025 17:01:43

In the Linux kernel, the following vulnerability has been resolved: tcp: add sanity checks to rx zerocopy TCP rx zerocopy intent is to map pages initially allocated from NIC drivers, not pages owned by a fs. This patch adds to can_map_frag() these...

  • EPSS 0.02%
  • Veröffentlicht 18.03.2024 11:15:11
  • Zuletzt bearbeitet 28.03.2025 16:17:08

In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() syzbot found __ip6_tnl_rcv() could access unitiliazed data [1]. Call pskb_inet_may_pull() to fix this, and initialize...

  • EPSS 0.01%
  • Veröffentlicht 18.03.2024 11:15:10
  • Zuletzt bearbeitet 10.03.2025 17:06:20

In the Linux kernel, the following vulnerability has been resolved: llc: Drop support for ETH_P_TR_802_2. syzbot reported an uninit-value bug below. [0] llc supports ETH_P_802_2 (0x0004) and used to support ETH_P_TR_802_2 (0x0011), and syzbot abus...

  • EPSS 0.01%
  • Veröffentlicht 18.03.2024 11:15:10
  • Zuletzt bearbeitet 10.03.2025 17:04:27

In the Linux kernel, the following vulnerability has been resolved: llc: make llc_ui_sendmsg() more robust against bonding changes syzbot was able to trick llc_ui_sendmsg(), allocating an skb with no headroom, but subsequently trying to push 14 byt...

  • EPSS 0.01%
  • Veröffentlicht 18.03.2024 11:15:09
  • Zuletzt bearbeitet 08.04.2025 15:26:38

In the Linux kernel, the following vulnerability has been resolved: PCI: switchtec: Fix stdev_release() crash after surprise hot remove A PCI device hot removal may occur while stdev->cdev is held open. The call to stdev_release() then happens duri...