Debian

Debian Linux

9921 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.02%
  • Veröffentlicht 15.09.2025 12:36:43
  • Zuletzt bearbeitet 23.01.2026 02:34:52

In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: Remove WARN_ON for device endpoint command timeouts This commit addresses a rarely observed endpoint command timeout which causes kernel panic due to warn when 'panic_on...

  • EPSS 0.02%
  • Veröffentlicht 15.09.2025 12:36:43
  • Zuletzt bearbeitet 16.01.2026 20:06:47

In the Linux kernel, the following vulnerability has been resolved: btrfs: abort transaction on unexpected eb generation at btrfs_copy_root() If we find an unexpected generation for the extent buffer we are cloning at btrfs_copy_root(), we just WAR...

  • EPSS 0.02%
  • Veröffentlicht 12.09.2025 15:59:34
  • Zuletzt bearbeitet 16.01.2026 20:00:28

In the Linux kernel, the following vulnerability has been resolved: NFS: Fix the setting of capabilities when automounting a new filesystem Capabilities cannot be inherited when we cross into a new filesystem. They need to be reset to the minimal d...

  • EPSS 0.02%
  • Veröffentlicht 12.09.2025 15:59:32
  • Zuletzt bearbeitet 16.01.2026 20:00:17

In the Linux kernel, the following vulnerability has been resolved: block: avoid possible overflow for chunk_sectors check in blk_stack_limits() In blk_stack_limits(), we check that the t->chunk_sectors value is a multiple of the t->physical_block_...

  • EPSS 0.02%
  • Veröffentlicht 12.09.2025 15:59:31
  • Zuletzt bearbeitet 23.01.2026 02:35:13

In the Linux kernel, the following vulnerability has been resolved: ARM: tegra: Use I/O memcpy to write to IRAM Kasan crashes the kernel trying to check boundaries when using the normal memcpy.

Exploit
  • EPSS 0.04%
  • Veröffentlicht 12.09.2025 05:10:03
  • Zuletzt bearbeitet 20.01.2026 14:58:01

1. A cookie is set using the `secure` keyword for `https://target` 2. curl is redirected to or otherwise made to speak with `http://target` (same hostname, but using clear text HTTP) using the same cookie set 3. The same cookie name is set - ...

  • EPSS 0.02%
  • Veröffentlicht 11.09.2025 16:56:38
  • Zuletzt bearbeitet 16.01.2026 20:25:39

In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Detect events pointing to unexpected TREs When a remote device sends a completion event to the host, it contains a pointer to the consumed TRE. The host uses this p...

  • EPSS 0.02%
  • Veröffentlicht 11.09.2025 16:56:37
  • Zuletzt bearbeitet 16.01.2026 20:25:34

In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: exynos: Fix programming of HCI_UTRL_NEXUS_TYPE On Google gs101, the number of UTP transfer request slots (nutrs) is 32, and in this case the driver ends up programming t...

  • EPSS 0.02%
  • Veröffentlicht 11.09.2025 16:56:36
  • Zuletzt bearbeitet 16.01.2026 20:25:29

In the Linux kernel, the following vulnerability has been resolved: soc: qcom: mdt_loader: Ensure we don't read past the ELF header When the MDT loader is used in remoteproc, the ELF header is sanitized beforehand, but that's not necessary the case...

  • EPSS 0.02%
  • Veröffentlicht 11.09.2025 16:56:33
  • Zuletzt bearbeitet 16.01.2026 20:24:08

In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Fix configfs group list head handling Doing a list_del() on the epf_group field of struct pci_epf_driver in pci_epf_remove_cfs() is not correct as this field is a li...