Debian

Debian 11 (bullseye)

9527 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.17%
  • Veröffentlicht 25.07.2026 08:50:40
  • Zuletzt bearbeitet 04.09.2026 14:47:23

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix UAF of struct file_lock in SMB2_LOCK deferred-lock cancellation When a blocking byte-range lock request is deferred in the FILE_LOCK_DEFERRED path, ksmbd registers the a...

  • EPSS 0.17%
  • Veröffentlicht 25.07.2026 08:50:40
  • Zuletzt bearbeitet 04.09.2026 14:47:48

In the Linux kernel, the following vulnerability has been resolved: ksmbd: require source read access for duplicate extents FSCTL_DUPLICATE_EXTENTS_TO_FILE passes the source file directly to vfs_clone_file_range() or vfs_copy_file_range() without c...

  • EPSS 0.18%
  • Veröffentlicht 25.07.2026 08:50:39
  • Zuletzt bearbeitet 04.09.2026 15:31:40

In the Linux kernel, the following vulnerability has been resolved: ksmbd: add a WRITE_DAC/WRITE_OWNER check to SMB2 SET_INFO SECURITY commit cc57232cae23 ("ksmbd: fix FSCTL permission bypass by adding a permission check for FSCTL_SET_SPARSE") adde...

  • EPSS 0.17%
  • Veröffentlicht 25.07.2026 08:50:39
  • Zuletzt bearbeitet 04.09.2026 19:08:35

In the Linux kernel, the following vulnerability has been resolved: ksmbd: run set info with opener credentials SMB2 SET_INFO handlers call path-based VFS helpers after checking the access mask granted to the SMB handle. Those helpers perform their...

  • EPSS 0.18%
  • Veröffentlicht 25.07.2026 08:50:38
  • Zuletzt bearbeitet 04.09.2026 19:08:31

In the Linux kernel, the following vulnerability has been resolved: ksmbd: use opener credentials for delete-on-close Delete-on-close can be completed by deferred or durable handle teardown, where no request work is available. Both the base-file un...

  • EPSS 0.17%
  • Veröffentlicht 25.07.2026 08:50:38
  • Zuletzt bearbeitet 04.09.2026 19:08:24

In the Linux kernel, the following vulnerability has been resolved: ksmbd: use opener credentials for ADS I/O Alternate data streams are stored as xattrs. Unlike regular file I/O, their read and write paths therefore call VFS xattr helpers which re...

  • EPSS 0.16%
  • Veröffentlicht 25.07.2026 08:50:36
  • Zuletzt bearbeitet 04.09.2026 20:42:42

In the Linux kernel, the following vulnerability has been resolved: smb/client: fix chown/chgrp with SMB3 POSIX Extensions Ownership (chown) and group (chgrp) modifications were being ignored when mounting with SMB3 POSIX Extensions unless CIFS_MOU...

  • EPSS 0.18%
  • Veröffentlicht 25.07.2026 08:50:31
  • Zuletzt bearbeitet 08.09.2026 14:01:34

In the Linux kernel, the following vulnerability has been resolved: smb: client: Fix next buffer leak in receive_encrypted_standard() receive_encrypted_standard() allocates next_buffer before checking whether the number of compound PDUs already rea...

  • EPSS 0.18%
  • Veröffentlicht 25.07.2026 08:50:30
  • Zuletzt bearbeitet 08.09.2026 14:06:05

In the Linux kernel, the following vulnerability has been resolved: smb: client: harden POSIX SID length parsing posix_info_sid_size() reads sid[1] to obtain the subauthority count, but its existing boundary check still accepts buffers with only on...

  • EPSS 0.18%
  • Veröffentlicht 25.07.2026 08:50:29
  • Zuletzt bearbeitet 08.09.2026 14:08:51

In the Linux kernel, the following vulnerability has been resolved: smb: client: mask server-provided mode to 07777 in modefromsid When modefromsid is active, parse_dacl() applies the server-provided sub_auth[2] value from the NFS mode SID to cf_mo...