Debian

Debian 11 (bullseye)

8660 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.02%
  • Veröffentlicht 18.12.2023 15:15:10
  • Zuletzt bearbeitet 12.05.2026 11:16:18

A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The function nft_pipapo_walk did not skip inactive elements during set walk which could lead double deactivat...

  • EPSS 13.53%
  • Veröffentlicht 13.12.2023 09:15:33
  • Zuletzt bearbeitet 21.11.2024 06:47:39

The vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by other processes on the system through a dangling 'file' pointer.

Exploit
  • EPSS 0.01%
  • Veröffentlicht 08.12.2023 17:15:07
  • Zuletzt bearbeitet 21.11.2024 08:44:11

An out-of-bounds read vulnerability was found in smbCalcSize in fs/smb/client/netmisc.c in the Linux Kernel. This issue could allow a local attacker to crash the system or leak internal kernel information.

Exploit
  • EPSS 0.01%
  • Veröffentlicht 08.12.2023 17:15:07
  • Zuletzt bearbeitet 21.11.2024 08:44:11

An out-of-bounds read vulnerability was found in smb2_dump_detail in fs/smb/client/smb2ops.c in the Linux Kernel. This issue could allow a local attacker to crash the system or leak internal kernel information.

  • EPSS 0.2%
  • Veröffentlicht 28.11.2023 07:15:41
  • Zuletzt bearbeitet 21.11.2024 07:47:16

Bluetooth BR/EDR devices with Secure Simple Pairing and Secure Connections pairing in Bluetooth Core Specification 4.2 through 5.4 allow certain man-in-the-middle attacks that force a short key length, and might lead to discovery of the encryption ke...

  • EPSS 0.01%
  • Veröffentlicht 16.11.2023 18:15:07
  • Zuletzt bearbeitet 21.11.2024 08:43:17

A null pointer dereference flaw was found in the Linux kernel API for the cryptographic algorithm scatterwalk functionality. This issue occurs when a user constructs a malicious packet with specific socket configuration, which could allow a local use...

  • EPSS 0.66%
  • Veröffentlicht 16.11.2023 15:15:11
  • Zuletzt bearbeitet 12.05.2026 11:16:17

An out-of-bounds read vulnerability was found in the NVMe-oF/TCP subsystem in the Linux kernel. This issue may allow a remote attacker to send a crafted TCP packet, triggering a heap-based buffer overflow that results in kmalloc data being printed an...

  • EPSS 0.01%
  • Veröffentlicht 09.11.2023 20:15:08
  • Zuletzt bearbeitet 24.03.2026 12:16:07

A race condition was found in the QXL driver in the Linux kernel. The qxl_mode_dumb_create() function dereferences the qobj returned by the qxl_gem_object_create_with_handle(), but the handle is the only one holding a reference to it. This flaw allow...

  • EPSS 0.02%
  • Veröffentlicht 03.11.2023 21:15:17
  • Zuletzt bearbeitet 12.05.2026 11:16:14

The brcm80211 component in the Linux kernel through 6.5.10 has a brcmf_cfg80211_detach use-after-free in the device unplugging (disconnect the USB by hotplug) code. For physically proximate attackers with local access, this "could be exploited in a r...

  • EPSS 0.03%
  • Veröffentlicht 01.11.2023 20:15:08
  • Zuletzt bearbeitet 21.11.2024 07:38:38

A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS in the Linux Kernel. After CIFS transfers response data to a system call, there are still local variable points to the memory region, and if the system call frees it faster than C...