Debian

Debian 12 (bookworm)

14804 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.21%
  • Veröffentlicht 16.09.2026 10:31:57
  • Zuletzt bearbeitet 16.09.2026 11:16:58

In the Linux kernel, the following vulnerability has been resolved: media: cedrus: fix memory leak in cedrus_init_ctrls() In cedrus_init_ctrls(), the V4L2 control handler is initialized before allocating memory for ctx->ctrls. If this allocation fa...

  • EPSS 0.16%
  • Veröffentlicht 16.09.2026 10:31:56
  • Zuletzt bearbeitet 16.09.2026 15:18:15

In the Linux kernel, the following vulnerability has been resolved: media: cx231xx: reject geometry changes while the VBI queue is busy vidioc_s_fmt_vid_cap() and vidioc_s_std() change the device-wide dev->width / dev->norm but only refuse the chan...

  • EPSS 0.21%
  • Veröffentlicht 16.09.2026 10:31:56
  • Zuletzt bearbeitet 16.09.2026 11:16:58

In the Linux kernel, the following vulnerability has been resolved: media: cobalt: Avoid freeing ALSA private data twice snd_cobalt_card_create() stores cobsc in sc->private_data and installs snd_cobalt_card_private_free() as sc->private_free. From...

  • EPSS 0.16%
  • Veröffentlicht 16.09.2026 10:31:55
  • Zuletzt bearbeitet 16.09.2026 15:18:15

In the Linux kernel, the following vulnerability has been resolved: media: cx23885: cancel NetUP CI work before teardown netup_ci_exit() frees a netup_ci_state while its work item, netup_read_ci_status(), may still be pending or running on the syst...

  • EPSS 0.21%
  • Veröffentlicht 16.09.2026 10:31:54
  • Zuletzt bearbeitet 16.09.2026 11:16:57

In the Linux kernel, the following vulnerability has been resolved: media: em28xx: defer audio-only extension registration The audio-only path registers extensions while probing the primary device. For a dual-TS board, this happens before dev_next ...

  • EPSS 0.16%
  • Veröffentlicht 16.09.2026 10:31:53
  • Zuletzt bearbeitet 16.09.2026 15:18:15

In the Linux kernel, the following vulnerability has been resolved: media: go7007: defer the ALSA v4l2 put until card release go7007_snd_init() already takes a v4l2_device reference for the ALSA side, but go7007_snd_remove() drops it immediately af...

  • EPSS 0.21%
  • Veröffentlicht 16.09.2026 10:31:53
  • Zuletzt bearbeitet 16.09.2026 11:16:57

In the Linux kernel, the following vulnerability has been resolved: media: em28xx: fix use-after-free of dev_next->devlist on disconnect When a device with has_dual_ts=1 is probed and the is_audio_only path is taken, both dev and dev->dev_next are ...

  • EPSS 0.16%
  • Veröffentlicht 16.09.2026 10:31:51
  • Zuletzt bearbeitet 16.09.2026 15:18:15

In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov7740: fix use-after-destroy in remove The ov7740_remove() function had a severe teardown order bug where it destroyed the driver's mutex before freeing the V4L2 contr...

  • EPSS 0.16%
  • Veröffentlicht 16.09.2026 10:31:51
  • Zuletzt bearbeitet 16.09.2026 15:18:15

In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov02a10: fix endpoint parsing use-after-free The ov02a10_check_hwcfg() function calls fwnode_handle_put(ep) immediately after allocating and parsing the endpoint. Howev...

  • EPSS 0.2%
  • Veröffentlicht 16.09.2026 10:31:49
  • Zuletzt bearbeitet 16.09.2026 11:16:56

In the Linux kernel, the following vulnerability has been resolved: media: platform: mtk-mdp3: fix NULL deref on failed SCP lookup Add the missing sanity check after looking up the SCP to avoid dereferencing a NULL-pointer in case its driver has no...