Debian

Debian 12 (bookworm)

14811 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.45%
  • Veröffentlicht 11.09.2026 19:46:06
  • Zuletzt bearbeitet 14.09.2026 13:19:19

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix cpntf publish race in nfs4_init_cp_state nfs4_alloc_init_cpntf_state() published the new cpntf entry into the s2s_cp_stateids IDR (with cs_type set) in one s2s_cp_lock se...

  • EPSS 0.4%
  • Veröffentlicht 11.09.2026 19:46:04
  • Zuletzt bearbeitet 13.09.2026 07:17:34

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix fcache_disposal UAF by inlining dispose state into nfsd_net nfsd_file_dispose_list_delayed() defers fput() to nfsd service threads via a per-net freeme queue, preventing ...

  • EPSS 0.64%
  • Veröffentlicht 11.09.2026 19:46:03
  • Zuletzt bearbeitet 13.09.2026 07:17:33

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix nfsd_file leak on inter-server COPY setup failure When nfsd4_setup_inter_ssc() fails, nfsd4_copy() returns nfserr_offload_denied directly, bypassing the out: label where ...

  • EPSS 0.45%
  • Veröffentlicht 11.09.2026 19:46:00
  • Zuletzt bearbeitet 21.09.2026 14:17:25

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix stale s2s_cp_stateids IDR entry for async COPY For an async COPY, nfsd4_copy() called nfs4_init_copy_state() before dup_copy_fields(), so the s2s_cp_stateids IDR was poin...

  • EPSS 0.45%
  • Veröffentlicht 11.09.2026 19:45:59
  • Zuletzt bearbeitet 13.09.2026 07:17:33

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix UAF in async copy cancel and shutdown An async copy could be freed or used after free while a teardown caller (OFFLOAD_CANCEL, nfsd4_shutdown_copy, nfsd4_cancel_copy_by_s...

  • EPSS 0.46%
  • Veröffentlicht 11.09.2026 19:45:58
  • Zuletzt bearbeitet 14.09.2026 13:19:19

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix XDR length calculation in nfsd4_ff_encode_layoutget The XDR buffer size calculation in nfsd4_ff_encode_layoutget() has multiple errors that can result in either an out-of...

  • EPSS 0.52%
  • Veröffentlicht 11.09.2026 19:45:57
  • Zuletzt bearbeitet 14.09.2026 13:19:19

In the Linux kernel, the following vulnerability has been resolved: nfsd: gate nfs2 setacl by argp->mask The NFSACL v2 SETACL path shares the decoder convention used by its v3 sibling: nfsaclsvc_decode_setaclargs() fills in argp->acl_access only wh...

  • EPSS 0.49%
  • Veröffentlicht 11.09.2026 19:45:56
  • Zuletzt bearbeitet 14.09.2026 13:19:19

In the Linux kernel, the following vulnerability has been resolved: nfsd: gate nfs3 setacl by argp->mask nfsd3_proc_setacl() calls set_posix_acl() unconditionally for both ACL_TYPE_ACCESS and ACL_TYPE_DEFAULT, passing argp->acl_access and argp->acl...

  • EPSS 0.61%
  • Veröffentlicht 11.09.2026 19:45:55
  • Zuletzt bearbeitet 14.09.2026 13:19:18

In the Linux kernel, the following vulnerability has been resolved: nfsd: initialize copy-notify stateid before publishing it nfsd4_copy_notify() finished initializing the cpntf state after nfs4_alloc_init_cpntf_state() had already linked it into t...

  • EPSS 0.54%
  • Veröffentlicht 11.09.2026 19:45:52
  • Zuletzt bearbeitet 14.09.2026 13:19:18

In the Linux kernel, the following vulnerability has been resolved: nfsd: reject out-of-range useconds in NFSv2 SETATTR/CREATE The NFSv2 sattr decoder converts the wire useconds to nanoseconds in svcxdr_decode_sattr(): iap->ia_atime.tv_nsec = tmp...