Debian

Debian 12 (bookworm)

14811 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.17%
  • Veröffentlicht 11.09.2026 19:45:52
  • Zuletzt bearbeitet 11.09.2026 20:19:53

In the Linux kernel, the following vulnerability has been resolved: nfsd: reject out-of-range nseconds in NFSv3 SETATTR and create ops A client can send an NFSv3 SETATTR, CREATE, MKDIR, SYMLINK or MKNOD carrying an atime or mtime whose nseconds fie...

  • EPSS 0.4%
  • Veröffentlicht 11.09.2026 19:45:50
  • Zuletzt bearbeitet 14.09.2026 13:19:18

In the Linux kernel, the following vulnerability has been resolved: nfsd: revoke copy-notify stateids before dropping their reference Copy-notify stateids live in the s2s_cp_stateids IDR and on their parent stid's sc_cp_list, pinned by a single mem...

  • EPSS 0.61%
  • Veröffentlicht 11.09.2026 19:45:49
  • Zuletzt bearbeitet 14.09.2026 13:19:18

In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent lock owner use-after-free during client teardown __destroy_client() releases a client's open owners, but a lock owner whose only reference is a blocked lock (nbl) sta...

  • EPSS 0.44%
  • Veröffentlicht 11.09.2026 19:45:47
  • Zuletzt bearbeitet 21.09.2026 14:17:24

In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent client use-after-free during delegation revoke A delegation stateid holds only a bare pointer to its owning nfs4_client and does not keep it alive. The client surviv...

  • EPSS 0.46%
  • Veröffentlicht 11.09.2026 19:45:45
  • Zuletzt bearbeitet 14.09.2026 13:19:18

In the Linux kernel, the following vulnerability has been resolved: libceph: reject buckets with mismatched CRUSH ids crush_decode() stores bucket data by array slot, and the mapper later derives the per-bucket workspace index from the decoded buck...

  • EPSS 0.41%
  • Veröffentlicht 11.09.2026 19:45:44
  • Zuletzt bearbeitet 13.09.2026 07:17:30

In the Linux kernel, the following vulnerability has been resolved: ceph: fix UAF in check_new_map() on session freed during unlock check_new_map() iterates mdsc->sessions[] and for each active session drops mdsc->mutex to perform per-session opera...

  • EPSS 0.63%
  • Veröffentlicht 11.09.2026 19:45:44
  • Zuletzt bearbeitet 14.09.2026 13:19:17

In the Linux kernel, the following vulnerability has been resolved: ceph: fix UAF in __kick_flushing_caps() on cf entry freed during unlock list_for_each_entry() iterates ci->i_cap_flush_list but drops i_ceph_lock to send cap messages. During the ...

  • EPSS 0.46%
  • Veröffentlicht 11.09.2026 19:45:43
  • Zuletzt bearbeitet 14.09.2026 13:19:17

In the Linux kernel, the following vulnerability has been resolved: ceph: reject export_targets ranks >= CEPH_MAX_MDS in mdsmap decode MDSMap export_targets entries are monitor controlled. check_new_map() uses each entry as a bit number in a fixed ...

  • EPSS 0.46%
  • Veröffentlicht 11.09.2026 19:45:42
  • Zuletzt bearbeitet 14.09.2026 13:19:17

In the Linux kernel, the following vulnerability has been resolved: ceph: bound copied dentry name length in NFS export get_name ceph_get_name() copies the MDS-supplied name into the caller's NAME_MAX-sized buffer with memcpy(name, rinfo->dname, ri...

  • EPSS 0.6%
  • Veröffentlicht 11.09.2026 19:45:40
  • Zuletzt bearbeitet 14.09.2026 13:19:17

In the Linux kernel, the following vulnerability has been resolved: ceph: bound xattr value length in __build_xattrs() __build_xattrs() decodes the MDS-supplied xattr blob one attribute at a time. For each attribute it reads a 32-bit name length, a...