Debian

Debian 12 (bookworm)

14811 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.61%
  • Veröffentlicht 11.09.2026 19:45:30
  • Zuletzt bearbeitet 14.09.2026 13:19:16

In the Linux kernel, the following vulnerability has been resolved: smb: client: clear ce->tgthint in free_tgts() When free_tgts() frees all structures in ce->tlist, ce->tgthint is left pointing to one of the freed cache_dfs_tgt structures. If ce-...

  • EPSS 0.48%
  • Veröffentlicht 11.09.2026 19:45:28
  • Zuletzt bearbeitet 13.09.2026 07:17:28

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix OOB read/write from unvalidated DataOffset in coalesce_t2() coalesce_t2() computes data pointers directly from server-supplied DataOffset fields with no validation...

  • EPSS 0.65%
  • Veröffentlicht 11.09.2026 19:45:28
  • Zuletzt bearbeitet 14.09.2026 13:19:16

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix ALIGN() overflow in symlink_data() error context loop The check added by commit 7d9a7f1f96cd ("smb/client: fix possible infinite loop and oob read in symlink_data(...

  • EPSS 0.45%
  • Veröffentlicht 11.09.2026 19:45:26
  • Zuletzt bearbeitet 13.09.2026 07:17:28

In the Linux kernel, the following vulnerability has been resolved: smb: client: reject a tree connect response whose byte count is too small CIFSTCon() bounds its strnlen() over the byte area with the server's ByteCount minus two, which for ByteCo...

  • EPSS 0.21%
  • Veröffentlicht 11.09.2026 19:45:24
  • Zuletzt bearbeitet 14.09.2026 13:19:16

In the Linux kernel, the following vulnerability has been resolved: HID: picolcd: clamp eeprom debugfs read to bytes actually received picolcd_debug_eeprom_read() trusts resp->raw_data[2] -- a length byte supplied by the device in its REPORT_EE_DAT...

  • EPSS 0.2%
  • Veröffentlicht 11.09.2026 19:45:23
  • Zuletzt bearbeitet 14.09.2026 13:19:16

In the Linux kernel, the following vulnerability has been resolved: HID: roccat: free buffered reports when destroying device roccat_report_event() duplicates each report with kmemdup() and stores the allocation in a circular-buffer slot. The alloc...

  • EPSS 0.21%
  • Veröffentlicht 11.09.2026 19:45:22
  • Zuletzt bearbeitet 21.09.2026 14:17:24

In the Linux kernel, the following vulnerability has been resolved: HID: sony: fix UAF of ghl_poke_timer / ghl_urb at driver unbind For GHL (Guitar Hero Live) dongles, sony_probe() arms a periodic timer: ghl_magic_poke() (the timer callback) submit...

  • EPSS 0.32%
  • Veröffentlicht 11.09.2026 19:45:22
  • Zuletzt bearbeitet 14.09.2026 13:19:16

In the Linux kernel, the following vulnerability has been resolved: HID: sensor: custom: Fix field sysfs group cleanup on failure hid_sensor_custom_add_attributes() creates one sysfs group for each custom sensor field. If sysfs_create_group() fails...

  • EPSS 0.16%
  • Veröffentlicht 11.09.2026 19:45:20
  • Zuletzt bearbeitet 21.09.2026 14:17:23

In the Linux kernel, the following vulnerability has been resolved: HID: mcp2221: clear rxbuf after I2C/SMBus transfer completes mcp_i2c_smbus_read() stores the caller-supplied buffer pointer in mcp->rxbuf for the duration of a transfer but never c...

  • EPSS 0.21%
  • Veröffentlicht 11.09.2026 19:45:19
  • Zuletzt bearbeitet 14.09.2026 13:19:15

In the Linux kernel, the following vulnerability has been resolved: HID: mcp2221: validate report size in mcp2221_raw_event() mcp2221_raw_event() never validates the size of incoming HID reports. In the MCP2221_I2C_GET_DATA path it trusts the devic...