Debian

Debian 12 (bookworm)

14811 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.37%
  • Veröffentlicht 11.09.2026 19:45:16
  • Zuletzt bearbeitet 14.09.2026 13:19:15

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix info-leak on partial LZNT decompress in ni_read_frame() ni_read_frame() decompresses an LZNT $DATA frame into the vmapped target pages and then trusts decompress_lznt...

  • EPSS 0.14%
  • Veröffentlicht 11.09.2026 19:45:16
  • Zuletzt bearbeitet 14.09.2026 13:19:15

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: validate dirty page table on log replay Each DIR_PAGE_ENTRY ends in a page_lcns[] array whose length is the on-disk lcns_follow field. check_rstbl() validates the table b...

  • EPSS 0.15%
  • Veröffentlicht 11.09.2026 19:45:15
  • Zuletzt bearbeitet 14.09.2026 13:19:15

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: bound page_lcns[] index by the log record The copy_lcns loop and the redo shorten loop index page_lcns[] at j + i, where i runs up to the log record's lcns_follow. That c...

  • EPSS 0.38%
  • Veröffentlicht 11.09.2026 19:45:12
  • Zuletzt bearbeitet 13.09.2026 07:17:26

In the Linux kernel, the following vulnerability has been resolved: ntfs: validate non-resident attribute offsets ntfs_attr_update_meta() shifts the attribute name when converting between non-sparse and sparse attributes. Converting to sparse also ...

  • EPSS 0.18%
  • Veröffentlicht 11.09.2026 19:45:11
  • Zuletzt bearbeitet 14.09.2026 13:19:15

In the Linux kernel, the following vulnerability has been resolved: ecryptfs: hold msg ctx list lock when cleaning daemon queue ecryptfs_exorcise_daemon() drops queued messages from a dying daemon without holding ecryptfs_msg_ctx_lists_mux, but ecr...

  • EPSS 0.55%
  • Veröffentlicht 11.09.2026 19:45:11
  • Zuletzt bearbeitet 13.09.2026 07:17:26

In the Linux kernel, the following vulnerability has been resolved: ntfs: verify run length exceeding volume boundary The mapping pairs decoder validates that the starting LCN is within the volume but does not check if the run extends beyond the vo...

  • EPSS 0.16%
  • Veröffentlicht 11.09.2026 19:45:10
  • Zuletzt bearbeitet 14.09.2026 13:19:15

In the Linux kernel, the following vulnerability has been resolved: ecryptfs: pass packet set buffer size to parser ecryptfs_parse_packet_set() receives a pointer into the file header, but it calculates the remaining packet buffer size from PAGE_SI...

  • EPSS 0.16%
  • Veröffentlicht 11.09.2026 19:45:09
  • Zuletzt bearbeitet 14.09.2026 13:19:14

In the Linux kernel, the following vulnerability has been resolved: ecryptfs: reject oversized encrypted_key_size in parse_tag_3_packet parse_tag_3_packet() set encrypted_key_size from the Tag 3 packet body without bounding it against ECRYPTFS_MAX_...

  • EPSS 0.16%
  • Veröffentlicht 11.09.2026 19:45:08
  • Zuletzt bearbeitet 14.09.2026 13:19:14

In the Linux kernel, the following vulnerability has been resolved: ecryptfs: release message context on send failure ecryptfs_send_message_locked() moves a message context from the free list to the allocated list before sending the request to the ...

  • EPSS 0.14%
  • Veröffentlicht 11.09.2026 19:45:08
  • Zuletzt bearbeitet 14.09.2026 13:19:14

In the Linux kernel, the following vulnerability has been resolved: ecryptfs: reject too-small tag 70 packets ecryptfs_parse_tag_70_packet() subtracts fixed metadata fields from the parsed packet body size to derive the encrypted filename size. A ...