Debian

Debian 12 (bookworm)

14811 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.63%
  • Veröffentlicht 11.09.2026 19:43:37
  • Zuletzt bearbeitet 14.09.2026 13:19:04

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: do not accept C2HData based on blk_rq_payload_bytes() alone Commit 25e5cb780e62 ("nvme-tcp: fix possible crash in write_zeroes processing") established that blk_rq_payloa...

  • EPSS 0.38%
  • Veröffentlicht 11.09.2026 19:43:36
  • Zuletzt bearbeitet 14.09.2026 13:19:04

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix host memory disclosure on R2T for a read command nvme_tcp_handle_r2t() does not check the direction of the request the R2T refers to. A malicious controller can send ...

  • EPSS 0.45%
  • Veröffentlicht 11.09.2026 19:43:35
  • Zuletzt bearbeitet 14.09.2026 13:19:04

In the Linux kernel, the following vulnerability has been resolved: sctp: stop processing a packet once its association is deleted sctp_endpoint_bh_rcv() looks the association up only when chunk->asoc is NULL, and caches the result in chunk->asoc a...

  • EPSS 0.37%
  • Veröffentlicht 11.09.2026 19:43:35
  • Zuletzt bearbeitet 14.09.2026 13:19:04

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: reject a read that transferred too few bytes nvme_tcp_recv_data() completes a request once the current C2HData PDU has been consumed. Nothing compares the total bytes rec...

  • EPSS 0.46%
  • Veröffentlicht 11.09.2026 19:43:34
  • Zuletzt bearbeitet 14.09.2026 13:19:04

In the Linux kernel, the following vulnerability has been resolved: sctp: drop a chunk if its transport was removed sctp_rcv() resolves the transport once per packet and leaves it in chunk->transport. The lookup reference, or the one sctp_add_backl...

  • EPSS 0.6%
  • Veröffentlicht 11.09.2026 19:43:33
  • Zuletzt bearbeitet 14.09.2026 13:19:03

In the Linux kernel, the following vulnerability has been resolved: sctp: fix stream->outcnt underflow on duplicate RECONF responses A cached RECONF chunk may contain more than one request parameter. A duplicate response can therefore find and pro...

  • EPSS 0.45%
  • Veröffentlicht 11.09.2026 19:43:33
  • Zuletzt bearbeitet 14.09.2026 13:19:04

In the Linux kernel, the following vulnerability has been resolved: sctp: fix NULL deref on untransmitted RECONF completion sctp_process_strreset_outreq(), sctp_process_strreset_addstrm_out() and sctp_process_strreset_resp() complete a pending stre...

  • EPSS 0.2%
  • Veröffentlicht 11.09.2026 19:43:32
  • Zuletzt bearbeitet 14.09.2026 13:19:03

In the Linux kernel, the following vulnerability has been resolved: power: supply: bq24257: fix use-after-free on remove The STAT-pin interrupt is devm-managed, so it stays armed until the devm cleanup that runs after remove() returns. remove() can...

  • EPSS 0.17%
  • Veröffentlicht 11.09.2026 19:43:31
  • Zuletzt bearbeitet 14.09.2026 13:19:03

In the Linux kernel, the following vulnerability has been resolved: power: supply: bq256xx: drain usb_work before freeing the charger The USB-PHY notifier queues usb_work, whose handler calls power_supply_changed(bq->charger). The reset devm action...

  • EPSS 0.16%
  • Veröffentlicht 11.09.2026 19:43:30
  • Zuletzt bearbeitet 13.09.2026 07:17:10

In the Linux kernel, the following vulnerability has been resolved: power: supply: charger-manager: register regulators before exposing sysfs charger_manager_remove() and the err_reg_extcon probe error path free each charger regulator with regulato...