Debian

Debian 12 (bookworm)

14811 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 16:48:48
  • Zuletzt bearbeitet 04.09.2026 17:16:59

In the Linux kernel, the following vulnerability has been resolved: ipvs: use parsed transport offset in TCP state lookup TCP state handling reparses the skb to find the TCP header. For IPv6 it uses sizeof(struct ipv6hdr), while the surrounding IPV...

  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 16:48:31
  • Zuletzt bearbeitet 04.09.2026 17:16:58

In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Validate CRIU-restored IDs before idr_alloc The KFD CRIU restore flow restores previously saved object IDs from userspace. For event restore: kfd_criu_restore_event...

  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 16:48:15
  • Zuletzt bearbeitet 04.09.2026 17:16:58

In the Linux kernel, the following vulnerability has been resolved: alpha/PCI: Add security_locked_down() check to pci_mmap_resource() Currently, Alpha's pci_mmap_resource() does not check security_locked_down(LOCKDOWN_PCI_ACCESS) before allowing u...

Medienbericht
  • EPSS 0.15%
  • Veröffentlicht 04.09.2026 16:48:11
  • Zuletzt bearbeitet 04.09.2026 17:16:58

In the Linux kernel, the following vulnerability has been resolved: tipc: avoid busy looping in tipc_exit_net() Blamed commit introduced a busy-wait loop in tipc_exit_net() to wait for pending UDP bearer cleanup works to complete: while (at...

  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 16:48:08
  • Zuletzt bearbeitet 04.09.2026 17:16:58

In the Linux kernel, the following vulnerability has been resolved: bpf: Add missing access_ok call to copy_user_syms As reported by sashiko we use __get_user without prior access_ok call on the user space pointer. Adding the missing call for the w...

Medienbericht
  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 15:55:18
  • Zuletzt bearbeitet 04.09.2026 16:18:15

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix responder UAF on IB_QP_MAX_DEST_RD_ATOMIC modify_qp rxe_qp_from_attr() handles IB_QP_MAX_DEST_RD_ATOMIC outside the IB_QP_STATE path, so it holds no state_lock and ru...

Medienbericht
  • EPSS 0.18%
  • Veröffentlicht 04.09.2026 15:55:17
  • Zuletzt bearbeitet 04.09.2026 16:18:15

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix OOB in free_rd_atomic_resources() free_rd_atomic_resources() iterates using qp->attr.max_dest_rd_atomic. Updating max_dest_rd_atomic before freeing the old array can ...

Medienbericht
  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 15:55:15
  • Zuletzt bearbeitet 03.10.2026 11:17:40

In the Linux kernel, the following vulnerability has been resolved: usb: xhci: bail out of setup if the controller is inaccessible xhci_gen_setup() locates the operational registers using the capability length read from the very first register: x...

Medienbericht
  • EPSS 0.17%
  • Veröffentlicht 04.09.2026 15:55:09
  • Zuletzt bearbeitet 04.09.2026 16:18:14

In the Linux kernel, the following vulnerability has been resolved: fuse: fix invalidate lock leak on setattr writeback failure fuse_do_setattr() takes filemap_invalidate_lock() for a DAX truncate (fault_blocked = true) and releases it at the out:/...

Medienbericht
  • EPSS 0.17%
  • Veröffentlicht 04.09.2026 15:55:07
  • Zuletzt bearbeitet 04.09.2026 16:18:14

In the Linux kernel, the following vulnerability has been resolved: fuse: fix invalidate lock leak on open O_TRUNC DAX failure fuse_open() takes filemap_invalidate_lock() for a DAX truncate (dax_truncate = true) and releases it before the out_inode...