Debian

Debian 12 (bookworm)

14811 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.18%
  • Veröffentlicht 04.09.2026 15:55:06
  • Zuletzt bearbeitet 04.09.2026 16:18:14

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_tcm: keep port count until LUN teardown completes tcm_usbg_drop_nexus() permits session removal once tpg_port_count reaches zero. However, usbg_port_unlink() current...

Medienbericht
  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 15:55:02
  • Zuletzt bearbeitet 04.09.2026 16:18:14

In the Linux kernel, the following vulnerability has been resolved: tls: device: fix out-of-bounds write in tls_append_frag() Found with syzkaller and a local syzbot instance running on top of a netdevsim TLS offload emulation; tls_device.c is othe...

Medienbericht
  • EPSS 0.17%
  • Veröffentlicht 04.09.2026 15:55:01
  • Zuletzt bearbeitet 03.10.2026 11:17:40

In the Linux kernel, the following vulnerability has been resolved: gtp: serialize PDP context updates PDP contexts can be deleted through GTP_CMD_DELPDP or while the GTP network device is being unregistered. The latter is serialized by RTNL, but t...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:54:58
  • Zuletzt bearbeitet 04.09.2026 16:18:13

In the Linux kernel, the following vulnerability has been resolved: xfrm: espintcp: fix UAF during close ZDI reported and analyzed a race condition during close for espintcp sockets: espintcp_close() frees emsg->skb via kfree_skb() without hol...

Medienbericht
  • EPSS 0.17%
  • Veröffentlicht 04.09.2026 15:54:57
  • Zuletzt bearbeitet 21.09.2026 14:17:20

In the Linux kernel, the following vulnerability has been resolved: tcp: clamp route advmss to TCP_MIN_MSS tcp_select_initial_window() assumes that callers never pass an MSS smaller than 1, but route-derived advmss values can violate that assumptio...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:54:56
  • Zuletzt bearbeitet 04.09.2026 16:18:13

In the Linux kernel, the following vulnerability has been resolved: xfrm: drop ESP-in-TCP packets with no ingress device ESP-in-TCP receives records through the TCP strparser. handle_esp() restores skb->dev from the saved skb_iif before passing the...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:54:54
  • Zuletzt bearbeitet 04.09.2026 16:18:13

In the Linux kernel, the following vulnerability has been resolved: xfrm: ah6: validate routing header segments_left AH6 rearranges routing-header addresses before computing or verifying the ICV. ipv6_rearrange_rthdr() assumes that segments_left is...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:54:53
  • Zuletzt bearbeitet 04.09.2026 16:18:12

In the Linux kernel, the following vulnerability has been resolved: xfrm: fix xfrm_state_construct() auth-trunc leak attach_auth_trunc() can allocate x->aalg while leaving x->props.aalgo at zero when the selected auth algorithm has no sadb_alg_id. ...

Medienbericht
  • EPSS 0.18%
  • Veröffentlicht 04.09.2026 15:54:52
  • Zuletzt bearbeitet 04.09.2026 16:18:12

In the Linux kernel, the following vulnerability has been resolved: net: bridge: mcast: fix use-after-free of a master VLAN's multicast context br_multicast_toggle_one_vlan() clears BR_VLFLAG_MCAST_ENABLED under br->multicast_lock before stopping a...

Medienbericht
  • EPSS 0.17%
  • Veröffentlicht 04.09.2026 15:54:51
  • Zuletzt bearbeitet 03.10.2026 11:17:40

In the Linux kernel, the following vulnerability has been resolved: net/packet: defer vmalloc TX_RING free until skbs finish AF_PACKET TX_RING skbs keep a raw pointer to their ring frame. The skb page references preserve page-backed ring blocks aft...