Debian

Debian 12 (bookworm)

14811 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 03.09.2026 08:26:33
  • Zuletzt bearbeitet 03.09.2026 13:06:15

In the Linux kernel, the following vulnerability has been resolved: selinux: reject a permission value exceeding the class permission count perm_read() bounds a permission value by SEL_VEC_MAX but never by the nprim of the owning class or common, w...

Medienbericht
  • EPSS 0.18%
  • Veröffentlicht 03.09.2026 08:26:31
  • Zuletzt bearbeitet 04.09.2026 05:17:15

In the Linux kernel, the following vulnerability has been resolved: Input: psxpad-spi - set driver data before use psxpad_spi_suspend() retrieves the controller state with spi_get_drvdata(), but probe never stores it, so suspend dereferences a NULL...

Medienbericht
  • EPSS 0.16%
  • Veröffentlicht 03.09.2026 08:26:28
  • Zuletzt bearbeitet 04.09.2026 05:17:14

In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Add bounds check for CRAT subtype length The CRAT parser validates that the subtype header fits within the image, but does not verify that the advertised subtype length...

Medienbericht
  • EPSS 0.23%
  • Veröffentlicht 03.09.2026 08:26:27
  • Zuletzt bearbeitet 03.09.2026 13:06:13

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables_offload: suppress WARN_ON_ONCE for ENOMEM in abort path In nft_flow_rule_offload_abort(), WARN_ON_ONCE(err) is triggered on every error during rollback, includ...

Medienbericht
  • EPSS 0.21%
  • Veröffentlicht 03.09.2026 08:26:26
  • Zuletzt bearbeitet 03.09.2026 13:06:13

In the Linux kernel, the following vulnerability has been resolved: ASoC: xilinx: formatter_pcm: pass aud_drv_data to irq handlers The irq handlers take a struct device pointer and call dev_get_drvdata() to obtain the driver data. However, the dri...

Medienbericht
  • EPSS 0.21%
  • Veröffentlicht 03.09.2026 08:26:25
  • Zuletzt bearbeitet 03.09.2026 13:06:13

In the Linux kernel, the following vulnerability has been resolved: af_packet: Don't send zero-byte data in tpacket_snd(). syzbot reported a WARNING in __dev_queue_xmit() triggered via tpacket_snd(): skb_assert_len WARNING: at include/linux/skbuff...

Medienbericht
  • EPSS 0.12%
  • Veröffentlicht 03.09.2026 08:21:53
  • Zuletzt bearbeitet 04.09.2026 05:17:14

In the Linux kernel, the following vulnerability has been resolved: bpf: Check sk_state before sk_protocol in bpf_tcp_*_syncookie bpf_tcp_gen_syncookie and bpf_tcp_check_syncookie accept a socket pointer 'sk' with argument type ARG_PTR_TO_BTF_ID_SO...

  • EPSS 0.2%
  • Veröffentlicht 03.09.2026 08:21:53
  • Zuletzt bearbeitet 03.09.2026 13:06:13

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: TC, Check if flow is PEER before acquiring devcom lock In case __mlx5e_add_fdb_flow() fails in lower levels, the flow is deleted via mlx5e_tc_del_flow(), and mlx5e_tc_de...

Medienbericht
  • EPSS 0.16%
  • Veröffentlicht 03.09.2026 08:21:52
  • Zuletzt bearbeitet 04.09.2026 05:17:14

In the Linux kernel, the following vulnerability has been resolved: serial: amba-pl011: synchronize DMA teardown dmaengine_terminate_all() does not wait for a running callback, so the TX callback can still touch the TX buffer after it is freed. The...

Medienbericht
  • EPSS 0.21%
  • Veröffentlicht 03.09.2026 08:21:50
  • Zuletzt bearbeitet 03.09.2026 13:06:12

In the Linux kernel, the following vulnerability has been resolved: net: remove WARN_ON_ONCE() from sk_mc_loop() sk_mc_loop() can be called for sockets that are neither AF_INET nor AF_INET6 (e.g. AF_PACKET sockets when sending packets via raw/packe...