Debian

Debian 12 (bookworm)

14811 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.17%
  • Veröffentlicht 22.08.2026 16:16:47
  • Zuletzt bearbeitet 25.08.2026 06:18:58

In the Linux kernel, the following vulnerability has been resolved: ipvs: avoid out-of-bounds write in ip_vs_nat_icmp Sashiko warns that local attacker can modify the packet while it is processed by IPVS. Some places read the IP ihl field multiple ...

  • EPSS 0.17%
  • Veröffentlicht 22.08.2026 16:16:47
  • Zuletzt bearbeitet 25.08.2026 06:18:58

In the Linux kernel, the following vulnerability has been resolved: enic: fix tx_hang_reset use-after-free on device removal enic_remove() cancels the reset and change_mtu_work items but does not cancel tx_hang_reset. A TX timeout that fires while ...

  • EPSS 0.18%
  • Veröffentlicht 22.08.2026 16:16:47
  • Zuletzt bearbeitet 25.08.2026 06:18:58

In the Linux kernel, the following vulnerability has been resolved: bonding: alb: re-check primary_is_promisc under RTNL in bond_alb_monitor bond_alb_monitor() reads primary_is_promisc under RCU, then drops RCU and takes RTNL via rtnl_trylock() bef...

  • EPSS 0.16%
  • Veröffentlicht 22.08.2026 16:16:46
  • Zuletzt bearbeitet 25.08.2026 06:18:56

In the Linux kernel, the following vulnerability has been resolved: vhost_iotlb: bound map allocation in add_range vhost_iotlb_add_range_ctx() only retires an old entry when the table has a non-zero limit, has exactly reached that limit and has VHO...

  • EPSS 0.17%
  • Veröffentlicht 22.08.2026 16:16:46
  • Zuletzt bearbeitet 25.08.2026 06:18:56

In the Linux kernel, the following vulnerability has been resolved: bpf: tcp: Fix use-after-free in bpf_iter_tcp_established_batch() reqsk_queue_hash_req() publishes a TCP_NEW_SYN_RECV request_sock onto the ehash chain, drops the bucket lock, and o...

  • EPSS 0.16%
  • Veröffentlicht 22.08.2026 16:16:46
  • Zuletzt bearbeitet 25.08.2026 06:18:57

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix netns reference imbalance in conntrack kfuncs The opts argument of the BPF conntrack kfuncs can point to a shared map value. __bpf_nf_ct_lookup() and __bpf_nf_ct_alloc_en...

  • EPSS 0.18%
  • Veröffentlicht 22.08.2026 16:16:46
  • Zuletzt bearbeitet 25.08.2026 06:18:57

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: fw_tracer, return NULL on create error Tracer creation can fail by returning either NULL or ERR_PTR. The return value is stored without a check on the device, and users t...

  • EPSS 0.18%
  • Veröffentlicht 22.08.2026 16:16:46
  • Zuletzt bearbeitet 22.08.2026 16:16:46

In the Linux kernel, the following vulnerability has been resolved: net/smc: fix qentry overwrite for CONFIRM_LINK and ADD_LINK_CONT in smc_llc_event_handler() The SMC_LLC_CONFIRM_LINK / SMC_LLC_ADD_LINK_CONT branch in smc_llc_event_handler() store...

  • EPSS 0.18%
  • Veröffentlicht 22.08.2026 16:16:46
  • Zuletzt bearbeitet 25.08.2026 06:18:57

In the Linux kernel, the following vulnerability has been resolved: bpf: Preserve pointer state for commuted arithmetic When scalar += pointer is handled in adjust_ptr_min_max_vals(), the destination register inherits the pointer state from the sou...

  • EPSS 0.18%
  • Veröffentlicht 22.08.2026 16:16:45
  • Zuletzt bearbeitet 25.08.2026 06:18:54

In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_cake: drop WARN_ON(1) for malformed packets in ACK filter The sch_cake ACK filter parses packets to find the TCP header and filter duplicated ACKs if the flow is bac...