Debian

Debian 12 (bookworm)

11227 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.01%
  • Veröffentlicht 25.04.2026 08:46:57
  • Zuletzt bearbeitet 06.05.2026 21:21:50

In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_multiport: validate range encoding in checkentry ports_match_v1() treats any non-zero pflags entry as the start of a port range and unconditionally consumes the next ...

  • EPSS 0.01%
  • Veröffentlicht 25.04.2026 08:46:56
  • Zuletzt bearbeitet 06.05.2026 21:23:31

In the Linux kernel, the following vulnerability has been resolved: net: ipv6: flowlabel: defer exclusive option free until RCU teardown `ip6fl_seq_show()` walks the global flowlabel hash under the seq-file RCU read-side lock and prints `fl->opt->o...

  • EPSS 0.01%
  • Veröffentlicht 25.04.2026 08:46:55
  • Zuletzt bearbeitet 06.05.2026 21:25:09

In the Linux kernel, the following vulnerability has been resolved: openvswitch: validate MPLS set/set_masked payload length validate_set() accepted OVS_KEY_ATTR_MPLS as variable-sized payload for SET/SET_MASKED actions. In action handling, OVS exp...

  • EPSS 0.01%
  • Veröffentlicht 25.04.2026 08:46:54
  • Zuletzt bearbeitet 06.05.2026 21:28:02

In the Linux kernel, the following vulnerability has been resolved: openvswitch: defer tunnel netdev_put to RCU release ovs_netdev_tunnel_destroy() may run after NETDEV_UNREGISTER already detached the device. Dropping the netdev reference in destro...

  • EPSS 0.01%
  • Veröffentlicht 25.04.2026 08:46:53
  • Zuletzt bearbeitet 06.05.2026 21:29:38

In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - limit RX SG extraction by receive buffer budget Make af_alg_get_rsgl() limit each RX scatterlist extraction to the remaining receive buffer budget. af_alg_get_rsg...

  • EPSS 0.06%
  • Veröffentlicht 25.04.2026 08:46:52
  • Zuletzt bearbeitet 06.05.2026 21:31:48

In the Linux kernel, the following vulnerability has been resolved: rxrpc: only handle RESPONSE during service challenge Only process RESPONSE packets while the service connection is still in RXRPC_CONN_SERVICE_CHALLENGING. Check that state under s...

  • EPSS 0.01%
  • Veröffentlicht 25.04.2026 08:46:51
  • Zuletzt bearbeitet 06.05.2026 21:33:21

In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_netem: fix out-of-bounds access in packet corruption In netem_enqueue(), the packet corruption logic uses get_random_u32_below(skb_headlen(skb)) to select an index f...

  • EPSS 0.01%
  • Veröffentlicht 25.04.2026 08:46:50
  • Zuletzt bearbeitet 06.05.2026 21:34:51

In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_rt: reject oversized addrnr in rt_mt6_check() Reject rt match rules whose addrnr exceeds IP6T_RT_HOPS. rt_mt6() expects addrnr to stay within the bounds of rtinfo-...

  • EPSS 0.01%
  • Veröffentlicht 25.04.2026 08:46:49
  • Zuletzt bearbeitet 06.05.2026 21:36:13

In the Linux kernel, the following vulnerability has been resolved: af_unix: read UNIX_DIAG_VFS data under unix_state_lock Exact UNIX diag lookups hold a reference to the socket, but not to u->path. Meanwhile, unix_release_sock() clears u->path und...

  • EPSS 0.01%
  • Veröffentlicht 24.04.2026 14:45:19
  • Zuletzt bearbeitet 27.04.2026 20:11:49

In the Linux kernel, the following vulnerability has been resolved: wifi: rt2x00usb: fix devres lifetime USB drivers bind to USB interfaces and any device managed resources should have their lifetime tied to the interface rather than parent USB dev...