Debian

Debian 12 (bookworm)

14804 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.2%
  • Veröffentlicht 16.09.2026 10:32:44
  • Zuletzt bearbeitet 16.09.2026 11:17:06

In the Linux kernel, the following vulnerability has been resolved: powerpc/kexec_file: Prevent kexec range truncation Sashiko AI review pointed out the following issue. The __merge_memory_ranges() function incorrectly handles overlapping memory r...

  • EPSS 0.16%
  • Veröffentlicht 16.09.2026 10:32:42
  • Zuletzt bearbeitet 16.09.2026 15:18:20

In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: fix stale pqap_hook pointer on error in vfio_ap_mdev_set_kvm() In vfio_ap_mdev_set_kvm(), kvm->arch.crypto.pqap_hook is set to &matrix_mdev->pqap_hook before the upda...

  • EPSS 0.2%
  • Veröffentlicht 16.09.2026 10:32:41
  • Zuletzt bearbeitet 16.09.2026 11:17:06

In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix dereference matrix_mdev->kvm without checking for NULL The ap_driver structure has two fields which are function pointers to callbacks: * .on_config_changed: cal...

  • EPSS 0.16%
  • Veröffentlicht 16.09.2026 10:32:41
  • Zuletzt bearbeitet 16.09.2026 15:18:20

In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix control domain removal in vfio_ap_mdev_cfg_remove The vfio_ap_config_remove function uses the bitmap_andnot function to clear bits from the matrix_mdev->matrix.ad...

  • EPSS 0.16%
  • Veröffentlicht 16.09.2026 10:32:40
  • Zuletzt bearbeitet 16.09.2026 15:18:20

In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix hot-unplug skipped when last AP adapter or domain removed The vfio_ap_mdev_hot_unplug_cfg() function uses the return value of bitmap_andnot() to determine whether...

  • EPSS 0.2%
  • Veröffentlicht 16.09.2026 10:32:39
  • Zuletzt bearbeitet 16.09.2026 11:17:05

In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix NULL deref in status_show() during queue probe When vfio_ap_mdev_probe_queue() creates the sysfs attribute group, the queue's driver data has not yet been set. A ...

  • EPSS 0.2%
  • Veröffentlicht 16.09.2026 10:32:39
  • Zuletzt bearbeitet 03.10.2026 11:17:44

In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix missing lock required to access list of ap_matrix_mdev objects In order to traverse or add/remove ap_matrix_mdev objects in the matrix_dev->mdev_list, the matrix_...

  • EPSS 0.18%
  • Veröffentlicht 16.09.2026 10:32:38
  • Zuletzt bearbeitet 16.09.2026 15:18:20

In the Linux kernel, the following vulnerability has been resolved: mtd: afs: validate v2 image info bounds The AFS v2 parser uses footer[8] to locate the image information block inside the current erase block, then uses the image information regio...

  • EPSS 0.21%
  • Veröffentlicht 16.09.2026 10:32:37
  • Zuletzt bearbeitet 16.09.2026 11:17:05

In the Linux kernel, the following vulnerability has been resolved: mtd: mtdoops: free page bitmap when the backing MTD is removed mtdoops_notify_add() allocates oops_page_used when the configured MTD device is registered. mtdoops_notify_remove() ...

  • EPSS 0.35%
  • Veröffentlicht 16.09.2026 10:32:36
  • Zuletzt bearbeitet 16.09.2026 15:18:19

In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix stale receive device on merged fragments Fragment reassembly reuses the skb from the highest-numbered buffered fragment as the merged packet. When that fragment was...