Debian

Debian 13 (trixie)

17738 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:07:19
  • Zuletzt bearbeitet 17.09.2026 17:17:15

In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Avoid freeing unallocated PCIe SGL buffers _base_release_memory_pools() unconditionally frees every ioc->pcie_sg_lookup[] entry, including ones the setup loop never ...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:07:18
  • Zuletzt bearbeitet 17.09.2026 17:17:14

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix integer overflow in MFT cluster validation In ntfs_init_from_boot(), the boot sector's MFT cluster numbers are validated against the volume size with: if (mlcn * s...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:07:18
  • Zuletzt bearbeitet 17.09.2026 17:17:15

In the Linux kernel, the following vulnerability has been resolved: net: page_pool: fix UAF in __page_pool_release_netmem_dma on xa_cmpxchg race This bug was discovered while testing the hns3 driver under channel reconfiguration (`ethtool -L` / `et...

  • EPSS 0.17%
  • Veröffentlicht 17.09.2026 16:07:17
  • Zuletzt bearbeitet 18.09.2026 18:17:45

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: reject out-of-range evcn in mi_enum_attr() In mi_enum_attr(), the start/end VCN validation for non-resident attributes is: if (svcn > evcn + 1) goto out; When evcn is ...

  • EPSS 0.22%
  • Veröffentlicht 17.09.2026 16:07:16
  • Zuletzt bearbeitet 17.09.2026 17:17:14

In the Linux kernel, the following vulnerability has been resolved: ALSA: core: Fix use-after-free in snd_card_do_free() A use-after-free was detected in snd_card_do_free() when a sound card managed by devres is unbound while a user-space applicati...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:07:15
  • Zuletzt bearbeitet 17.09.2026 17:17:14

In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: validate topology volume range before allocation SOF treats the topology mixer min and max values as non-negative indices into its volume table. It stores them in signed...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:07:14
  • Zuletzt bearbeitet 17.09.2026 17:17:14

In the Linux kernel, the following vulnerability has been resolved: ACPI: scan: fix bus ID cleanup on device_add() failures When device_add() fails after acpi_device_set_name() has allocated an instance ID and a new acpi_device_bus_id has been link...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:07:14
  • Zuletzt bearbeitet 17.09.2026 17:17:14

In the Linux kernel, the following vulnerability has been resolved: riscv, bpf: Fix missing sign-ext for signed 1-byte and 2-byte kfunc args On RV64, the ABI requires sign-extension for signed 1-byte and 2-byte kfunc args. However, the RV64 JIT cur...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:07:13
  • Zuletzt bearbeitet 17.09.2026 17:17:14

In the Linux kernel, the following vulnerability has been resolved: mailbox: qcom-cpucp: fix PREEMPT_RT self-deadlock in IRQ handler qcom_cpucp_mbox_irq_fn() calls mbox_chan_received_data() while holding chan->lock. Under PREEMPT_RT, spin_lock_irqs...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:07:12
  • Zuletzt bearbeitet 17.09.2026 17:17:13

In the Linux kernel, the following vulnerability has been resolved: mailbox: qcom-cpucp: handle NULL data in send_data callback mailbox_clear_channel() calls mbox_send_message() with NULL data to notify the remote side that the RX channel has been ...