Debian

Debian 13 (trixie)

17738 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:05:52
  • Zuletzt bearbeitet 17.09.2026 17:16:56

In the Linux kernel, the following vulnerability has been resolved: net/sched: sfq: clamp quantum to avoid signed overflow soft lockup sfq_init() sets q->quantum = psched_mtu(qdisc_dev(sch)) (unsigned). A device with a huge MTU (e.g. dummy with max...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:05:51
  • Zuletzt bearbeitet 17.09.2026 17:16:55

In the Linux kernel, the following vulnerability has been resolved: tpm: st33zp24: Return zero on status read failure st33zp24_status() ignores the result of the transport read and returns data even when no byte was received. The I2C transport, for...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:05:50
  • Zuletzt bearbeitet 17.09.2026 17:16:55

In the Linux kernel, the following vulnerability has been resolved: ASoC: dapm: Fix off-by-one check on the second enum channel The snd_soc_dapm_put_enum_double() rejects item[0] once it reaches e->items, but it lets item[1] be equal to it. Both g...

  • EPSS 0.67%
  • Veröffentlicht 17.09.2026 16:05:49
  • Zuletzt bearbeitet 18.09.2026 18:17:40

In the Linux kernel, the following vulnerability has been resolved: libceph: validate banner payload length When parsing the Ceph messenger v2 protocol banner, the `payload_len` field is decoded from the banner prefix. If a client sends a banner wi...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:05:48
  • Zuletzt bearbeitet 17.09.2026 17:16:55

In the Linux kernel, the following vulnerability has been resolved: net/smc: release the internal TCP sock on IPPROTO_SMC socket creation failure IPPROTO_SMC sockets create an internal TCP sock ("clcsock") from the proto->init hook. When socket cre...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:05:48
  • Zuletzt bearbeitet 17.09.2026 17:16:55

In the Linux kernel, the following vulnerability has been resolved: samples/ftrace: Fix kthread_stop() on ERR_PTR in ftrace-direct-multi-modify ftrace_direct_multi_init() assigns kthread_run()'s return value to simple_tsk without an IS_ERR() check....

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:05:46
  • Zuletzt bearbeitet 17.09.2026 17:16:55

In the Linux kernel, the following vulnerability has been resolved: virtio-net: Ensure that TCP packets don't overflow gso_segs The user can specify any gso_size in a packet crafted with an AF_PACKET PACKET_VNET_HDR socket, even smaller than TCP_MI...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:05:45
  • Zuletzt bearbeitet 17.09.2026 17:16:54

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: skip double clone set expressions on element insert Both the dynset and newsetelem path clone the existing set expressions when setting set element expression...

  • EPSS 0.16%
  • Veröffentlicht 17.09.2026 16:05:45
  • Zuletzt bearbeitet 18.09.2026 18:17:40

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: move hardware offload step after building the chain blob Allocate the chain blob before the ruleset offload to reduce chances of entering an inconsistent stat...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:05:44
  • Zuletzt bearbeitet 17.09.2026 17:16:54

In the Linux kernel, the following vulnerability has been resolved: ALSA: control: Don't add invalid kcontrols to LED layer The kcontrol LED state layer tries to track the all associated kcontrol elements with naive assumptions that they are readab...