Debian

Debian 13 (trixie)

17738 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.18%
  • Veröffentlicht 16.09.2026 10:32:57
  • Zuletzt bearbeitet 16.09.2026 15:18:22

In the Linux kernel, the following vulnerability has been resolved: ALSA: harmony: initialize locks before requesting IRQ snd_harmony_create() registers the IRQ before initializing h->lock and h->mixer_lock. A pending interrupt can invoke the handl...

  • EPSS 0.16%
  • Veröffentlicht 16.09.2026 10:32:56
  • Zuletzt bearbeitet 17.09.2026 10:17:05

In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Fix race between non-atomic ops and trigger-start We protect the races of the concurrent state transitions between atomic PCM ops, but the checks between the non-atomic ...

  • EPSS 0.29%
  • Veröffentlicht 16.09.2026 10:32:53
  • Zuletzt bearbeitet 16.09.2026 15:18:21

In the Linux kernel, the following vulnerability has been resolved: nvme-fc: fix double free of fabrics options when nvme_add_ctrl() fails nvmf_create_ctrl() owns the fabrics options and frees them whenever ->create_ctrl() returns an error, so a tr...

  • EPSS 0.2%
  • Veröffentlicht 16.09.2026 10:32:53
  • Zuletzt bearbeitet 16.09.2026 11:17:08

In the Linux kernel, the following vulnerability has been resolved: nvme-fabrics: fix DHCHAP secret leak on parse failure nvmf_parse_options() duplicates dhchap_secret and dhchap_ctrl_secret with match_strdup() before validating the DHHC-1: represe...

  • EPSS 0.61%
  • Veröffentlicht 16.09.2026 10:32:52
  • Zuletzt bearbeitet 16.09.2026 15:18:21

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: check the data direction of a C2HData PDU nvme_tcp_handle_c2h_data() finds the request by command id and checks that it has a payload, but it does not check that the comm...

  • EPSS 0.6%
  • Veröffentlicht 16.09.2026 10:32:51
  • Zuletzt bearbeitet 03.10.2026 11:17:45

In the Linux kernel, the following vulnerability has been resolved: nvme: add missing SRCU grace period in error path nvme_alloc_ns() error path at out_unlink_ns removes ns from the namespace head siblings list with list_del_rcu(&ns->siblings) but ...

  • EPSS 0.78%
  • Veröffentlicht 16.09.2026 10:32:50
  • Zuletzt bearbeitet 16.09.2026 15:18:21

In the Linux kernel, the following vulnerability has been resolved: nvmet-auth: Synchronize timeout work during SQ teardown nvmet_auth_sq_free() cancels auth_expired_work with cancel_delayed_work(). If the work has already started, cancellation doe...

  • EPSS 0.58%
  • Veröffentlicht 16.09.2026 10:32:50
  • Zuletzt bearbeitet 03.10.2026 11:17:45

In the Linux kernel, the following vulnerability has been resolved: nvme: skip the zoned limits update if the zone info query failed nvme_query_zone_info() returns either a negative errno or a positive NVMe status code, but nvme_update_ns_info_bloc...

  • EPSS 0.7%
  • Veröffentlicht 16.09.2026 10:32:49
  • Zuletzt bearbeitet 16.09.2026 15:18:21

In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: fix out-of-bounds write when receiving an over-long PDU nvmet_tcp_try_recv_pdu() reads a PDU header into the fixed 128-byte queue->pdu union, then computes the remaining...

  • EPSS 0.8%
  • Veröffentlicht 16.09.2026 10:32:48
  • Zuletzt bearbeitet 16.09.2026 15:18:21

In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: reject unsolicited H2CData PDUs nvmet_tcp_handle_h2c_data_pdu() accepts an H2CData PDU after only checking that its TTAG is a valid in-range command index and that the c...