Debian

Debian 13 (trixie)

17738 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.2%
  • Veröffentlicht 16.09.2026 10:32:39
  • Zuletzt bearbeitet 03.10.2026 11:17:44

In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix missing lock required to access list of ap_matrix_mdev objects In order to traverse or add/remove ap_matrix_mdev objects in the matrix_dev->mdev_list, the matrix_...

  • EPSS 0.18%
  • Veröffentlicht 16.09.2026 10:32:38
  • Zuletzt bearbeitet 16.09.2026 15:18:20

In the Linux kernel, the following vulnerability has been resolved: mtd: afs: validate v2 image info bounds The AFS v2 parser uses footer[8] to locate the image information block inside the current erase block, then uses the image information regio...

  • EPSS 0.21%
  • Veröffentlicht 16.09.2026 10:32:37
  • Zuletzt bearbeitet 16.09.2026 11:17:05

In the Linux kernel, the following vulnerability has been resolved: mtd: mtdoops: free page bitmap when the backing MTD is removed mtdoops_notify_add() allocates oops_page_used when the configured MTD device is registered. mtdoops_notify_remove() ...

  • EPSS 0.35%
  • Veröffentlicht 16.09.2026 10:32:36
  • Zuletzt bearbeitet 16.09.2026 15:18:19

In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix stale receive device on merged fragments Fragment reassembly reuses the skb from the highest-numbered buffered fragment as the merged packet. When that fragment was...

  • EPSS 0.21%
  • Veröffentlicht 16.09.2026 10:32:36
  • Zuletzt bearbeitet 16.09.2026 11:17:05

In the Linux kernel, the following vulnerability has been resolved: mtd: rawnand: validate ONFI extended parameter page sections nand_flash_detect_ext_param_page() allocates the length declared by the ONFI parameter page, then treats the data as a ...

  • EPSS 0.2%
  • Veröffentlicht 16.09.2026 10:32:35
  • Zuletzt bearbeitet 16.09.2026 11:17:05

In the Linux kernel, the following vulnerability has been resolved: batman-adv: mcast: linearize skbuff for packet generation batadv_mcast_forw_packet() and batadv_mcast_forw_scrape() is not only called (indirectly) by the unsharing+linearizing bat...

  • EPSS 0.21%
  • Veröffentlicht 16.09.2026 10:32:34
  • Zuletzt bearbeitet 16.09.2026 11:17:04

In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: fix freeing of claims on meshif deletion When the mesh interface is getting deleted, then batadv_bla_del_backbone_claims() (via batadv_bla_purge_backbone_gw()) cou...

  • EPSS 0.21%
  • Veröffentlicht 16.09.2026 10:32:34
  • Zuletzt bearbeitet 16.09.2026 11:17:05

In the Linux kernel, the following vulnerability has been resolved: batman-adv: dat: avoid unaligned fault in IP extraction Independent of the alignment of the ARP packet in the SKB, either the batadv_arp_ip_src or the batadv_arp_ip_dst will have a...

  • EPSS 0.18%
  • Veröffentlicht 16.09.2026 10:32:33
  • Zuletzt bearbeitet 16.09.2026 15:18:19

In the Linux kernel, the following vulnerability has been resolved: clk: meson: align gxbb_32k_clk_sel number of parents with actual count The following out-of-bounds read has been observed by Christian on a GXBB WeTek Hub: ========================...

  • EPSS 0.21%
  • Veröffentlicht 16.09.2026 10:32:32
  • Zuletzt bearbeitet 16.09.2026 11:17:04

In the Linux kernel, the following vulnerability has been resolved: ASoC: cs35l33: drain threaded IRQ before runtime suspend cs35l33_runtime_suspend() currently switches the codec into regcache_cache_only(true) and powers it down without first quie...