Debian

Debian 13 (trixie)

17748 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.16%
  • Veröffentlicht 11.09.2026 19:45:34
  • Zuletzt bearbeitet 13.09.2026 07:17:29

In the Linux kernel, the following vulnerability has been resolved: cifs: call pagecache_isize_extended() in cifs_setsize() when extending cifs_setsize() calls truncate_pagecache() but skips pagecache_isize_extended() on extension. truncate_setsiz...

  • EPSS 0.13%
  • Veröffentlicht 11.09.2026 19:45:33
  • Zuletzt bearbeitet 14.09.2026 13:19:16

In the Linux kernel, the following vulnerability has been resolved: cifs: fix loff_t underflow in cifs_remap_file_range() when len == 0 With len == 0 (clone to EOF), the effective length is computed as: len = src_inode->i_size - off; If off >...

  • EPSS 0.12%
  • Veröffentlicht 11.09.2026 19:45:32
  • Zuletzt bearbeitet 13.09.2026 07:17:29

In the Linux kernel, the following vulnerability has been resolved: cifs: use cifs_invalidate_cache() in cifs_do_truncate() for O_TRUNC cifs_do_truncate() is invoked from cifs_open() without i_rwsem, so it cannot use cifs_resize_file_locked() to pe...

  • EPSS 0.59%
  • Veröffentlicht 11.09.2026 19:45:31
  • Zuletzt bearbeitet 13.09.2026 07:17:28

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix UAF and buffer leak in cifs_check_trans2() for malformed secondary T2 When a valid primary TRANSACT2 response has been received (mid->resp_buf set, mid->multiRsp t...

  • EPSS 0.17%
  • Veröffentlicht 11.09.2026 19:45:31
  • Zuletzt bearbeitet 13.09.2026 07:17:29

In the Linux kernel, the following vulnerability has been resolved: smb: client: clear setuid/setgid bit on write with cifsacl/modefromsid/posix extensions When a file has the setuid or setgid bit set and is written to, the VFS strips those bits an...

  • EPSS 0.61%
  • Veröffentlicht 11.09.2026 19:45:30
  • Zuletzt bearbeitet 14.09.2026 13:19:16

In the Linux kernel, the following vulnerability has been resolved: smb: client: clear ce->tgthint in free_tgts() When free_tgts() frees all structures in ce->tlist, ce->tgthint is left pointing to one of the freed cache_dfs_tgt structures. If ce-...

  • EPSS 0.48%
  • Veröffentlicht 11.09.2026 19:45:28
  • Zuletzt bearbeitet 13.09.2026 07:17:28

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix OOB read/write from unvalidated DataOffset in coalesce_t2() coalesce_t2() computes data pointers directly from server-supplied DataOffset fields with no validation...

  • EPSS 0.65%
  • Veröffentlicht 11.09.2026 19:45:28
  • Zuletzt bearbeitet 14.09.2026 13:19:16

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix ALIGN() overflow in symlink_data() error context loop The check added by commit 7d9a7f1f96cd ("smb/client: fix possible infinite loop and oob read in symlink_data(...

  • EPSS 0.45%
  • Veröffentlicht 11.09.2026 19:45:26
  • Zuletzt bearbeitet 13.09.2026 07:17:28

In the Linux kernel, the following vulnerability has been resolved: smb: client: reject a tree connect response whose byte count is too small CIFSTCon() bounds its strnlen() over the byte area with the server's ByteCount minus two, which for ByteCo...

  • EPSS 0.21%
  • Veröffentlicht 11.09.2026 19:45:24
  • Zuletzt bearbeitet 14.09.2026 13:19:16

In the Linux kernel, the following vulnerability has been resolved: HID: picolcd: clamp eeprom debugfs read to bytes actually received picolcd_debug_eeprom_read() trusts resp->raw_data[2] -- a length byte supplied by the device in its REPORT_EE_DAT...