Debian

Debian 13 (trixie)

17748 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.13%
  • Veröffentlicht 11.09.2026 19:44:17
  • Zuletzt bearbeitet 14.09.2026 13:19:09

In the Linux kernel, the following vulnerability has been resolved: sunrpc: init gssp_lock before publishing proc entry create_use_gss_proxy_proc_entry() publishes /proc/net/rpc/use-gss-proxy via proc_create_data() before init_gssp_clnt() runs mute...

  • EPSS 0.17%
  • Veröffentlicht 11.09.2026 19:44:16
  • Zuletzt bearbeitet 11.09.2026 20:19:36

In the Linux kernel, the following vulnerability has been resolved: SUNRPC: reject duplicate CREDS_VALUE options gssx_dec_option_array() walks the wire-supplied option array and, for every entry whose name matches CREDS_VALUE, calls gssx_dec_linux_...

  • EPSS 0.52%
  • Veröffentlicht 11.09.2026 19:44:15
  • Zuletzt bearbeitet 13.09.2026 07:17:16

In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Reject short RFC 4121 MIC tokens in gss_krb5_verify_mic_v2 gss_krb5_verify_mic_v2() reads the token ID at ptr[0..1], the flags byte at ptr[2], and padding at ptr[3..7], the...

  • EPSS 0.63%
  • Veröffentlicht 11.09.2026 19:44:15
  • Zuletzt bearbeitet 14.09.2026 13:19:08

In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Reject krb5 v2 wrap tokens with oversized ec field gss_krb5_unwrap_v2() sets buf->len to a logical length, which can be much smaller than head[0].iov_len (the allocated rec...

  • EPSS 0.63%
  • Veröffentlicht 11.09.2026 19:44:14
  • Zuletzt bearbeitet 14.09.2026 13:19:08

In the Linux kernel, the following vulnerability has been resolved: SUNRPC: wait for in-flight client TLS handshake callback xs_tls_handshake_sync() gives xs_tls_handshake_done() a reference to the lower transport before submitting the handshake re...

  • EPSS 0.51%
  • Veröffentlicht 11.09.2026 19:44:13
  • Zuletzt bearbeitet 21.09.2026 14:17:22

In the Linux kernel, the following vulnerability has been resolved: svcrdma: Reorder rpcrdma_rn_unregister before rdma_destroy_id svc_rdma_free() caches rdma->sc_cm_id->device before teardown, then calls rdma_destroy_id(sc_cm_id) which frees the cm...

  • EPSS 0.46%
  • Veröffentlicht 11.09.2026 19:44:12
  • Zuletzt bearbeitet 14.09.2026 13:19:08

In the Linux kernel, the following vulnerability has been resolved: svcrdma: Fix offset arithmetic in read_chunk_range svc_rdma_read_chunk_range() walks a Read chunk's segment list to build a sub-range starting at byte offset and spanning length by...

  • EPSS 0.22%
  • Veröffentlicht 11.09.2026 19:44:12
  • Zuletzt bearbeitet 13.09.2026 07:17:15

In the Linux kernel, the following vulnerability has been resolved: svcrdma: Clear sc_cm_id when ADDR_CHANGE replacement fails When svc_rdma_listen_handler() handles RDMA_CM_EVENT_ADDR_CHANGE, it creates a replacement listener cm_id and returns 1, ...

  • EPSS 0.46%
  • Veröffentlicht 11.09.2026 19:44:11
  • Zuletzt bearbeitet 14.09.2026 13:19:08

In the Linux kernel, the following vulnerability has been resolved: svcrdma: Fix pcl_for_each_segment for empty chunks When a parsed chunk list contains a chunk whose ch_segcount is zero, pcl_for_each_segment computes its inclusive upper bound as &...

  • EPSS 0.46%
  • Veröffentlicht 11.09.2026 19:44:10
  • Zuletzt bearbeitet 13.09.2026 07:17:15

In the Linux kernel, the following vulnerability has been resolved: svcrdma: Reject inline replies that overflow the pull-up buffer An RPC-over-RDMA client can request a reply, such as an NFS READ payload, without providing a Write list or a Reply ...