Debian

Debian 13 (trixie)

17748 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 15:12:57
  • Zuletzt bearbeitet 07.09.2026 15:17:32

In the Linux kernel, the following vulnerability has been resolved: fbdev: serialize mode sysfs access with lock_fb_info() show_mode(), show_modes(), and store_mode() access fb_info->modelist and fb_info->mode without holding lock_fb_info(). store_...

  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 15:12:57
  • Zuletzt bearbeitet 07.09.2026 15:17:32

In the Linux kernel, the following vulnerability has been resolved: fbdev: Wrap user-invoked calls to fb_set_var() in helper Handle fbcon during display updates in fb_set_var_from_user(). Check with fbcon if the mode change is possible, update hard...

Medienbericht
  • EPSS 0.17%
  • Veröffentlicht 04.09.2026 15:12:56
  • Zuletzt bearbeitet 04.09.2026 16:18:04

In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: fix memory leak from alloc-during-teardown race mptcp_pm_destroy() empties msk->pm.anno_list and msk->pm.userspace_pm_local_addr_list under msk->pm.lock during socket te...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:12:54
  • Zuletzt bearbeitet 04.09.2026 16:18:04

In the Linux kernel, the following vulnerability has been resolved: HID: magicmouse: prevent unbounded recursion in magicmouse_raw_event() magicmouse_raw_event() handles DOUBLE_REPORT_ID (0xf7) packets, which pack two touch reports into one, by spl...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:12:53
  • Zuletzt bearbeitet 04.09.2026 16:18:04

In the Linux kernel, the following vulnerability has been resolved: HID: magicmouse: do not keep a stale msc->input if no input is claimed magicmouse_input_mapping() caches the first hid_input's input_dev in msc->input while the report descriptor i...

Medienbericht
  • EPSS 0.18%
  • Veröffentlicht 04.09.2026 15:12:52
  • Zuletzt bearbeitet 04.09.2026 16:18:03

In the Linux kernel, the following vulnerability has been resolved: HID: pidff: fix OOB write when hid->inputs is empty hid_pidff_init_with_quirks() derives its input_dev from list_entry(hid->inputs.next, struct hid_input, list) without first ch...

  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:12:52
  • Zuletzt bearbeitet 04.09.2026 16:18:03

In the Linux kernel, the following vulnerability has been resolved: HID: core: fix OOB read of field->usage in hid_set_field() hid_set_field() hands field->usage + offset to hid_dump_input() before the guard that bounds offset: hid_dump_input(fie...

  • EPSS 0.17%
  • Veröffentlicht 04.09.2026 15:12:51
  • Zuletzt bearbeitet 04.09.2026 16:18:03

In the Linux kernel, the following vulnerability has been resolved: net/ionic: avoid OOB TX partner lookup for hwstamp RXQ The dedicated hardware timestamp RX queue is allocated with q->index equal to lif->ionic->nrxqs_per_lif. The normal txqcqs ar...

  • EPSS 0.17%
  • Veröffentlicht 04.09.2026 15:12:46
  • Zuletzt bearbeitet 04.09.2026 16:18:03

In the Linux kernel, the following vulnerability has been resolved: HID: asus: fix missing hid_is_usb() check to_usb_interface() can only be used on a hid_device whose parent is really USB; uhid can create devices that identify as being on BUS_USB,...

Medienbericht
  • EPSS 0.17%
  • Veröffentlicht 04.09.2026 15:12:44
  • Zuletzt bearbeitet 04.09.2026 16:18:02

In the Linux kernel, the following vulnerability has been resolved: HID: nintendo: fix out-of-bounds read in joycon_ctlr_read_handler() joycon_ctlr_read_handler() casts an incoming HID input report to struct joycon_input_report and parses it, guard...