Debian

Debian 13 (trixie)

17748 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.17%
  • Veröffentlicht 22.08.2026 16:16:35
  • Zuletzt bearbeitet 25.08.2026 06:18:40

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack: defer invalid log until after unlock TCP and SCTP conntrack paths can emit invalid-packet logs while ct->lock is still held. When invalid logging is route...

  • EPSS 0.18%
  • Veröffentlicht 22.08.2026 16:16:35
  • Zuletzt bearbeitet 25.08.2026 06:18:40

In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: release template ct on non-IP path A bridge nftables ct zone set rule can attach a conntrack template to an skb before nf_ct_bridge_pre() sees it. For non-IPv4 a...

  • EPSS 0.17%
  • Veröffentlicht 22.08.2026 16:16:35
  • Zuletzt bearbeitet 27.08.2026 13:18:34

In the Linux kernel, the following vulnerability has been resolved: NTB: ntb_netdev: Preserve RX queue depth on allocation failure ntb_netdev_rx_handler() hands the received skb to the network stack before allocating its replacement. If the allocat...

  • EPSS 0.17%
  • Veröffentlicht 22.08.2026 16:16:35
  • Zuletzt bearbeitet 27.08.2026 13:18:34

In the Linux kernel, the following vulnerability has been resolved: net/x25: fix use-after-free of the socket by its timers The x25 timers are armed with mod_timer() and cancelled with timer_delete(), so a pending timer holds no reference on the so...

  • EPSS 0.18%
  • Veröffentlicht 22.08.2026 16:16:35
  • Zuletzt bearbeitet 25.08.2026 06:18:41

In the Linux kernel, the following vulnerability has been resolved: ipv6: prevent in6_dev_get() from resurrecting inet6_dev in6_dev_get() reads dev->ip6_ptr under RCU and then unconditionally increments its refcount. Device teardown can clear the p...

  • EPSS 0.17%
  • Veröffentlicht 22.08.2026 16:16:34
  • Zuletzt bearbeitet 25.08.2026 06:18:39

In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: read virtqueues under worker locks Commit bd50c5dc182b ("vsock/virtio: add support for device suspend/resume") made the *_run flags transition from false to true when...

  • EPSS 0.18%
  • Veröffentlicht 22.08.2026 16:16:34
  • Zuletzt bearbeitet 25.08.2026 06:18:39

In the Linux kernel, the following vulnerability has been resolved: vxlan: do not arm the ageing timer on a device that is down vxlan_changelink() arms vxlan->age_timer whenever the requested ageing interval differs from the configured one: if (c...

  • EPSS 0.17%
  • Veröffentlicht 22.08.2026 16:16:34
  • Zuletzt bearbeitet 25.08.2026 06:18:39

In the Linux kernel, the following vulnerability has been resolved: xdp: reject clones that overrun skb_shared_info tailroom xdpf_clone() clones broadcast copies into a single page and sets frame_sz to PAGE_SIZE. __xdp_build_skb_from_frame() later ...

  • EPSS 0.17%
  • Veröffentlicht 22.08.2026 16:16:34
  • Zuletzt bearbeitet 22.08.2026 16:16:34

In the Linux kernel, the following vulnerability has been resolved: binfmt_misc: don't warn when the mount is completed from another user namespace fsopen() records the caller's user namespace in fc->user_ns and hands back an ordinary file descript...

  • EPSS 0.17%
  • Veröffentlicht 22.08.2026 16:16:34
  • Zuletzt bearbeitet 22.08.2026 16:16:34

In the Linux kernel, the following vulnerability has been resolved: ovl: don't warn when the mount is completed from another user namespace fsopen() records the caller's user namespace in fc->user_ns and hands back an ordinary file descriptor. Noth...