Debian

Debian 13 (trixie)

17748 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.17%
  • Veröffentlicht 22.08.2026 16:16:31
  • Zuletzt bearbeitet 25.08.2026 06:18:34

In the Linux kernel, the following vulnerability has been resolved: fsverity: Fix bpf_get_fsverity_digest() dynptr assumptions The BPF verifier and the dynptr abstraction ensure that the memory space referenced by a dynptr remains valid. They do n...

  • EPSS 0.17%
  • Veröffentlicht 22.08.2026 16:16:31
  • Zuletzt bearbeitet 25.08.2026 06:18:34

In the Linux kernel, the following vulnerability has been resolved: ima: Instantiate file_truncate and path_truncate hooks Instantiate the file_truncate and path_truncate LSM hooks to reset the action cache flags (IMA_DONE_MASK) as soon as truncati...

  • EPSS 0.18%
  • Veröffentlicht 22.08.2026 16:16:31
  • Zuletzt bearbeitet 25.08.2026 06:18:34

In the Linux kernel, the following vulnerability has been resolved: sched/psi: Shut down rtpoll_timer in psi_cgroup_free() psi_schedule_rtpoll_work() is called locklessly from the scheduler hotpath and can race psi_trigger_destroy() taking down the...

  • EPSS 0.12%
  • Veröffentlicht 22.08.2026 16:16:31
  • Zuletzt bearbeitet 25.08.2026 06:18:35

In the Linux kernel, the following vulnerability has been resolved: fscrypt: use the mount idmap for the owner check in fscrypt_ioctl_set_policy() fscrypt_ioctl_set_policy() calls inode_owner_or_capable() with &nop_mnt_idmap before allowing an encr...

  • EPSS 0.18%
  • Veröffentlicht 22.08.2026 16:16:30
  • Zuletzt bearbeitet 22.08.2026 16:16:30

In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Bound the DROM dual link port number before indexing sw->ports tb_drom_parse_entry_port() validates the device-supplied header->index against sw->config.max_port_numbe...

  • EPSS 0.18%
  • Veröffentlicht 22.08.2026 16:16:30
  • Zuletzt bearbeitet 25.08.2026 06:18:32

In the Linux kernel, the following vulnerability has been resolved: sctp: clear new_transport when removing a peer sctp_process_asconf_param() stores a newly added peer transport in asoc->new_transport. After all parameters in the ASCONF chunk have...

  • EPSS 0.18%
  • Veröffentlicht 22.08.2026 16:16:30
  • Zuletzt bearbeitet 25.08.2026 06:18:33

In the Linux kernel, the following vulnerability has been resolved: sctp: fix use-after-free of cached ASCONF chunk addip_last_asconf caches the outstanding outbound ASCONF chunk. The normal ASCONF-ACK completion path releases the chunk and clears ...

  • EPSS 0.18%
  • Veröffentlicht 22.08.2026 16:16:30
  • Zuletzt bearbeitet 25.08.2026 06:18:33

In the Linux kernel, the following vulnerability has been resolved: sctp: keep chunk->transport in step with the list it is queued on __sctp_outq_flush_rtx() moves a gap-acked chunk onto another transport's transmitted list without updating chunk->...

  • EPSS 0.17%
  • Veröffentlicht 22.08.2026 15:16:21
  • Zuletzt bearbeitet 25.08.2026 06:18:32

In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: zero shared page before exposing to userspace bnxt_re_alloc_ucontext() allocates uctx->shpg via __get_free_page(GFP_KERNEL). The buddy allocator does not zero pages w...

  • EPSS 0.17%
  • Veröffentlicht 21.08.2026 17:16:44
  • Zuletzt bearbeitet 25.08.2026 06:18:30

In the Linux kernel, the following vulnerability has been resolved: vhost: reset the vring metadata cache on vring reconfiguration vq->meta_iotlb[] caches the vhost_iotlb_map that backs each vring metadata region, and iotlb_access_ok() returns earl...